My Arsenal of AWS Security Tools is a curated list of open source tools for AWS security across defensive, offensive, auditing, and incident response domains.
The project addresses the challenge of discovering and evaluating security tools for AWS environments by organizing them into functional categories: defensive hardening and security assessment, offensive security testing, purple teaming and adversary emulation, continuous security auditing, digital forensics and incident response, development security, S3 bucket auditing, and training resources. Rather than building tools itself, the approach is to serve as a centralized reference that collects existing open source solutions and presents them in a structured, categorized format.
Teams building or securing AWS infrastructure should consider this list when evaluating which tools to integrate into their security workflows. It suits organizations at any stage of AWS adoption that need to identify open source alternatives for specific security functions, from infrastructure hardening to forensic investigation. The list explicitly welcomes community contributions of open source tools, making it a collaborative resource rather than a static snapshot.
The project maintains an active contribution model where pull requests are accepted for adding new open source tools to the list. The repository tracks metadata including popularity signals and contributor activity alongside each tool entry, providing context for evaluation decisions.