New Research: Supply Chain Attack on Axios Pulls Malicious Dependency from npm.Details
Socket
Book a DemoSign in
Socket

tbtool1

Package Overview
Dependencies
Maintainers
1
Versions
1
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

tbtool1

Data And Analytics Audit Tool

pipPyPI
Version
0.1
Maintainers
1

DNA AUDIT TOOL

DNA Audit tool helps you to check whether the application built on AWS is following the AWS Well-Architected framework by validating it against various AWS services security requirements and the best practices. Generates report to validate the security requirements and security best practices.

AWS Hardening Standards & Best Practices

https://codaglobal.atlassian.net/l/cp/UP1BxJTr

AWS Tagging Standards

https://codaglobal.atlassian.net/l/cp/oj0Ngsdb

AWS Naming Standards

https://codaglobal.atlassian.net/l/cp/s99nYLEC

Audit tool setup

The project basically uses boto client to connect to the aws services.

  • Update the session credentials in the terminal.

  • Specify the region name if you need to perform the audit for services in a specific region by mentioning the region name as argument while running the program.

  • If no region is specified us-east-1 is taken as default region and audit checks are performed for the services in us-east-1.

  • If you need to check tags. Update the Config.Json file by mentioning the tags in the account tags provided.

Audit Tool Execution

Creating Virtual Environment

python3 -m venv venv

Activating the virtual environment

source venv/bin/activate

Installing the dependencies in the virtual environment

pip install -r requirements.txt

Run the following command

python3 src/main.py --region {region_name}

Test Cases Execution

nosetests

Final Report

The overall report is provided as a HTML document.

sample report

Scheme Scheme

FAQs

Did you know?

Socket

Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.

Install

Related posts