
EAST
Extensible Azure Security Tool - Documentation

Multi-cloud security auditing tool that leverages cloud provider APIs to gather configuration data, assess security posture, and generate HTML…

Audits Azure AD and Exchange Online configurations for hard-to-find permissions, federation trusts, mail forwarding rules, and delegated access to…

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

Powerful open-source CLI to audit security, costs, and best practices in AWS. 🩺 ☁️

An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

Scan publicly accessible assets on your AWS cloud environment

Permission Manager is a project that brings sanity to Kubernetes RBAC and Users management, Web UI FTW

Review Access - kubectl plugin to show an access matrix for k8s server resources

DSC resources to simplify administration of certificates on a Windows Server.

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

🔐 Lightweight CLI utility designed to synchronize SSH public keys from remote URLs into local authorized_keys files

Java client providing fluent DSL access to Kubernetes and OpenShift REST APIs for managing cloud-native infrastructure, pods, services, and…

Java SDK for integrating with Amazon Web Services, providing secure API access to S3, DynamoDB, EC2, and more, with built-in authentication,…

PowerShell script to enumerate Azure Active Directory access permissions, including role assignments, service principals, and privileged access…