Multi-cloud security posture.
Tools for cloud
AWS, GCP, Azure, Kubernetes and containers.
48 tools indexed
Find misconfigured object storage buckets.
Multi-cloud security auditing.
Open-source SOAR.
Open-source SCA + IaC scanner.
Build vulnerable instrumented labs.
Cloud adversary emulation.
Syft
—Generate SBOMs from containers and source code.
Microsoft's Sysmon, on Linux.
Cross-platform O365 / AAD attack framework.
Send phishing via Microsoft Teams.
Zero-trust access for SSH, K8s and more.
Cloud-native secrets manager.
eBPF-based runtime security.
Open-source cloud-native protection platform.
Container and IaC vulnerability scanner.
Find leaked credentials at scale.
Vuls
—Agent-less Linux vulnerability scanner.
Open-source XDR and SIEM.
Enumerate AWS IAM permissions.
CIS benchmarks for Kubernetes.
Hunt for vulnerabilities in Kubernetes.
Private X.509 + SSH CA + ACME server.
Terraform static analysis.