auspex is a graph-based tool for visualizing effective access and resource relationships within AWS. It resolves policy information to determine what actions affect which resources, while taking into account how these actions may be combined to produce attack paths. Getting Started Installation Usage Contributing License For more information, checkout the awspx Wiki Getting Started For detailed installation instructions, usage, and answers to frequently asked questions, see sections: Setup; Data Collection and Exploration; and FAQs, respectively. Installation awspx can be installed on either Linux or macOS. In each case Docker is required. Clone this repo git clone https://github.com/FSecureLABS/awspx.git Run the INSTALL script cd awspx && ./INSTALL Usage awspx consists of two main components: the ingestor, which collects AWS account data; and the web interface, which allows
A CLI tool and Go library for generating a Software Bill of Materials (SBOM) from container images and filesystems.
A workload policy enforcement tool for Kubernetes with various supported policies and configuration options.
CloudDefense.AI is a Cloud Native Application Protection Platform (CNAPP) that safeguards cloud infrastructure and cloud-native apps with expertise, precision, and confidence.
A tool for spinning up insecure AWS infrastructure with Terraform for training and security assessment purposes.
Gatekeeper is a policy management tool for Kubernetes that provides an extensible, parameterized policy library and native Kubernetes CRDs for instantiating and extending the policy library.
Comprehensive cybersecurity tool for Microsoft Azure providing CSPM & CWPP capabilities.
Krampus is a security solution for managing AWS objects and can be used as a cost-control tool.
A dynamic infrastructure framework for efficient multi-cloud security operations and distributed scanning.
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
An AI-powered platform that automates threat hunting and analysis by processing cyber threat intelligence and generating customized hunt packages for SOC teams.
Aikido is an all-in-one security platform that combines multiple security scanning and management functions for cloud-native applications and infrastructure.
Permiso is an Identity Threat Detection and Response platform that provides comprehensive visibility and protection for identities across multiple cloud environments.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.