Agentโ™ฅ๏ธŽAge
Catalog

cloud-audit

Official

by gebalamariusz ยท Python

AWS security scanner with attack chain detection, IAM privilege escalation, and fixes

MCP Server: io.github.gebalamariusz/cloud-audit

This MCP server is an open-source, read-only AWS security scanner. Its described capabilities include 110 security checks, 64 IAM privilege-escalation methods, and 31 attack-chain rules. It is focused on identifying potential reach within an AWS account and assessing blast radius for resources.

๐Ÿ› ๏ธ Key Features

  • AWS security scanning with attack chain detection
  • IAM privilege-escalation detection (64 methods)
  • 110 checks and 31 attack-chain rules
  • Computes blast radius for resources
  • Supports agent-blast (as referenced in the excerpt)

๐Ÿš€ Use Cases

  • Cloud security and AWS account auditing
  • Compliance and infrastructure-security review
  • DevSecOps workflows for infrastructure-as-code environments

โšก Developer Benefits

  • Python-based CLI tooling (topics: python, python-cli, cli)
  • Security-scanner approach aligned with cis-benchmarks and terraform/infrastructure-as-code
  • Targets open-source security and vulnerability-scanner use

โš ๏ธ Limitations

  • Described as read-only for AWS security scanning

Topics

auditawsclicloud-securitycompliancedevopspythonsecurityaws-auditaws-securitycis-benchmarksinfrastructure-securitypython-clisecurity-scannerterraformdevsecopsiaminfrastructure-as-codeopen-source-securityvulnerability-scanner

Related servers

More in Cloud & DevOps