Skip to content

Latest commit

 

History

History
19 lines (14 loc) · 2.02 KB

iacsec.md

File metadata and controls

19 lines (14 loc) · 2.02 KB

Static Analysis for IAC

Open Policy Agent

Misc Terraform Tools

  • https://github.com/28mm/blast-radius - a tool for reasoning about Terraform dependency graphs with interactive visualizations.
  • https://yor.io/ - an open-source tool that helps to manage tags consistently across infrastructure as code frameworks such as Terraform, Cloudformation, Kubernetes, and Serverless Framework

Uncategorized Tools

  • probr-core - analyzes the complex behaviours and interactions in your cloud resources to enable engineers, developers and operations teams identify and fix security related flaws at different points in the lifecycle. Currently supports k8s, AKS, Azure Storage.
  • CRT - This tool queries the following configurations in the Azure AD/O365 tenant which can shed light on hard-to-find permissions and configuration settings in order to assist organizations in securing these environments.