Cloud Security Research releases written by the Rhino Security Labs team. These articles provide in-depth analysis and insights on various cloud security topics, including AWS, Azure, and Google Cloud Platform. The articles cover a wide range of topics, from security best practices to vulnerability assessments and penetration testing. The goal of these articles is to educate and inform cloud security professionals on the latest threats and mitigation strategies. The articles are written by experienced security professionals with a deep understanding of cloud security. The articles are available for free on the Rhino Security Labs website.
Conmachi is a Golang tool for scanning container environments for security issues.
Comprehensive set of security controls for various AWS services to ensure a secure cloud environment.
Analyzes CloudTrail data of a given AWS account and generates a summary of recently active IAM principals, API calls they made, as well as regions, IP addresses and user agents they used.
Metabadger helps prevent SSRF attacks on AWS EC2 by automating upgrades to the more secure Instance Metadata Service v2 (IMDSv2).
Learn how to secure applications in Kubernetes Engine by granting varying levels of privilege based on requirements.
A tool for pillaging Docker registries to extract image manifests and configurations.
A framework for executing attacker actions in the cloud with YAML-based format for defining TTPs and detection properties, deployable via AWS-native CI/CD pipeline.
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.
An AI-powered platform that automates threat hunting and analysis by processing cyber threat intelligence and generating customized hunt packages for SOC teams.
Aikido is an all-in-one security platform that combines multiple security scanning and management functions for cloud-native applications and infrastructure.
Permiso is an Identity Threat Detection and Response platform that provides comprehensive visibility and protection for identities across multiple cloud environments.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.