Cybersecurity Architect working at @a2secure :man_technologist:
TrailDiscover. An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and security implications
174AWS-malware-lab. Creation of a laboratory for malware analysis in AWS
115HoneyTrail. Independently deploy customized honeyservices in AWS to trigger alerts on unauthorized access. It utilizes a dedicated CloudTrail for precise detection and notification specifically for honeyservices activity.
52TrailAlerts. TrailAlerts is a AWS-native, serverless cloud-detection tool that lets you define simple rules as code and get rich alerts about events in AWS.
52SimpleAutoBurp. Python script to launch burp scans automatically
32owasp-wstg-tracker. Simple web app to track OWASP WSTG security testing progress
30bedrock-secure-questionnaire-automation. Infrastructure-as-code for a serverless knowledge base using Amazon Bedrock, Aurora PostgreSQL (with pgvector), Lambda, and S3. This setup ingests domain-specific data into a Bedrock Knowledge Base for retrieval-augmented generation (RAG) and handles automated question answering.
19TrailGuard. Tool to check the CloudTrail configuration and the services where trails are sent, to detect potential attacks to CloudTrail logging.
13AWS-Attack-Scenarios. A collection of real-world scenarios and code samples demonstrating potential exploitation techniques in AWS services. Designed for educational purposes and security awareness.
12MyScripts. Python
5semgrep-llm-advisor. Integrates Semgrep static analysis with AI-powered recommendations to enhance code security and automate remediation.
5AWSIncidentResponseAutomations. Easy to deploy automations for incident response in AWS
4exploit-consul. Script to obtain a reverse shell from consul agent
4CTF. Solutions to CTF challenges
3openai-security-review. Let OpenAI comment on your PR with security recommendations.
3GuardDutyInsightfulAlerts. GuardDutyInsightfulAlerts: A Lambda-based system that processes AWS GuardDuty events, enriches them with detailed information, and delivers formatted email notifications for efficient incident analysis and response.
2HoneyPy. A low interaction honeypot.
2Postfix-Server-Setup. Shell
2terraform-sandbox. Terraform sandbox for experimenting with infra scenarios
1terraform-aws-trailalerts. Terrafom module for TrailAlerts serverless cloud-detection tool
1cloud-ranges. Synthetic cloud environments for testing AI agent behavior on real attack chains.
1known_aws_accounts. List of known AWS accounts
1