Andrew Wurster's starred repositories

ocsf-schema

OCSF Schema

License:Apache-2.0Stargazers:585Issues:0Issues:0

awesome-threat-detection

✨ A curated list of awesome threat detection and hunting resources 🕵️‍♂️

Stargazers:3491Issues:0Issues:0

timesketch

Collaborative forensic timeline analysis

Language:PythonLicense:Apache-2.0Stargazers:2537Issues:0Issues:0
Language:PythonLicense:AGPL-3.0Stargazers:127Issues:0Issues:0

trufflehog

Find and verify secrets

Language:GoLicense:AGPL-3.0Stargazers:14490Issues:0Issues:0

aws-security-analytics-bootstrap

AWS Security Analytics Bootstrap enables customers to perform security investigations on AWS service logs by providing an Amazon Athena analysis environment that's quick to deploy, ready to use, and easy to maintain.

License:Apache-2.0Stargazers:228Issues:0Issues:0

attack_data

A repository of curated datasets from various attacks

Language:PythonLicense:Apache-2.0Stargazers:552Issues:0Issues:0

binaryalert

BinaryAlert: Serverless, Real-time & Retroactive Malware Detection.

Language:PythonLicense:Apache-2.0Stargazers:1398Issues:0Issues:0

streamalert

StreamAlert is a serverless, realtime data analysis framework which empowers you to ingest, analyze, and alert on data from any environment, using datasources and alerting logic you define.

Language:PythonLicense:Apache-2.0Stargazers:2840Issues:0Issues:0

policy_sentry

IAM Least Privilege Policy Generator

Language:PythonLicense:MITStargazers:1957Issues:0Issues:0

aardvark

Aardvark is a multi-account AWS IAM Access Advisor API

Language:PythonLicense:Apache-2.0Stargazers:470Issues:0Issues:0

repokid

AWS Least Privilege for Distributed, High-Velocity Deployment

Language:PythonLicense:Apache-2.0Stargazers:1104Issues:0Issues:0

Tor-IP-Addresses

Hourly checked and updated list of IP Addresses of Tor and Tor Exit Nodes

License:MITStargazers:323Issues:0Issues:0

lambda-action

GitHub Action for Deploying Lambda code to an existing function

Language:D2License:MITStargazers:382Issues:0Issues:0

terraform-aws-ses-lambda-forwarder

This is a terraform module that creates an email forwarder using a combination of AWS SES and Lambda running the aws-lambda-ses-forwarder NPM module.

Language:HCLLicense:Apache-2.0Stargazers:25Issues:0Issues:0

my-arsenal-of-aws-security-tools

List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

Language:ShellLicense:Apache-2.0Stargazers:8816Issues:0Issues:0

cloudquery

The open source high performance ELT framework powered by Apache Arrow

Language:GoLicense:MPL-2.0Stargazers:5718Issues:0Issues:0

aws-inventory

Discover resources created in an AWS account.

Language:PythonLicense:Apache-2.0Stargazers:703Issues:0Issues:0

cloudmapper

CloudMapper helps you analyze your Amazon Web Services (AWS) environments.

Language:JavaScriptLicense:BSD-3-ClauseStargazers:5905Issues:0Issues:0

SecretScanner

:unlock: :unlock: Find secrets and passwords in container images and file systems :unlock: :unlock:

Language:GoLicense:MITStargazers:3008Issues:0Issues:0

osx-security-awesome

A collection of OSX and iOS security resources

License:Apache-2.0Stargazers:717Issues:0Issues:0

ioc-explorer

Explore Indicators of Compromise Automatically

Language:PythonLicense:MITStargazers:94Issues:0Issues:0

detect-secrets

An enterprise friendly way of detecting and preventing secrets in code.

Language:PythonLicense:Apache-2.0Stargazers:3624Issues:0Issues:0

prowler

Prowler is an Open Source Security tool for AWS, Azure, GCP and Kubernetes to do security assessments, audits, incident response, compliance, continuous monitoring, hardening and forensics readiness. Includes CIS, NIST 800, NIST CSF, CISA, FedRAMP, PCI-DSS, GDPR, HIPAA, FFIEC, SOC2, GXP, Well-Architected Security, ENS and more

Language:PythonLicense:Apache-2.0Stargazers:10245Issues:0Issues:0

prezto

The configuration framework for Zsh

Language:ShellLicense:MITStargazers:13884Issues:0Issues:0

karmabot

A Python based Slack Chatbot for community interaction

Language:PythonLicense:MITStargazers:71Issues:0Issues:0

cloud-forensics-utils

Python library to carry out DFIR analysis on the Cloud

Language:PythonLicense:Apache-2.0Stargazers:453Issues:0Issues:0

diodb

Open-source vulnerability disclosure and bug bounty program database

Language:PythonLicense:CC0-1.0Stargazers:962Issues:0Issues:0

peerd

peerd is an AWS VPC Peering Connection management tool. It creates full-meshes of VPCs from a yaml file, and manages the full lifecycle of creation, deletion and route table updates needed to make VPC peerings useful across accounts and regions. Contributions welcome.

Language:PythonLicense:Apache-2.0Stargazers:135Issues:0Issues:0

flightsim

A utility to safely generate malicious network traffic patterns and evaluate controls.

Language:GoLicense:NOASSERTIONStargazers:1218Issues:0Issues:0