The AWS Key disabler is a Lambda Function that disables AWS IAM User Access Keys after a set amount of time in order to reduce the risk associated with old access keys. Prerequisites: * Node.js with NPM installed * Gruntjs installed * AWSCLI commandline tool installed It also assumes that you have an AWS account with SES enabled, ie domain verified and sandbox mode removed. Installation instructions: 1. Grab yourself a copy of this script 2. Navigate into the /grunt folder 3. Setup the Grunt task runner, e.g. install its deps: npm install 4. Fill in the following information in /grunt/package.json 5. Set the aws_account_number value to your AWS account number
FEATURES
ALTERNATIVES
A tool that discovers all AWS resources created in an account
Automated script for creating a vulnerable Azure cloud lab to train offensive security skills.
In-depth analysis and insights on various cloud security topics by Rhino Security Labs team
CLI tool for deleting AWS resources in bulk with inspecting functionality.
A script and library for identifying risks in AWS IAM configuration
A tool that determines what AWS API calls are logged by CloudTrail and what they are logged as, and can also be used as an attack simulation framework.
A tool to find S3 buckets from HTML, JS, and bucket misconfiguration testing
Open-source tool for analyzing AWS temporary tokens to detect malicious activity.
PINNED
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.