{"repo":"awslabs/aws-cloudsaga","free":true,"listed":false,"github":"https://github.com/awslabs/aws-cloudsaga","clone":"git clone https://github.com/awslabs/aws-cloudsaga.git","description":"AWS CloudSaga - Simulate security events in AWS","language":"Python","stars":475,"topics":["aws","security","security-audit","red-teaming","blue-team","purple-team","incident-response-tooling"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"AWS CloudSaga - Simulate security events in AWS AWS CloudSaga is for customers to test security controls and alerts within their Amazon Web Services (AWS) environment, using generated alerts based on security events seen by the AWS Customer Incident Response Team (CIRT). Use Case Security controls and best practices are published for securing AWS accounts, however, customers look for mechanisms to test security and incident response within their AWS environments, in order to protect themselves against known security events. AWS CloudSaga is for customers who want to test their environment against documented security events from the AWS CIRT. Using AWS CloudSaga, simple scenarios that mimic actual security events can be run against a customer's environment, testing the customer's response plans and defenses when these events occur, and improve defenses of their AWS environment from the results. Usage Prerequesites Permissions The following permissions are needed within AWS IAM for CloudSaga to run: For imds-reveal: For network-changes: For mining-bitcoin: For iam-credentials: For public-resources: Specific Scenario Details Running the Code The code in it's current form can be ran inside the following: AWS CloudShell (preferred) Locally (with IAM credentials, not preferred) Prerequisites The following prerequisites are required to use AWS CloudSaga Python 3.7 or later boto3 1.21.7 or later pip3 (for installation of AWS CloudSaga) Installing the code Installation of the code is ","default_branch":null,"files":null,"tree":[],"storefront":"/r/awslabs","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/awslabs/aws-cloudsaga/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}