Scout Suite is an open source multi-cloud security-auditing tool, which gathers configuration data using cloud providers' APIs for manual inspection, highlighting risk areas and providing a clear view of the attack surface automatically. It is designed by security consultants/auditors to offer a security-oriented view of the cloud account it was run in, with support for various cloud providers like AWS, Azure, GCP, Alibaba Cloud, Oracle Cloud, and Kubernetes clusters.
FEATURES
ALTERNATIVES
A set of tools for fingerprinting and exploiting Amazon cloud infrastructures
A customized AWS EKS setup for PCI-DSS, SOC2, and HIPAA compliance
A fully managed service that securely stores, rotates, and manages sensitive data such as database credentials and API keys.
CloudDefense.AI is a Cloud Native Application Protection Platform (CNAPP) that safeguards cloud infrastructure and cloud-native apps with expertise, precision, and confidence.
Docker security audit tool with custom audit profiles and JSON report generation based on CIS Docker 1.6 Benchmark.
A tool for spinning up insecure AWS infrastructure with Terraform for training and security assessment purposes.
Azure Guardrails enables rapid enforcement of cloud security guardrails by generating Terraform files for Azure Policy Initiatives.
A tool that determines what AWS API calls are logged by CloudTrail and what they are logged as, and can also be used as an attack simulation framework.
PINNED

InfoSecHired
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.

Mandos Brief Newsletter
A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

Kriptos
An AI-driven data classification and governance platform that automatically discovers, analyzes, and labels sensitive information while providing risk management and compliance capabilities.

System Two Security
An AI-powered platform that automates threat hunting and analysis by processing cyber threat intelligence and generating customized hunt packages for SOC teams.

Aikido Security
Aikido is an all-in-one security platform that combines multiple security scanning and management functions for cloud-native applications and infrastructure.

Permiso
Permiso is an Identity Threat Detection and Response platform that provides comprehensive visibility and protection for identities across multiple cloud environments.

Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.

Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.