TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Show HN: ZeusCloud (YC W22) – open-source cloud security

15 点作者 alphabetatheta大约 2 年前
Hey folks - last month, we open sourced ZeusCloud (https:&#x2F;&#x2F;github.com&#x2F;Zeus-Labs&#x2F;ZeusCloud) - a platform to identify, prioritize, and remediate security risks in your cloud environment.<p>ZeusCloud thinks like an attacker. It identifies security risks in your environment like infra misconfigurations, over-permissive identities, and workload vulnerabilities. And it pieces them together to show you attack paths like a publicly exposed VM with a critical CVE has effective admin access.<p>Some highlights of the ZeusCloud platform: - Graphical attack paths so you can prioritize the risks in your cloud with context - An asset inventory of your compute, networking, and IAM assets to give you further visibility into your AWS environments - An interactive access explorer view that shows you how IAM users&#x2F;roles can access S3 buckets, EC2 instances, etc. for blast radius analysis<p>We know other cloud security products exist. But, in our experience, they’re often inaccessible or fail to show you sufficient context behind security findings. The project is still early - we’ve focused so far on infra misconfiguration and identity risks. Looking to add vulnerabilities to the attack paths through tools like Project Discovery (nuclei) and Burpsuite next.<p>Check out our GitHub (Licensed Apache 2.0): https:&#x2F;&#x2F;github.com&#x2F;Zeus-Labs&#x2F;ZeusCloud<p>Play around with our Sandbox environment: https:&#x2F;&#x2F;demo.zeuscloud.io<p>Get Started (free&#x2F;self-hosted): https:&#x2F;&#x2F;docs.zeuscloud.io&#x2F;introduction&#x2F;get-started<p>Would love to hear what you think!

1 comment

coatue大约 2 年前
Apache 2.0 caught my eye! Great to see open source making cloud security more accessible.