Skip to main content

pentest-cloud-infrastructure

Cloud security posture management and container security assessment for AWS, Azure, GCP, and Kubernetes.

Quellinformationen

Repository
jd-opensource/JoySafeter
Letzte Quellaktivität
11. Februar 2026 um 09:17
Erkannte Sprache von SKILL.md
Englisch
Sterne
312
Forks
58

Installationsoptionen

Standardmäßig ist der Prompt ausgewählt, der zuerst die Quelle prüft. Sie können zu einem direkten Befehl wechseln oder eine lokale Kopie herunterladen.

Quelldateien prüfen

Lesen Sie SKILL.md und alle von SkillsMP angezeigten Begleitdateien, bevor Sie sich für eine Installation entscheiden.

Datei-Explorer
3 Dateien

SKILL.md wird angezeigt

SKILL.md
Quellanweisungen · Schreibgeschützte Vorschau
name
pentest-cloud-infrastructure
description
Cloud security posture management and container security assessment for AWS, Azure, GCP, and Kubernetes.
# Pentest Cloud Infrastructure ## Purpose Assess the security configuration of cloud environments and containerized infrastructure to detect misconfigurations, excessive permissions, and vulnerabilities. ## Core Workflow 1. **Cloud Config Audit**: Assess cloud provider configuration (AWS/Azure/GCP) using `prowler` and `scoutsuite`. 2. **IaC Scanning**: Analyze Infrastructure-as-Code (Terraform, CloudFormation) for security flaws using `checkov` and `terrascan`. 3. **Container Security**: Scan container images and runtime environments using `trivy`, `clair`, and `dockle`. 4. **Kubernetes Assessment**: Audit K8s clusters for CIS compliance and vulnerabilities using `kube-bench` and `kube-hunter`. 5. **Runtime Monitoring**: Analyze runtime behavior and rule violations using `falco`. ## References - `references/tools.md` - `references/workflows.md`
Auf GitHub ansehen