Duo Labs's repositories
cloudmapper
CloudMapper helps you analyze your Amazon Web Services (AWS) environments.
parliament
AWS IAM linting library
cloudtracker
CloudTracker helps you find over-privileged IAM users and roles by comparing CloudTrail logs with current IAM policies.
py_webauthn
Pythonic WebAuthn
webauthn.io
The source code for webauthn.io, a demonstration of WebAuthn.
markdown-to-confluence
Syncs Markdown files to Confluence
isthislegit
Dashboard to collect, analyze, and respond to reported phishing emails.
secret-bridge
Monitors Github for leaked secrets
twitterbots
The code used in the "Don't @ Me: Hunting Twitter Bots at Scale" Black Hat presentation
phish-collect
Python script to hunt phishing kits
android-webauthn-authenticator
A WebAuthn Authenticator for Android leveraging hardware-backed key storage and biometric user verification.
appsec-education
Presentations, training modules, and other education materials from Duo Security's Application Security team.
lookalike-domains
generate lookalike domains using a few simple techniques (homoglyphs, alt TLDs, prefix/suffix)
datasci-ctf
A capture-the-flag exercise based on data analysis challenges
chain-of-fools
A set of tools that allow researchers to experiment with certificate chain validation issues
journal-cli
The command-line client for Journal
sharedsignals
Python tools for using OpenID's Shared Signals Framework (including CAEP)
unmasking_data_leaks
The code from the talk "Unmasking Data Leaks: A Guide to Finding, Fixing, and Prevention" given at BSides SATX 2019.
holidayhack-2019
Scripts and artifacts used to solve the 2019 SANS Holiday Hack Challenge