least-privilege
There are 18 repositories under least-privilege topic.
Permify/permify
An open-source authorization as a service inspired by Google Zanzibar, designed to build and manage fine-grained and scalable authorization systems for any application.
iann0036/iamlive
Generate an IAM policy from AWS, Azure, or Google Cloud (GCP) calls using client-side monitoring (CSM) or embedded proxy
alcideio/rbac-tool
Rapid7 | insightCloudSec | Kubernetes RBAC Power Toys - Visualize, Analyze, Generate & Query
awslabs/aws-break-glass-role
Create a break glass role for emergency use in order to limit AWS production account access. Configure automatic alerts and logging of activities in the role to secure its use in production environments.
uatuko/ruek
🔐 Lightning fast, global scale authorization service without the overhead of a yet another DSL.
iann0036/iamlive-lambda-extension
Lambda Extension for iamlive
z0ph/aa-policy-validator
Validate all your Customer IAM Policies against AWS Access Analyzer - Policy Validation
Optum/cloudig
Cloud governance reports from native services in a clear and readable digest
borgoat/farmfa
TOTP MFA for teams: Shamir's Secret Sharing and zero trust OTP generation
p0-security/iam-privilege-catalog
Catalog and understand risks from granting IAM privileges
Permify/permify-cli
command line interface for Permify
binarymist/cloudsecurity-quickreference
:books: :cloud: For Architects and Engineers :cloud: :books:
tosun-si/sa-custom-roles-gcp-terraform
This project shows a complete use case with the least privilege principle on Google Cloud using modular Terraform, Terragrunt and Cloud Build
mathieu-benoit/mygkecluster
gcloud script to provision my GKE cluster, in a secure way
esprimo/iamgo
Find AWS IAM permissions used by Go code
alex2276564/PermGuard
A Minecraft plugin designed to enhance server security by temporarily revoking admin permissions upon joining. It helps prevent unauthorized access and potential security breaches, ensuring that only authorized personnel can grant elevated privileges.
ChetanThapliyal/Secure-Pub-Sub-with-Go-and-Terraform
A fully managed message processing pipeline built with Go and deployed using Terraform. This project implements a secure Pub/Sub flow that handles errors and notifications efficiently. It leverages GCP's native retry and deadlettering capabilities, adhering to the principle of least privilege.
ericyoc/gencyber_10_sec_principles_poc
The GenCyber 10 Security First Principles are a set of fundamental best practices and guidelines for cybersecurity