Commit Graph

  • 68b3e1fa06 feat(aws-securitygroups): include extra control 7134 in extra group Pepe Fagoaga 2021-04-19 19:19:24 +02:00
  • 2ac96cf29a feat(aws-securitygroups): include new control to test ingress from 0.0.0.0/0 or ::/0 to FTP ports 20 or 21 Pepe Fagoaga 2021-04-19 19:18:23 +02:00
  • 49533de21b Added support for custom output folder and S3 bucket Toni de la Fuente 2021-04-15 23:51:21 +02:00
  • 583cffaefb 2.4.1 @toniblyx Toni de la Fuente 2021-04-15 10:22:00 +02:00
  • 721b15d105 Fixed issue #776 Toni de la Fuente 2021-04-15 09:30:31 +02:00
  • 53117819fc Fixed credentials renew issue #775 Toni de la Fuente 2021-04-14 11:47:38 +02:00
  • 2552f2977d Fixed issue #775 Toni de la Fuente 2021-04-12 21:23:28 +02:00
  • 8a04f40a80 Fixed issue #774 Toni de la Fuente 2021-04-12 20:20:04 +02:00
  • b0fd6ce60f Merge pull request #773 from toniblyx/2.4 Toni de la Fuente 2021-04-09 15:51:44 +02:00
  • e4edc2fa2c Improved feature to refresh assume role credentials before it expires Toni de la Fuente 2021-04-09 15:13:13 +02:00
  • 10d062960e Updated screenshots Toni de la Fuente 2021-04-08 00:35:12 +02:00
  • 7f24aab715 Updated README Toni de la Fuente 2021-04-08 00:22:07 +02:00
  • 3dfca9c9dd Improved html output with scoring information Toni de la Fuente 2021-04-08 00:14:24 +02:00
  • dacfea6b32 Included Risk, Remediation and Link support for CSV and HTML outputs Toni de la Fuente 2021-04-07 18:42:44 +02:00
  • 574a9c94b0 Added Risk, Remediation and Link to html report Toni de la Fuente 2021-04-07 18:40:50 +02:00
  • 7bace94e08 Fixed servicename variable in extra72 Toni de la Fuente 2021-04-07 18:39:14 +02:00
  • 778910eff3 Added new logo to README.md header Toni de la Fuente 2021-04-06 17:32:55 +02:00
  • 755f7d952f Added new logo Toni de la Fuente 2021-04-06 17:15:33 +02:00
  • d02e1967dc Improved PublicIP discovery used in Shodan check_extra7102 @as-km Toni de la Fuente 2021-04-06 13:05:27 +02:00
  • d77001356a use describe-network-interfaces instead of describe-addresses in order to get public IPs #768 Mateusz 2021-04-06 12:57:11 +02:00
  • e85d8b2a9d Add check23 to group17_internetexposed group @RyanJarv Toni de la Fuente 2021-04-06 12:01:52 +02:00
  • 4f16c8dec5 Merge pull request #766 from toniblyx/revert-765-patch-2 Toni de la Fuente 2021-04-05 21:17:35 +02:00
  • 236ce1fb21 Revert "Add check23 to group17_internetexposed group" Toni de la Fuente 2021-04-05 21:16:58 +02:00
  • 15230ae6f3 Add check23 to group17_internetexposed @RyanJarv Toni de la Fuente 2021-04-05 21:16:54 +02:00
  • 6c5776106f Add check23 to group17_internetexposed group Ryan Gerstenkorn 2021-04-05 12:07:08 -07:00
  • 4100d1dbfd Replace empty space with '\s' in check43 regex @frannovo Toni de la Fuente 2021-04-05 15:49:04 +02:00
  • abcd299559 Add get_regions function in order to call after assume_role @HG00 Toni de la Fuente 2021-04-05 15:35:54 +02:00
  • f6049a0597 Merge branch '2.4' into master Toni de la Fuente 2021-04-05 15:27:31 +02:00
  • bb397baa8a Add get_regions function in order to call after assume_role HG00 2021-03-30 11:53:24 +00:00
  • c0f3265754 Better handle permissions and errors Toni de la Fuente 2021-03-24 15:41:51 +01:00
  • 9614b6fc82 Merge branch '2.4' of https://github.com/toniblyx/prowler into 2.4 Toni de la Fuente 2021-03-24 15:12:48 +01:00
  • a9d56be81a Added risk, remediation, doc link and caf epic to checks 742 to 7133 Toni de la Fuente 2021-03-24 15:12:32 +01:00
  • 0c4111efda Moved assume role before listing regions fixes issue #744 Toni de la Fuente 2021-03-24 15:11:00 +01:00
  • 5fb2e496a9 Added risk, remediation, doc link and caf epics to controls 1 to 741 @pablopagani Toni de la Fuente 2021-03-24 14:36:54 +01:00
  • 7b4dae634e Merge branch '2.4' of https://github.com/pablopagani/prowler into 2.4 Pablo Pagani 2021-03-24 10:23:04 -03:00
  • 35a22a71cd added risk remediation doc and epics to controls 1 to 741 Pablo Pagani 2021-03-24 10:22:29 -03:00
  • 21f817b087 Removed textInfo extra information on extra712 Toni de la Fuente 2021-03-24 12:30:59 +01:00
  • 923dc3403b Added risk, remediation, doc link and epics to first 3 checks @pablopagani Toni de la Fuente 2021-03-24 09:08:19 +01:00
  • 68d240939c added risk, remediation doc and epics to firts 3 checks Pablo Pagani 2021-03-23 15:23:55 -03:00
  • a9d0649122 added risk, remediation doc and epics to firts 3 checks Pablo Pagani 2021-03-23 15:19:23 -03:00
  • 3eeba2ef4e Replace empty space with '\s' in check43 regex Fran Novo 2021-03-15 17:45:49 +01:00
  • 806eaa0b98 Updated ProwlerExecRoleAdditionalViewPrivileges Policy with lambda:GetFunction Toni de la Fuente 2021-03-11 14:27:52 +01:00
  • 2cd8d15410 Merge pull request #1 from toniblyx/master Pepe Fagoaga 2021-03-11 13:33:11 +01:00
  • d8473cfe87 Include missing AWS function lambda:GetFunction policy in prowler-additions-policy.json to check AWS Lambda @jfagoagas Toni de la Fuente 2021-03-11 13:13:06 +01:00
  • 34625ff4e7 fix: include lambda:GetFunction in prowler policy to check AWS Lambda related controls: extra720,extra759,extra760,extra762,extra798 Pepe Fagoaga 2021-03-11 12:48:32 +01:00
  • 097ddbb957 Added extra7133 RDS multi-AZ Toni de la Fuente 2021-03-04 20:29:40 +01:00
  • db1380422f Added high level architecture Toni de la Fuente 2021-02-25 11:56:45 +01:00
  • 669cb6f1a9 Added IAM to extra7100 title Toni de la Fuente 2021-02-25 11:56:22 +01:00
  • fa2a40f5c0 Fix output on extra731 Toni de la Fuente 2021-02-23 18:27:38 +01:00
  • 80b94eb667 Fix output on extra731 Toni de la Fuente 2021-02-23 18:24:26 +01:00
  • b633ec8bef Added more checks mappings to ISO27001 group and reordered the list @mario-platt Toni de la Fuente 2021-02-22 23:21:32 +01:00
  • a6ee7922c6 Cloudtrail metrics (check3x) pass if found on any, not every, cloudtrail log @zfLQ2qx2 Toni de la Fuente 2021-02-22 23:18:31 +01:00
  • 2883de016e Ensure check28 only looks at symmetric keys Toni de la Fuente 2021-02-22 23:15:06 +01:00
  • f94bf38bdc Merge pull request #752 from toniblyx/revert-742-check28-asymmetric-keys Toni de la Fuente 2021-02-22 23:05:52 +01:00
  • 5d7d9efa69 Revert "check28 only look at symmetric keys" Toni de la Fuente 2021-02-22 23:05:05 +01:00
  • 1d0887ac89 Make check28 only look at symmetric keys @mdop-wh Toni de la Fuente 2021-02-22 22:36:53 +01:00
  • e0dbfaaa37 Merge branch 'master' into check28-asymmetric-keys Toni de la Fuente 2021-02-22 22:35:32 +01:00
  • b68cf876bc Merge pull request #751 from toniblyx/revert-736-universal_epoch_time Toni de la Fuente 2021-02-22 21:54:08 +01:00
  • 97a7471f24 Revert "Implement OS neutral method of converting rfc3339 dates to epoch" Toni de la Fuente 2021-02-22 21:52:19 +01:00
  • 5d3c526ba7 Implement OS neutral method of converting rfc3339 dates to epoch @zfLQ2qx2 Toni de la Fuente 2021-02-22 21:47:06 +01:00
  • 3d834fae42 Fix typos and add to extras extra7132 Toni de la Fuente 2021-02-22 21:44:48 +01:00
  • aa3f8a6b5c Add check for RDS enhanced monitoring @mpratsch Toni de la Fuente 2021-02-22 21:41:24 +01:00
  • bddf71d5e6 Add access checks for several checks @zfLQ2qx2 Toni de la Fuente 2021-02-22 21:38:39 +01:00
  • 8a32d8ae5f Force default AWS CLI output issue #696 @Kirizan Toni de la Fuente 2021-02-22 21:31:32 +01:00
  • 78c2cacfd9 added more checks mappings to ISO27001 group, and reordered the list of comment mappings to go from lower to highest requirements in ISO Mario Platt 2021-02-19 14:23:26 +00:00
  • 7e6291c51d Cloudtrail metrics pass if found on any, not every, cloudtrail log C.J 2021-02-09 12:27:38 -05:00
  • 138ece153e Adjusted severity to secrets and Shodan checks Toni de la Fuente 2021-02-05 08:38:12 +01:00
  • 5d04febf81 Adjusted severity like in Security Hub Toni de la Fuente 2021-02-05 08:34:34 +01:00
  • 696a776e2e Move extra7132 to rd group and add CHECK_SERVICENAME to check Martina Rath 2021-02-05 08:32:06 +01:00
  • 073d2ab727 Add check if Enhanced monitoring is enabled on RDS instances Martina Rath 2021-01-21 07:04:09 +01:00
  • 7e8de8adb8 check28 only look at symmetric keys Michael Dop 2021-02-04 10:07:27 -05:00
  • de87de3b39 Add access checks for several checks C.J 2021-01-14 13:16:06 -05:00
  • e91e2cfee6 Updated extra73 with service name Toni de la Fuente 2021-02-03 14:55:15 +01:00
  • d33c82cd00 Merge branch 'master' into patch-1 Toni de la Fuente 2021-02-03 14:54:22 +01:00
  • 0e3e4a9227 Updated Toni de la Fuente 2021-02-03 14:51:11 +01:00
  • bea84ad6d3 Fix title grammar in check_extra73 @CenturionGamer Toni de la Fuente 2021-02-03 14:49:35 +01:00
  • 79c4a65ba8 Improved to consider services and severity Toni de la Fuente 2021-02-02 17:36:35 +01:00
  • e6d175d62e Check for errors generating credential report, limit loop iterations @zfLQ2qx2 Toni de la Fuente 2021-02-02 15:28:32 +01:00
  • 880523880d Update check_extra73 CenturionGamer 2021-01-28 13:06:44 -05:00
  • cbcc8c61a5 Implement OS neutral method of converting rfc3339 dates to epoch C.J 2021-01-26 13:37:48 -05:00
  • f9c2e0cf26 Revert PR #718 Toni de la Fuente 2021-01-22 16:17:26 +01:00
  • 6f371744dc Added AWS service name to json, csv and html outputs Toni de la Fuente 2021-01-22 10:56:59 +01:00
  • dfdff6e863 Added service name to all checks Toni de la Fuente 2021-01-22 00:23:53 +01:00
  • 8ed40791ad Added service name to sample check Toni de la Fuente 2021-01-22 00:21:26 +01:00
  • f85845c26b Added service name to all checks Toni de la Fuente 2021-01-22 00:19:45 +01:00
  • 73cac580f3 Added severity field to CSV and HTML output reports Toni de la Fuente 2021-01-21 22:42:40 +01:00
  • 6bb49fd162 Merge branch 'master' of https://github.com/toniblyx/prowler Toni de la Fuente 2021-01-21 22:40:50 +01:00
  • 478cb4aa54 Adjusted severity variable Toni de la Fuente 2021-01-21 22:40:25 +01:00
  • 47aa6998f4 Update check_extra7130 profile parameter was not set @soffensive Toni de la Fuente 2021-01-18 17:07:00 +01:00
  • f7e4a1f6a4 Update check_extra7130 soffensive 2021-01-18 16:41:18 +01:00
  • b1332f1154 Fix regex in check43 @ilyas28 Toni de la Fuente 2021-01-15 13:05:29 +01:00
  • 8e35e63359 fix regex in check43 İlyas Apaydın 2021-01-14 13:38:33 +03:00
  • be3e771454 Check for errors generating credential report, limit loop iterations C.J 2021-01-14 04:41:16 -05:00
  • f5b26387f0 Clear AWS_DEFAULT_OUTPUT on start @zfLQ2qx2 Toni de la Fuente 2021-01-14 10:19:07 +01:00
  • ed0f01b617 Clear AWS_DEFAULT_OUTPUT on start C.J 2021-01-14 04:01:40 -05:00
  • d047cd807a Fix check extra73 fail message omits bucket name @zfLQ2qx2 Toni de la Fuente 2021-01-14 09:28:44 +01:00
  • 6a9a47e549 Fix for issue 713 C.J 2021-01-13 19:16:48 -05:00
  • 6cbee3b16c Fix log metric filter check3x with multiple trails @bridgecrewio Toni de la Fuente 2021-01-13 23:08:17 +01:00
  • a53aeff0e8 Catch errors assuming role and describing regions @zfLQ2qx2 Toni de la Fuente 2021-01-13 22:50:11 +01:00
  • 81787d1946 Add check for AccessDenied when calling GetBucketLocation in extra73,extra734,extra764 @zfLQ2qx2 Toni de la Fuente 2021-01-13 22:35:20 +01:00