cloudsplaining
Policy auditor
A tool that scans AWS IAM policies to identify security vulnerabilities and generates a report with recommendations for remediation
Cloudsplaining is an AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report.
2k stars
32 watching
188 forks
Language: JavaScript
last commit: 3 months ago
Linked from 2 awesome lists
awsaws-iamaws-securitycloudcloud-securityhacktoberfestiamsalesforcesecurity
Related projects:
Repository | Description | Stars |
---|---|---|
| Tools to analyze and report on AWS IAM policies for security best practices | 119 |
| Generates and manages least privilege IAM policies using an external audit service | 29 |
| Automatically generates AWS Service Control Policies based on compliance frameworks and custom service inclusions/exclusions | 224 |
| Automates the creation of least-privilege IAM policies for AWS services | 2,028 |
| Automates removal of unnecessary AWS IAM resources and generates least privilege Terraform configurations. | 778 |
| A tool designed to detect security risks in cloud infrastructure accounts | 3,372 |
| A collection of research and documentation on methods for exploiting weaknesses in AWS IAM to gain unauthorized access | 901 |
| A tool to validate Terraform IAM policies against AWS best practices and security standards. | 299 |
| Checks AWS accounts for subdomain hijacking vulnerabilities | 84 |
| A Python library to create and manage AWS Access Policy Language JSON | 395 |
| Automates linting of AWS IAM policy documents to ensure security and compliance | 36 |
| An evaluation tool for policy-as-code in infrastructure configuration files | 1,309 |
| A tool to create a vulnerable AWS IAM configuration playground | 482 |
| Automatically identifies and monitors cloud assets exposed to the internet without authorization | 332 |
| Automates AWS IAM user and group creation based on configuration files. | 241 |