PrismX is a cloud security dashboard that provides centralized visibility into AWS security issues based on CIS Security Benchmarks. The platform offers a unified view of cloud security posture across multiple AWS accounts, presenting both high-level executive summaries and detailed actionable data for technical teams. Key features include: - Automated daily security scans using ScoutSuite - Executive dashboard with high-level security overview - Detailed security findings for individual contributors - Built-in JIRA integration with pre-filled issue templates - Issue triaging capabilities for security remediation - Multi-account AWS environment support The tool is built on a tech stack consisting of ScoutSuite for security scanning, Django for the web framework, Redis for caching, and Celery for task management. PrismX is designed for organizations managing multiple AWS accounts that need comprehensive visibility into their cloud security compliance and posture management.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
Kube-bench is a security assessment tool that validates Kubernetes deployments against CIS Kubernetes Benchmark standards through automated configuration checks.
A command-line security auditing tool that performs Lynis-based security assessments across AWS, GCP, Azure, and DigitalOcean cloud platforms.
A community-driven repository of pre-built security analytics queries and rules for monitoring and detecting threats in Google Cloud environments across various log sources and activity types.
TerraGoat is a deliberately vulnerable Terraform repository that demonstrates common cloud infrastructure misconfigurations for training and testing security tools.
CloudSploit by Aqua is an open-source multi-cloud security scanning tool that detects security risks and compliance issues across AWS, Azure, GCP, OCI, and GitHub platforms.
SkyWrapper analyzes temporary token behaviors in AWS accounts to detect suspicious activities and generates Excel reports with findings summaries.
A tutorial demonstrating how to implement Kubernetes Engine security features to control application privileges through host access controls and network access policies.
S3Scanner is an open-source tool that scans S3 buckets across S3-compatible APIs to identify misconfigurations and security vulnerabilities.
A Docker security vulnerability where disabling inter-container communication (ICC) fails to block raw ethernet frames, allowing unexpected data transfer between containers via raw sockets.