Dow Jones Hammer is a multi-account cloud security tool for AWS that identifies misconfigurations and insecure data exposures within AWS resources, provides near real-time reporting capabilities, and can perform auto-remediation of some misconfigurations to create secure guardrails for products deployed on the cloud. The documentation is available on GitHub Pages at https://dowjones.github.io/hammer/. It covers security features like insecure services, cloud security issues, and technologies used such as Python 3.6, AWS services, Terraform, JIRA, and Slack.
Discover and understand the Docker Layer 2 ICC Bug and its implications on inter-container communication.
Implements a cloud version of the Shadow Copy attack against domain controllers in AWS, allowing theft of domain user hashes.
Open-source policy-as-code software for multi-cloud and SaaS environments with GPT model conversations and custom analysis policies.
A tool to find S3 buckets from HTML, JS, and bucket misconfiguration testing
CloudFox helps gain situational awareness in unfamiliar cloud environments for penetration testers and offensive security professionals.
Azucar is a multi-threaded plugin-based tool for assessing Azure Cloud security.
A set of tools for fingerprinting and exploiting Amazon cloud infrastructures
Open-source project for detecting security risks in cloud infrastructure accounts with support for AWS, Azure, GCP, OCI, and GitHub.
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.