{"repo":"turbot/tailpipe-mod-aws-cloudtrail-log-detections","free":true,"listed":false,"github":"https://github.com/turbot/tailpipe-mod-aws-cloudtrail-log-detections","clone":"git clone https://github.com/turbot/tailpipe-mod-aws-cloudtrail-log-detections.git","description":"Run detections and view dashboards for your AWS CloudTrail logs to monitor and analyze activity across your AWS accounts using Powerpipe and Tailpipe.","language":"HCL","stars":16,"topics":["audit-log","aws","cloudtrail-logs","security","tailpipe","tailpipe-mod","detections","dashboard","mitre-attack","powerpipe"],"license":"Apache-2.0","category":"dashboards-admin","readme_excerpt":"AWS CloudTrail Log Detections Mod for Powerpipe Tailpipe is an open-source CLI tool that allows you to collect logs and query them with SQL. AWS provides on-demand cloud computing platforms and APIs to authenticated customers on a metered pay-as-you-go basis. The AWS CloudTrail Log Detections Mod contains pre-built dashboards and detections, which can be used to monitor and analyze activity across your AWS accounts. Run detection benchmarks: View insights in dashboards: Documentation - Dashboards → - Benchmarks and detections → Getting Started Install Powerpipe from the downloads page: This mod also requires AWS CloudTrail logs to be collected using Tailpipe with the AWS plugin: - Get started with the AWS plugin for Tailpipe → Install the mod: Browsing Dashboards Start the dashboard server: Browse and view your dashboards at http://localhost:9033 . Running Benchmarks in Your Terminal Instead of running benchmarks in a dashboard, you can also run them within your terminal with the powerpipe benchmark command: List available benchmarks: Run a benchmark: Different output formats are also available, for more information please see Output Formats. Open Source & Contributing This repository is published under the Apache 2.0 license. Please see our code of conduct. We look forward to collaborating with you! Tailpipe and Powerpipe are products produced from this open source software, exclusively by Turbot HQ, Inc. They are distributed under our commercial terms. Others are allowed to","default_branch":null,"files":null,"tree":[],"storefront":"/r/turbot","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/turbot/tailpipe-mod-aws-cloudtrail-log-detections/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}