rpCheckup Logo

rpCheckup

0
Free
Visit Website

rpCheckup is an AWS resource policy security checkup tool that identifies public, external account access, intra-org account access, and private resources. It makes it easy to reason about resource visibility across all the accounts in your org. rpCheckup generates an HTML & CSV report to make this easy. Supported AWS Resources: rpCheckup uses the resources supported by Endgame as the high-water mark for analyzing attached policies. Resource Type rpCheckup Endgame AWS Access Analyzer ACM Private CAs ✅ ✅ ❌ CloudWatch Resource Policies ✅ ✅ ❌ EBS Volume Snapshots ✅ ✅ ❌ EC2 AMIs ✅ ✅ ❌ ECR Container Repositories ✅ ✅ ❌ EFS File Systems ✅ ✅ ❌ ElasticSearch Domains ✅ ✅ ❌ Glacier Vault ✅ ✅ ❌

FEATURES

ALTERNATIVES

An open source cloud security platform for discovering, prioritizing, and remediating risks in the cloud.

AWS serverless cloud security tool for parsing and alerting on CloudTrail logs using EQL.

Burp extension for identifying cloud buckets and testing for vulnerabilities

Cloud runtime security platform that uses eBPF technology to monitor cloud infrastructure, detect anomalies, and identify potential security threats in real-time.

Commercial

A CLI tool and Go library for generating a Software Bill of Materials (SBOM) from container images and filesystems.

An open-source framework for testing and validating the security of AWS services and resources.

A tool for spinning up insecure AWS infrastructure with Terraform for training and security assessment purposes.

Gatekeeper is a policy management tool for Kubernetes that provides an extensible, parameterized policy library and native Kubernetes CRDs for instantiating and extending the policy library.

PINNED

Mandos Brief Newsletter Logo

Mandos Brief Newsletter

A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

Resources
PTJunior Logo

PTJunior

An AI-powered penetration testing platform that autonomously discovers, exploits, and documents vulnerabilities while generating NIST-compliant reports.

Offensive Security
CTIChef.com Detection Feeds Logo

CTIChef.com Detection Feeds

A tiered cyber threat intelligence service providing detection rules from public repositories with varying levels of analysis, processing, and guidance for security teams.

Threat Management
OSINTLeak Logo

OSINTLeak

OSINTLeak is a tool for discovering and analyzing leaked sensitive information across various online sources to identify potential security risks.

Digital Forensics
ImmuniWeb® Discovery Logo

ImmuniWeb® Discovery

ImmuniWeb Discovery is an attack surface management platform that continuously monitors an organization's external digital assets for security vulnerabilities, misconfigurations, and threats across domains, applications, cloud resources, and the dark web.

Attack Surface Management
Checkmarx SCA Logo

Checkmarx SCA

A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Application Security
Orca Security Logo

Orca Security

A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

Cloud Security
DryRun Logo

DryRun

A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.

Application Security