Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.
翻译 - 在配置云原生基础架构之前,将整个基础架构中的合规性和安全违规行为作为代码进行检测,以降低风险。
Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on playground 🚀
翻译 - Kubernetes山羊是一个“易受设计攻击的” Kubernetes集群。
Free Security and Hacking eBooks
A Central Control Plane for AWS Permissions and Access
翻译 - ConsoleMe将多个AWS账户的管理整合到一个界面中。 它允许您的最终用户和管理员获取您不同帐户的凭据,并允许您的用户/管理员管理或请求云权限。
Cloud Exploitation Framework 云环境利用框架,方便安全人员在获得 AK 的后续工作
🛡️ Awesome Cloud Security Resources ⚔️
Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.
翻译 - Cloudsplaining是一种AWS IAM安全评估工具,可识别违反最小特权的行为并生成风险优先报告。
Automating situational awareness for cloud penetration tests.
☁️ ⚡ Granular, Actionable Adversary Emulation for the Cloud
翻译 - ☁️ :zap:云的粒度、可操作的对手仿真。
awesome cloud security 收集一些国内外不错的云安全资源,该项目主要面向国内的安全人员
An encyclopedia for offensive and defensive security knowledge in cloud native technologies.
翻译 - hackingthe.cloud的内容
veinmind-tools 是由长亭科技自研,基于 veinmind-sdk 打造的容器安全工具集
Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS
#Awesome#Curated list of links, references, books videos, tutorials (Free or Paid), Exploit, CTFs, Hacking Practices etc. which are related to AWS Security
PacBot (Policy as Code Bot)
The easiest way to access your cloud.
TerraGoat is Bridgecrew's "Vulnerable by Design" Terraform repository. TerraGoat is a learning and training project that demonstrates how common configuration errors can find their way into production...
翻译 - TerraGoat是Bridgecrew的“设计易受攻击” Terraform存储库。 TerraGoat是一个学习和培训项目,它演示了常见的配置错误如何将其发现到生产云环境中。
Cloud Security Suite - One stop tool for auditing the security posture of AWS/GCP/Azure infrastructure.
All-in-one Kubernetes access manager. User-level credentials, RBAC, SSO, audit logs.