{"repo":"FogSecurity/yes3-scanner","free":true,"listed":false,"github":"https://github.com/FogSecurity/yes3-scanner","clone":"git clone https://github.com/FogSecurity/yes3-scanner.git","description":"YES3 Scanner: S3 Security Scanner for Access and Ransomware Protection","language":"Python","stars":104,"topics":["access","aws","aws-s3","cloud","ransomware","s3","security"],"license":"AGPL-3.0","category":"security-tools","readme_excerpt":"YES3 Scanner: Yet Another S3 Scanner YES3 scans an AWS Account for potential S3 security issues in the following categories: Access Issues such as Public Access Preventative S3 Security Settings Additional Security such as Encryption and SSE-C Encryption Blocking Ransomware Protection, Data Protection, and Recovery For help or feedback, contact us at info@fogsecurity.io. We are continuing to build in this space and are developing a more comprehensive scanner with multi-account (Organization) and object-level scanning. If you're interested in joining a private beta, reach out to us. Blog Post: fogsecurity.io/blog/yes3-amazon-s3 YES3 has been featured in: - Cybr AWS Training: Cybr Training - AWS Fundamentals Training: AWS Fundamentals - Help Net Security: Help Net Security - AWS Security Digest: AWS Security Digest - tl;dr sec newsletter: tl;dr Sec Checks YES3 Scanner checks for the following S3 configuration items: Access Issues and Public Access - Bucket Access Control Lists (ACLs) - Bucket Policy (Resource-Based Policy) - Bucket Website Settings Preventative S3 Security Settings - Account Public Access Block - Bucket Public Access Block - Disabled ACLs (via Ownership Controls) Additional Security - Bucket Encryption Settings - Whether a Bucket blocks SSE-C Encryption - S3 Server Access Logging Ransomware Protection & Recovery - Object Lock Configuration - Bucket Versioning Settings - Bucket Lifecycle Configuration ## Getting Started: Installing YES3 Scanner and Requirements ","default_branch":null,"files":null,"tree":[],"storefront":"/r/FogSecurity","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/FogSecurity/yes3-scanner/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}