Cloudlist is a multi-cloud tool for getting Assets from Cloud Providers. It is intended for blue teams to centralize assets across multiple clouds with minimal configuration. Features include listing cloud assets with multiple configurations, support for multiple cloud providers, output formats, filters, and extensibility. It also supports stdout for pipeline integration. Usage: cloudlist -h for help and various flags for configuration and filtering.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Automatically compile AWS SCPs for compliant AWS services based on preferred frameworks.
Create Docker container images for testing and long-term use.
A command line tool that counts Amazon resources across regions and displays the results in a friendly format.
A CLI utility that makes it easier to switch between different AWS roles
CloudFox helps gain situational awareness in unfamiliar cloud environments for penetration testers and offensive security professionals.
A tool for spinning up insecure AWS infrastructure with Terraform for training and security assessment purposes.
Gatekeeper is a policy management tool for Kubernetes that provides an extensible, parameterized policy library and native Kubernetes CRDs for instantiating and extending the policy library.
A Python script that lists all main resources of your AWS account, helping you find resources that affect billing and/or security.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.