cloudsploit icon indicating copy to clipboard operation
cloudsploit copied to clipboard

Cloud Security Posture Management (CSPM)

Results 235 cloudsploit issues
Sort by recently updated
recently updated
newest added

This plugin produces a failing result for any validated SES domain. SES Domains (vs SES email identities) present a phishing/forgery risk in accounts with loose IAM access or in event...

Adds option to ignore buckets outside the account These plugins were developed by Trek10 under contract to WarnerMedia for release back into the main CloudSploit Scanning Engine. WarnerMedia expressly authorizes...

the --skip-pagination option is inverted and the code was unclear.

bug
reviewed

Whenever I try to run the report for Azure Cloud using CIS compliance, I get the error as Nothing to collect as there is no compliance object there for CIS...

This PR provides a way to run the engine via AWS Lambda. A new file lambda_index.js is provided which contains the lambda_handler. A SAM CloudFormation Template and Makefile exist for...

The EKS endpoint setting can have endpointPublicAccess as true, and endpointPrivateAccess as **true** too. So, just checking if endpointPrivateAccess is true can result in a false-negative. The right way to...

question
hotfix