AWS Serverless Security
-
Updated
Jul 13, 2022 - Python
AWS Serverless Security
awesome resources about cloud native security 🐿
A Serverless Security Library for Developers. Regain Control Over Your AWS Lambda & Google Cloud Functions Runtimes.
source code
JavaScript Security Engineering (Helicopter View) workshop, crafted for 3 hours with a bunch of demos
AWS Lambda runtime application self-protection (RASP). Free and opensource.
FlareStack is an automated traffic abuse mitigation system built on Cloudflare Workers. It periodically analyzes Cloudflare Analytics data to detect high-frequency or abusive IPs and automatically blocks them using WAF custom lists, helping protect sites from scraping, bots, and request floods.
Serverless security scanning engine for AWS environments. Detects IAM privilege escalation, unauthenticated API exposure, and storage misconfigurations via active abuse simulation — not static checks.
Enterprise-grade AWS security & networking portfolio: Terraform-built hub-and-spoke VPC architecture with centralized ingress/egress, organization-wide IAM zero-trust guardrails (SCPs/permission boundaries), and centralized detection/response using multi-account logging and automated alerting.
Production-inspired AWS serverless API security platform using Terraform, API Gateway, Lambda, WAF, API keys, usage plans, CloudWatch, SNS, EventBridge, and advanced alerting.
🏗️ Hands-on workshop to secure a serverless AWS application across seven defense-in-depth layers using AI-powered automation. Covers Cognito adaptive auth, WAF edge protection, VPC isolation, Lambda hardening with Kiro, Secrets Manager, DynamoDB encryption, and a Bedrock AI agent for GuardDuty incident response via EventBridge.
AdaPol is a research-driven, prototype-grade DevSecOps system designed to **automatically synthesize least-privilege IAM policies** for serverless workloads deployed across **AWS, Azure, and Google Cloud**. The core motivation behind AdaPol is the persistent gap between the *principle of least privilege* and real-world cloud practice.
🔒 Automate least-privilege IAM policy synthesis for serverless workflows across AWS, Azure, and Google Cloud, ensuring security and compliance in your CI/CD pipelines.
Add a description, image, and links to the serverless-security topic page so that developers can more easily learn about it.
To associate your repository with the serverless-security topic, visit your repo's landing page and select "manage topics."