cfn-nag Logo

cfn-nag

0
Free
Visit Website

The cfn-nag tool scans CloudFormation templates to identify insecure infrastructure patterns such as overly permissive IAM rules, security group rules, lack of access logs, encryption, and password literals. It can be installed via gem or brew, and can be integrated into CodePipeline for automated scanning.

FEATURES

ALTERNATIVES

Open source multi-cloud security-auditing tool for assessing security posture of cloud environments.

A Python script that lists all main resources of your AWS account, helping you find resources that affect billing and/or security.

A search engine for open Amazon S3 buckets and their contents, allowing users to search for files using keywords, filename extensions, and full path.

Show the history and changes between configuration versions of AWS resources

A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

Commercial

A tool to find S3 buckets from HTML, JS, and bucket misconfiguration testing

A cloud-based security platform providing WAAP, ZTNA, public cloud security management, and threat intelligence sharing capabilities.

Commercial

A tool to identify publicly accessible S3 objects