Daniel Barranquero
|
012fd84cb0
|
chore: add provider-uid flag for iac provider (#10233)
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-03-03 13:07:15 +01:00 |
|
Pepe Fagoaga
|
9c2cb5efa8
|
fix(elbv2): Handle post-quantum (PQ) TLS policies (#10219)
|
2026-03-03 10:18:00 +01:00 |
|
Andoni Alonso
|
efcbbf63c2
|
docs: review and fix documentation coverage for provider CLI flags (#10040)
|
2026-03-03 09:57:05 +01:00 |
|
Harsh Mishra
|
150abce4a8
|
fix(aws): respect AWS_ENDPOINT_URL for STS session creation (#10228)
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-03-03 08:25:59 +01:00 |
|
Hugo Pereira Brito
|
07dea4f402
|
refactor(m365): rename conditional access policy checks to include policy prefix (#10217)
|
2026-03-02 13:41:24 +01:00 |
|
Daniel Barranquero
|
b21ded6d46
|
feat(openstack): add image service with 6 checks (#10096)
|
2026-03-02 12:47:49 +01:00 |
|
Daniel Barranquero
|
8eddb48b16
|
feat(openstack): add blockstorage service with 7 checks (#10120)
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com>
|
2026-03-02 12:08:08 +01:00 |
|
Daniel Barranquero
|
d3ba93f0c0
|
feat(openstack): add networking service with 6 checks (#9970)
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com>
|
2026-03-02 11:55:37 +01:00 |
|
Andoni Alonso
|
c8ce590039
|
feat(m365): add entra_default_app_management_policy_enabled security check (#9898)
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
|
2026-02-26 16:14:29 +01:00 |
|
Andoni Alonso
|
df09b14c75
|
feat(m365): add entra_all_apps_conditional_access_coverage security check (#9902)
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
|
2026-02-26 11:37:09 +01:00 |
|
Hugo Pereira Brito
|
db1db7d366
|
feat(m365): add entra_require_mfa_for_management_api security check (#10150)
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com>
|
2026-02-25 12:29:23 +01:00 |
|
lydiavilchez
|
9ee8072572
|
feat(googleworkspace): add Google Workspace provider with directory service and super admin check (#10022)
|
2026-02-25 12:17:13 +01:00 |
|
Hugo Pereira Brito
|
6935c4eb1b
|
feat(m365): add entra_app_enforced_restrictions security check (#10058)
|
2026-02-25 11:53:35 +01:00 |
|
Pepe Fagoaga
|
6962622fd2
|
fix(aws): filter VPC endpoint services by audited account to prevent AccessDenied errors (#10152)
Co-authored-by: Copilot <198982749+Copilot@users.noreply.github.com>
Co-authored-by: jfagoagas <16007882+jfagoagas@users.noreply.github.com>
|
2026-02-24 18:30:31 +01:00 |
|
Andoni Alonso
|
c159181d27
|
feat(api): add Image provider support for container image scanning (#10128)
|
2026-02-24 13:06:34 +01:00 |
|
Daniel Barranquero
|
030d053c84
|
chore(openstack): support multi-region in the same provider (#10135)
|
2026-02-24 12:50:52 +01:00 |
|
Andoni Alonso
|
75d01efc0d
|
feat(m365): add entra_conditional_access_policy_emergency_access_exclusion security check (#9903)
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
|
2026-02-24 11:35:31 +01:00 |
|
Hugo Pereira Brito
|
f7895e206b
|
fix(azure): standardize resource_id values across Azure checks (#9994)
|
2026-02-23 17:53:31 +01:00 |
|
Hugo Pereira Brito
|
bb5a4371bd
|
feat(ui): add Cloudflare provider support (#9910)
Co-authored-by: Alan Buscaglia <gentlemanprogramming@gmail.com>
Co-authored-by: Alejandro Bailo <59607668+alejandrobailo@users.noreply.github.com>
Co-authored-by: alejandrobailo <alejandrobailo94@gmail.com>
|
2026-02-23 09:33:17 +01:00 |
|
Andoni Alonso
|
ea60f2d082
|
feat(m365): add defenderxdr_critical_asset_management_pending_approvals security check (#10085)
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com>
|
2026-02-19 18:49:41 +01:00 |
|
Andoni Alonso
|
e8c0a37d50
|
feat(m365): add entra_seamless_sso_disabled security check (#10086)
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com>
|
2026-02-19 18:19:07 +01:00 |
|
Hugo Pereira Brito
|
48b94b2a9f
|
feat(m365): add defenderxdr_endpoint_privileged_user_exposed_credentials security check (#10084)
Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com>
|
2026-02-19 17:52:16 +01:00 |
|
Hugo Pereira Brito
|
20b26bc7d0
|
feat(m365): add entra_app_registration_no_unused_privileged_permissions security check (#10080)
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com>
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-02-19 17:12:50 +01:00 |
|
Hugo Pereira Brito
|
23e51158e0
|
feat(m365): add defenderidentity_health_issues_no_open security check (#10087)
|
2026-02-19 16:58:08 +01:00 |
|
Andoni Alonso
|
d2f4f8c406
|
feat(image): add registry scan mode with OCI, Docker Hub, and ECR support (#9985)
|
2026-02-19 12:48:55 +01:00 |
|
Sandiyo Christan
|
2c2881b351
|
fix(oss): use defusedxml to prevent XXE vulnerabilities (#9999)
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com>
|
2026-02-17 12:21:30 +01:00 |
|
Hugo Pereira Brito
|
8438a94203
|
chore: enhance github documentation and ui placeholder (#9830)
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com>
|
2026-02-17 10:48:53 +01:00 |
|
Daniel Barranquero
|
be516f1dfc
|
feat(openstack): Add 7 New Compute Security Checks (#9944)
|
2026-02-16 11:46:48 +01:00 |
|
Copilot
|
90e317d39f
|
fix(kms): detect public access for any KMS action, not just kms:* (#10071)
Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com>
Co-authored-by: jfagoagas <16007882+jfagoagas@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-02-16 10:12:29 +01:00 |
|
kushpatel321
|
9da0b0c0b1
|
feat(github): add organization domain verification check (#10033)
Co-authored-by: Kush321 <kushp2018@gmail.com>
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com>
|
2026-02-13 13:41:17 +01:00 |
|
Andoni Alonso
|
aa7490aab4
|
feat(image): add container image provider for CLI scanning (#9984)
|
2026-02-12 16:36:48 +01:00 |
|
Andoni Alonso
|
fce1e4f3d2
|
feat(m365): add defender_safe_attachments_policy_enabled security check (#9833)
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
|
2026-02-11 15:42:11 +01:00 |
|
Andoni Alonso
|
5d490fa185
|
feat(m365): add defender_atp_safe_attachments_and_docs_configured security check (#9837)
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
|
2026-02-11 15:21:06 +01:00 |
|
Andoni Alonso
|
c5f7e80b20
|
feat(m365): add defender_safelinks_policy_enabled security check (#9832)
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
|
2026-02-11 13:03:32 +01:00 |
|
Andoni Alonso
|
dde42b6a84
|
fix(github): combine --repository and --organization flags for scan scoping (#10001)
|
2026-02-10 14:34:59 +01:00 |
|
Hugo Pereira Brito
|
cb9ab03778
|
feat(aws): revert Adding check that AWS Auto Scaling group has deletion protection (#9956)
Co-authored-by: Josema Camacho <hello@josema.xyz>
|
2026-02-04 16:53:08 +01:00 |
|
Serhii Sokolov
|
69818abdd0
|
feat(aws): Adding check that AWS Auto Scaling group has deletion protection (#9928)
Co-authored-by: Serhii Sokolov <serhii.sokolov@automat-it.com>
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com>
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
|
2026-02-04 13:17:13 +01:00 |
|
Hugo Pereira Brito
|
547c53e07c
|
ci: add duplicate test name checker across providers (#9949)
|
2026-02-03 12:00:41 +01:00 |
|
Daniel Barranquero
|
e66c9864f5
|
fix: modify tests files name (#9942)
|
2026-02-03 08:05:27 +01:00 |
|
Daniel Barranquero
|
08730b4eb5
|
feat(openstack): add Openstack provider (#9811)
|
2026-01-29 12:54:18 +01:00 |
|
mohd4adil
|
e97e31c7ca
|
chore(aws): add support for trusted aws accounts in cross account checks for s3, eventbridge bus, eventbridge schema and dynamodb (#9692)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-01-29 09:13:34 +01:00 |
|
Kay Agahd
|
04e2d15dd2
|
feat(aws): add check rds_instance_extended_support (#9865)
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com>
|
2026-01-28 16:49:35 +01:00 |
|
Hugo Pereira Brito
|
80c94faff9
|
feat(cloudflare): --account-id filter support (#9894)
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com>
|
2026-01-27 14:18:55 +01:00 |
|
Hugo Pereira Brito
|
6bb8dc6168
|
feat(cloudflare): extend dns and zone services check coverage (#9426)
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com>
|
2026-01-27 13:48:26 +01:00 |
|
Sergio Garcia
|
9e7ecb39fa
|
feat(aws): CloudTrail timeline for findings (#9101)
Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@prowler.com>
|
2026-01-27 13:00:46 +01:00 |
|
Andoni Alonso
|
3d6aa6c650
|
feat(m365): add defender_zap_for_teams_enabled security check (#9838)
Co-authored-by: Claude Opus 4.5 <noreply@anthropic.com>
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
|
2026-01-26 17:34:10 +01:00 |
|
Andoni Alonso
|
7f4c02c738
|
feat(m365): add exchange_shared_mailbox_sign_in_disabled check (#9828)
|
2026-01-26 16:00:28 +01:00 |
|
Hugo Pereira Brito
|
5784592437
|
chore(azure): add vault parallelization in keyvault service (#9876)
|
2026-01-26 13:39:54 +01:00 |
|
Andoni Alonso
|
6cb0edf3e1
|
feat(aws/codebuild): add check for CodeBreach webhook filter vulnerability (#9840)
Co-authored-by: HugoPBrito <hugopbrit@gmail.com>
|
2026-01-22 15:12:24 +01:00 |
|
lydiavilchez
|
963ece9a0b
|
feat(gcp): add check to detect persistent disks on suspended VM instances (#9747)
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com>
|
2026-01-22 13:38:30 +01:00 |
|