Cloud Security Tools

Info

This page is a directory of open source cloud security tools I collected, organized by categories. If I've used a tool I usually publish my notes about it in its own page.

If you know a tool that is not listed here let me know!

Tools

aardvark
actionhero
Adaz
AirIAM
aks-checklist
amazon-s3-find-and-forget
attack_range
automated-cloud-advisor
autovpn
aws-auto-remediate
aws-billing-slack-lambda
aws-iam-authenticator
aws-lambda-api-call-recorder
aws-recon
aws-s3-virusscan
aws-sso-credential-process
aws_exposable_resources
aws_key_triage_tool
capsule
cdkgoat
cfngoat
chart-testing
cloudformation-guard
cloudkeeper
CloudShell
cloudsplaining
cloudtracker
container-diff
container-scan
CONVEX
copilot-cli
dagda
dast-operator
DefendTheFlag
detection-rules
docker-slim
dockerfile-security
dockle
Dragonfly
gatekeeper
gcp-iam-role-permissions
gimme-aws-creds
goldpinger
govuk-aws
grype
helm-freeze
http-desync-guardian
iam-policies-cli
infracost
k8s-diagrams
k8s-snapshots
kconmon
kconnect
kip
konstraint
krane
kube-fluentd-operator
kube-janitor
kube-prometheus
kubectl-fuzzy
kubectl-images
kubefs
kubei
kuberhealthy
kubernetes-examples
kubernetes-goat
litmus
lsh
opa-image-scanner
PowerZure
professional-services
rego-policies
regula
rode
secrets-store-csi-driver-provider-azure
SFPolDevChk
SimuLand
sinker
SkyArk
spacesiren
starboard
starboard-octant-plugin
stash
Stormspotter
syft
synator
talisman
terragoat
trailscraper
tunshell
vector
version-checker
whalescan
whispers