Skip to content

Vulnerable App Before, Secure Env After with c7n #35

Description

@xee5ch

Hello @castrojo, during @LiamRandall's Governance-as-Code day talk this afternoon, I suggested an interesting community project would be Liam's vulnerable app and cloud deployment, the PeopleFacts app, or similar projects like flaws.cloud, flaws2.cloud, or cloudgoat with a focus on detection and protection with c7n tooling. We can take one of these sample environments with a before and after theme, and the after theme being an assessment with recommended c7n rules to prevent breach.

I am willing to commit some time to this project starting in November and the months following. Let me know how I would need to formulate a plan for review by c7n core devs and/or community members that are here, get buy-in and support for such a plan. If there is limited interest, I can work on it as a separate personal project and update on status here.

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions