
cfripper
Library and CLI tool for analysing CloudFormation templates and check them for security compliance.

Library and CLI tool for analysing CloudFormation templates and check them for security compliance.

The universal GraphQL API and CSPM tool for AWS, Azure, GCP, K8s, and tencent.

A tool for standing up (and tearing down!) purposefully insecure cloud infrastructure

OpenClarity is an open source platform built to enhance security and observability of cloud native applications and infrastructure

Extensible Azure Security Tool - Documentation

A graph-based tool for visualizing effective access and resource relationships in AWS environments.

Static analysis tool for infrastructure as code that detects cloud misconfigurations, vulnerabilities, and secrets across Terraform, Kubernetes,…

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

Python client for Batfish, a network configuration analysis tool that validates security, reliability, and compliance by modeling network behavior…

OWASP Kubernetes security and compliance tool [WIP]

Cloud-native Kubernetes cluster inspection tool that detects application misconfigurations, unhealthy components, and node problems using custom OPA,…

CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

Automated scanner that hunts for secrets (API keys, credentials) accidentally uploaded to public S3 buckets, using truffleHog3 for detection and…

Automated mitigation tool for CVE-2026-32746, providing atomic rollback, multi-firewall support (UFW, firewalld, nftables, iptables), and…

A tool for quickly evaluating IAM permissions in AWS.

An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.

An AWS IAM policy statement parser and query tool.