AWS Incident Response Runbook Samples View AWS Incident Response Runbook Samples
A defense-in-depth security automation and monitoring framework utilizing threat intelligence, machine learning, and serverless technologies.
Showing 11255 tools • Searched in 6ms
A defense-in-depth security automation and monitoring framework utilizing threat intelligence, machine learning, and serverless technologies.
An AI-powered security operations platform that automates alert investigation, triage, and response workflows for SOC analysts.
A multi-threaded AWS security-focused inventory collection tool with comprehensive resource coverage and efficient data collection methods.
Detect signed malware and track stolen code-signing certificates using osquery.
DFIRTrack is an open source web application focused on incident response for handling major incidents with many affected systems, tracking system status, tasks, and artifacts.
A data security and governance platform that provides automated discovery, classification, and protection of sensitive data across cloud, on-premises, and hybrid environments.
A tool for privilege escalation within Linux environments by targeting vulnerabilities in SUDO usage.
Cloud Security Suite (cs-suite) - Version 3.0 Usage for cloud security audits on AWS, GCP, Azure, and DigitalOcean.
An open source cloud security platform for discovering, prioritizing, and remediating risks in the cloud.
A multi-cloud tool for centralizing assets across multiple clouds with minimal configuration.
A practical guide on NTLM relaying for Active Directory attacks.
Stay up-to-date on the latest trends and developments in AWS Cloud Security with this weekly digest newsletter.
A set of Bro/Zeek scripts that detect ATT&CK-based adversarial activity and raise notices
Graylog offers advanced log management and SIEM capabilities to enhance security and compliance across various industries.
A graph-based tool for visualizing effective access and resource relationships within AWS
A web collaborative platform for incident responders to share technical details during investigations, shipped in Docker containers for easy installation and upgrades.
Converts the format of various S3 buckets for bug bounty and security testing.
A Serverless Security Orchestration Automation and Response (SOAR) Framework for AWS GuardDuty with various supported actions.
Python library for building Docker images with advanced features.
Zeus is a powerful tool for AWS EC2 / S3 / CloudTrail / CloudWatch / KMS best hardening practices with a focus on Identity and Access Management.
An AWS resource policy security checkup tool that identifies public, external account access, intra-org account access, and private resources.
Platform for users to test cybersecurity skills by exploiting vulnerabilities.
A comprehensive cloud security platform that provides threat prevention, posture management, and risk prioritization across cloud applications, networks, and workloads.
A CLI utility that makes it easier to switch between different AWS roles