Through a series of levels, learn about common mistakes and gotchas when using Amazon Web Services (AWS). Everything is run out of a single AWS account, and all challenges are sub-domains of flaws.cloud. Contact scott@summitroute.com for feedback, security issues, or fan mail. Greetz to Andres Riancho, @CornflakeSavage, Ken Johnson, and Nicolas Gregoire for advice and ideas.
Revelo is an experimental Javascript deobfuscator tool with features to analyze and deobfuscate Javascript code.
A plugin for viewing, detecting weak configurations, and generating Content Security Policy headers.
Embeddable Yara library for Java with support for loading rules and scanning data.
Identifies misconfigured CloudFront domains vulnerable to hijacking
A tool for identifying and extracting parameters from HTTP requests and responses
Fnord is a pattern extractor for obfuscated code that extracts byte sequences and creates statistics, as well as generates experimental YARA rules.
A developer-first, API-driven platform that provides development teams with a suite of tools to improve code quality, security, and engineering performance, seamlessly integrated into their existing development workflows.
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.
An AI-powered platform that automates threat hunting and analysis by processing cyber threat intelligence and generating customized hunt packages for SOC teams.
Aikido is an all-in-one security platform that combines multiple security scanning and management functions for cloud-native applications and infrastructure.
Permiso is an Identity Threat Detection and Response platform that provides comprehensive visibility and protection for identities across multiple cloud environments.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.