This tool discovers all AWS resources created in an account. It uses botocore to discover AWS services and what regions they run in. The results can be printed to stdout in JSON format. Raw responses from API endpoints can be written to a file specified on the commandline. The file format is Python pickle. Exceptions are raised when errors occur.
FEATURES
SIMILAR TOOLS
A Lambda Function that disables AWS IAM User Access Keys after a set amount of time to reduce the risk associated with old access keys.
Open-source project for detecting security risks in cloud infrastructure accounts with support for AWS, Azure, GCP, OCI, and GitHub.
Lists AWS resources using the AWS Cloud Control API and writes them to a JSON output file.
Collection of Kubernetes manifests creating pods with elevated privileges for security testing.
Weave Scope automatically generates a map of your application for troubleshooting and monitoring Docker & Kubernetes.
Cloud runtime security platform that uses eBPF technology to monitor cloud infrastructure, detect anomalies, and identify potential security threats in real-time.
A multi-threaded AWS security-focused inventory collection tool with comprehensive resource coverage and efficient data collection methods.
A tool to fetch all public IP addresses associated with an AWS account
A cloud security solution that provides agentless application mapping and vulnerability prioritization based on business impact across cloud environments.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.