Zeus AWS Auditing & Hardening Tool Logo

Zeus AWS Auditing & Hardening Tool

0
Free
Visit Website

Zeus is a powerful tool for AWS EC2 / S3 / CloudTrail / CloudWatch / KMS best hardening practices. It checks security settings according to the profiles the user creates and changes them to recommended settings based on the CIS AWS Benchmark source at request of the user. Currently, it only includes the Logging mechanism. Identity and Access Management: - Avoid the use of the 'root' account - Ensure multi-factor authentication (MFA) is enabled for all IAM users that have a console password - Ensure credentials unused for 90 days or greater are disabled - Ensure access keys are rotated every 90 days or less - Ensure IAM password policy requires at least one uppercase letter - Ensure IAM password policy requires at least one lowercase letter - Ensure IAM password policy requires at least one symbol - Ensure IAM password policy requires at least one number - Ensure IAM password policy requires minimum length of 14 or greater - Ensure no root account access key exists - Ensure MFA is enabled for the 'root' account - Ensure security questions are registered in the AWS account - Ensure IAM policies are attached only to groups or role - Enable detailed billing - Maintain current conta

FEATURES

ALTERNATIVES

S3Scanner scans for misconfigured S3 buckets across S3-compatible APIs, identifying potential security vulnerabilities and data exposure risks.

A detection-as-code platform for streamlining cloud security operations and responding to security incidents.

In-depth analysis and insights on various cloud security topics by Rhino Security Labs team

A tool for testing AWS S3 bucket permissions and security

Open-source tool for analyzing AWS temporary tokens to detect malicious activity.

CloudFox helps gain situational awareness in unfamiliar cloud environments for penetration testers and offensive security professionals.

Comprehensive cybersecurity tool for Microsoft Azure providing CSPM & CWPP capabilities.

CLI tool for deleting AWS resources in bulk with inspecting functionality.