- Ashland, OR
- http://www.andrewkrug.com
-
mr_bluejays_demo_app_nested Public
A demo version of my_bluejays_shoes with nested cloudformation
Makefile MIT License UpdatedApr 2, 2026 -
mr_bluejays_demo_app Public
A simple demo application for a retail store on the web with misconfigurations. Based on Mr. Bluejays shoe store version 1.
-
Supplemental templates for securing the cloud.
-
self-revoking-aws-admin Public
Allows an app to deploy temporary administrative or readonly access to AWS accounts that's automagically completely cleaned up.
Makefile Apache License 2.0 UpdatedMar 29, 2026 -
dd-trivia.github.io Public
Trivia sample app for cons that supports multiple styles of gameplay.
HTML Apache License 2.0 UpdatedMar 17, 2026 -
-
-
acklerfest.github.io Public
A website for the semi-annual party
CSS MIT License UpdatedNov 16, 2025 -
A simple example of how to use Cloud Custodian for Security Automation
Makefile MIT License UpdatedOct 8, 2025 -
-
An example of leveraging terraform to manage SCPs and assign them. Tests included.
Makefile MIT License UpdatedOct 8, 2025 -
access_analyzer_bootstrap Public
A simple python script that demonstrates using free tier access analyzer
Python MIT License UpdatedOct 8, 2025 -
permissions_boundary_demo Public
This is a demo of two roles and permissions boundaries as a guardrail.
Makefile MIT License UpdatedOct 7, 2025 -
dns_logging_example Public
A sample of how to query and enable DNS logs in AWS
Makefile UpdatedOct 5, 2025 -
Serverless tainted server automation example
Makefile MIT License UpdatedOct 5, 2025 -
simple-terraform-application Public
A slightly vulnerable terraform mini project for first blush at terraform.
HCL MIT License UpdatedOct 5, 2025 -
stratus_cloudshell_example Public
An example of what it takes to get stratus red team up and running in AWS Cloudshell quickly for a demo.
Shell MIT License UpdatedSep 28, 2025 -
CloudTrail with S3 and CloudTrail Lake - CloudFormation Template and Reference Queries
Makefile MIT License UpdatedSep 28, 2025 -
cdk_billing_demo Public
This is a vibe coded demo of using the AWS CDK in python to setup billing alarms.
Python MIT License UpdatedSep 28, 2025 -
securing-the-cloud-ws-site Public
A plain and simple HTML site for deployment on securing the cloud workstations.
CSS Other UpdatedFeb 3, 2025 -
wrangling-cloud-identity Public
A workshop on moving identity and access closer to developers.
-
-
url-shortener Public
Forked from zoph-io/url-shortenerserverless url-shortener
Python UpdatedAug 25, 2024 -
PMapper Public
Forked from nccgroup/PMapperA tool for quickly evaluating IAM permissions in AWS.
Python GNU Affero General Public License v3.0 UpdatedAug 2, 2024 -
devsecops-python-demo Public
A DevSecOps pipeline sample application.
Dockerfile Apache License 2.0 UpdatedApr 3, 2024 -
-
cloud-audit-workshop Public
Point and Shoot to Continuous Auditing in the AWS Cloud
-
sadcloud Public
Forked from nccgroup/sadcloudA tool for standing up (and tearing down!) purposefully insecure cloud infrastructure
HCL GNU Affero General Public License v3.0 UpdatedOct 14, 2023 -
Serverless-Goat-Python Public
Forked from motikan2010/Serverless-Goat-PythonPython version of the deliberately vulnerable serverless application Serverless-Goat from
HTML GNU Affero General Public License v3.0 UpdatedMay 27, 2023 -
securing-the-cloud-cleanup Public
Cleanup scripts for Securing the Cloud Foundations