Security News > 2024 > February > Prowler: Open-source security tool for AWS, Google Cloud Platform, Azure

Prowler is an open-source security tool designed to assess, audit, and enhance the security of AWS, GCP, and Azure.
"Easy to use from the command line with simple, understandable output, Prowler offers standard reporting formats like CSV and JSON, enabling users to thoroughly examine findings across any cloud provider, all in a uniform format. Its seamless integrations with Security Hub and S3 facilitate easy incorporation with other SIEMs, databases, and more. The ability to write custom checks and develop custom security frameworks is crucial for our expanding community," Toni de la Fuente, the creator of Prowler, told Help Net Security.
You can run Prowler from your workstation, an EC2 instance, Fargate, or any other container, Codebuild, CloudShell, and Cloud9.
The tool was written in Python using the AWS SDK, Azure SDK, and GCP API Python Client.
The developers are expanding Prowler with additional checks for Azure and GCP and full Kubernetes support in the upcoming version 4.0, which is scheduled for release in March.
Must read: 15 open-source cybersecurity tools you'll wish you'd known earlier.
News URL
Related news
- Google's got a hot cloud infosec startup, a new unified platform — and its eye on Microsoft's $20B+ security biz (source)
- Cloud providers aren’t delivering on security promises (source)
- Finders Keypers: Open-source AWS KMS key usage finder (source)
- There are 10,000 reasons to doubt Oracle Cloud's security breach denial (source)
- Cloud security explained: What’s left exposed? (source)
- Oracle Cloud security SNAFU latest: IT giant accused of pedantry as evidence scrubbed (source)
- Google Fixed Cloud Run Vulnerability Allowing Unauthorized Image Access via IAM Misuse (source)
- YES3 Scanner: Open-source S3 security scanner for public access, ransomware protection (source)
- What native cloud security tools won’t catch (source)
- Observability is security’s way back into the cloud conversation (source)