Pepe Fagoaga
a59d985b2d
chore(ui): Changelog for v5.7.3 ( #7951 )
2025-06-05 20:16:08 +05:45
Prowler Bot
62bc5bbf76
chore: update API changelog for v5.7.3 ( #7950 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-06-05 16:07:20 +02:00
Prowler Bot
1c7d6f697b
fix(changelog): add entries for password encryption in v5.7.3 ( #7944 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-06-05 19:12:46 +05:45
Prowler Bot
f7e20fc008
fix(formSchemas): encrypted password typo ( #7940 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-06-05 19:04:42 +05:45
Prowler Bot
8831572c5f
fix(m365): remove last encrypted password appearances ( #7941 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-06-05 19:00:49 +05:45
Prowler Bot
6355be4ede
chore(m365powershell): manage encryption from plaintext password ( #7942 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-06-05 14:48:44 +02:00
Prowler Bot
35e0efb36b
feat(database): handle already closed connections ( #7936 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-06-04 16:20:40 +02:00
Prowler Bot
928dfe078c
fix(rls): Apply persistent RLS transactions ( #7917 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-06-04 15:23:31 +02:00
Prowler Bot
d45c686429
revert: remove get_with_retry ( #7933 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
2025-06-04 15:11:10 +02:00
Prowler Bot
b51a07e490
chore(release): Bump version to v5.7.3 ( #7911 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-06-04 12:41:58 +05:45
Prowler Bot
8afc016312
feat(changelog): update version with fixes ( #7905 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-06-02 16:26:51 +05:45
Prowler Bot
3a51a455e1
fix: set user_id for tenant operations ( #7899 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-06-02 12:17:45 +02:00
Prowler Bot
16b008588c
docs: update the changelog ( #7902 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-06-02 11:55:35 +02:00
Prowler Bot
0140fd0b0a
fix: add new get method to avoid race conditions when creating async tasks ( #7887 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
2025-05-30 10:21:28 +02:00
Prowler Bot
7546dd8dd1
fix(api): connection correctly reflected ( #7885 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-05-29 20:37:18 +05:45
Prowler Bot
475ee8689c
fix(awslambda): aws service awslambda not working ( #7881 )
...
Co-authored-by: Alison Vilela <me@alison.dev >
2025-05-29 09:44:52 +02:00
Prowler Bot
dec6a29086
fix(k8s): UID validation for valid context names ( #7880 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-05-29 12:40:00 +05:45
Prowler Bot
563652fd68
fix(ui): increase limit to retrieve more than 10 scan list ( #7879 )
...
Co-authored-by: sumit-tft <70506234+sumit-tft@users.noreply.github.com >
2025-05-29 07:58:35 +02:00
Prowler Bot
a60cd1f24d
fix(admincenter): service and group visibility ( #7875 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
2025-05-28 16:55:13 +02:00
Prowler Bot
17df834add
chore: enhance CustomDropdownFilter ( #7873 )
...
Co-authored-by: Alejandro Bailo <59607668+alejandrobailo@users.noreply.github.com >
2025-05-28 16:35:36 +02:00
Prowler Bot
0e44bebc79
fix(m365): add powershell.close() to msgraph services ( #7817 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
2025-05-28 16:03:49 +02:00
Prowler Bot
e05a9381e6
fix(admincenter): admincenter_users_admins_reduced_license_footprint logic ( #7810 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-28 11:46:14 +02:00
Prowler Bot
20e88e5b09
fix(defender): update defender_ensure_notify_alerts_severity_is_high logic ( #7863 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-28 10:49:01 +02:00
Prowler Bot
dedd77758a
fix(ui): Added missing icons (kisa, prowlerThreat) on compliance page ( #7864 )
...
Co-authored-by: sumit-tft <70506234+sumit-tft@users.noreply.github.com >
2025-05-28 10:36:54 +02:00
Pablo Lara
94ea5ef546
docs: fix conflict changelog ( #7849 )
2025-05-27 12:11:17 +02:00
Prowler Bot
ad662fe245
fix(ui): updated to use the correct message when download report clicked ( #7847 )
...
Co-authored-by: sumit-tft <70506234+sumit-tft@users.noreply.github.com >
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-05-27 11:12:22 +02:00
Prowler Bot
9ea6043006
fix(reports): change invalid search term for tasks ( #7835 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
2025-05-27 10:19:03 +02:00
Prowler Bot
532cd973d1
feat(app): split SDK App service calls ( #7846 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2025-05-27 10:15:41 +02:00
Prowler Bot
b15cd6cc2c
fix(vpc): change the ServiceName from EC2 to VPC ( #7841 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2025-05-26 19:55:52 +02:00
Prowler Bot
f8c05c8741
fix(m365powershell): add sanitize to test_credentials ( #7818 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-23 13:43:45 +02:00
Prowler Bot
60f36226c8
chore(release): Bump version to v5.7.2 ( #7812 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-05-23 11:53:47 +02:00
Prowler Bot
830c4fd706
docs: update changelog UI ( #7809 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-05-21 12:52:50 +02:00
Prowler Bot
00a349dadd
fix: retrieve more than 10 providers ( #7806 )
...
Co-authored-by: Alejandro Bailo <59607668+alejandrobailo@users.noreply.github.com >
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-05-21 12:44:50 +02:00
Prowler Bot
0929fff027
chore: tweak some wording for consistency ( #7807 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-05-21 12:40:53 +02:00
Prowler Bot
ec7368f1bc
fix: AWS I AM role validation when field is empty ( #7805 )
...
Co-authored-by: sumit-tft <70506234+sumit-tft@users.noreply.github.com >
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-05-21 12:35:45 +02:00
Prowler Bot
1ad6878575
feat(findings): Add new index for finding UID lookup ( #7802 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-05-21 12:05:11 +02:00
Prowler Bot
8b0a62b42c
fix(dashboard): remove typo from subscribe cards ( #7798 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-05-21 11:23:21 +02:00
Prowler Bot
d9c8b1ea66
chore(release): Bump version to v5.7.1 ( #7789 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-05-20 22:27:32 +05:45
Pedro Martín
ec7a95ebba
feat(export): support m365 - prowler threatscore ( #7783 )
2025-05-19 16:08:35 +02:00
Víctor Fernández Poyatos
99dec659d6
fix(providers): Fix m365 UID validation ( #7781 )
2025-05-19 13:35:23 +02:00
Adrián Jesús Peña Rodríguez
1b7630cbe3
chore: update api changelog ( #7775 )
2025-05-19 11:08:15 +02:00
Pepe Fagoaga
740ab266fe
chore(api): Use Prowler from v5.7
2025-05-19 11:05:54 +02:00
Pablo Lara
a3b606fc71
docs: update changelog ( #7773 )
2025-05-19 10:49:58 +02:00
Hugo Pereira Brito
f6bb6efbf1
chore(m365): accept all tenant domains in authentication ( #7746 )
2025-05-19 10:47:40 +02:00
Pedro Martín
91b1feffcb
fix(cis): rename and add sections and subsections ( #7738 )
2025-05-19 10:47:40 +02:00
Pedro Martín
da5e11e08e
feat(aws): add CIS 5.0 compliance framework ( #7766 )
2025-05-19 10:47:36 +02:00
Pedro Martín
3ca8aacbfa
docs(checks): improve docs related with checks ( #7768 )
2025-05-19 10:47:03 +02:00
Hugo Pereira Brito
f88d45535c
feat(repository): add new check repository_branch_delete_on_merge_enabled ( #6209 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:47:03 +02:00
Hugo Pereira Brito
6d6864d9c5
feat(repository): add new check repository_default_branch_requires_conversation_resolution ( #6208 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:47:03 +02:00
Víctor Fernández Poyatos
03ec12a2ca
fix(findings): Fix latest metadata backfill condition and optimization ( #7765 )
2025-05-19 10:47:03 +02:00
Víctor Fernández Poyatos
0fc4e23b81
fix(findings): Fix latest metadata backfill condition ( #7762 )
2025-05-19 10:47:03 +02:00
sumit-tft
45780de281
fix(ui): Removed the alias if not available in findings detail page ( #7751 )
2025-05-19 10:47:03 +02:00
sumit-tft
ab80f3be18
fix: Updated the high risk section provider icons to make it consistent ( #7706 )
2025-05-19 10:47:03 +02:00
Hugo Pereira Brito
98da709202
feat(repository): add new check repository_default_branch_protection_applies_to_admins ( #6205 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:47:03 +02:00
Pablo Lara
6cb1acd93d
feat: use getFindingsLatest when no scan or date filters are applied ( #7756 )
2025-05-19 10:47:03 +02:00
Víctor Fernández Poyatos
d4e5f37894
feat(findings): Add /findings/latest and /findings/metadata/latest endpoints ( #7743 )
2025-05-19 10:47:03 +02:00
Hugo Pereira Brito
e0b1036f22
feat(repository): add new check repository_default_branch_status_checks_required ( #6204 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:47:03 +02:00
Hugo Pereira Brito
d2dde4fbbd
fix(check): add missing __init__.py files ( #7748 )
2025-05-19 10:46:58 +02:00
Hugo Pereira Brito
5572c675d8
feat(repository): add new check repository_default_branch_deletion_disabled ( #6200 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-19 10:46:40 +02:00
Hugo Pereira Brito
ace0dab20d
feat(repository): add new check repository_default_branch_disallows_force_push ( #6197 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:46:40 +02:00
Pablo Lara
8ef42bd1d6
fix: force z-index componet select provider ( #7744 )
...
Co-authored-by: StylusFrost <pm.diaz.pena@gmail.com >
2025-05-19 10:46:40 +02:00
Hugo Pereira Brito
75a5496459
feat(repository): add new check repository_default_branch_requires_linear_history ( #6162 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:46:40 +02:00
Hugo Pereira Brito
2b4bb7f805
feat(repository): add new check repository_default_branch_protection_enabled ( #6161 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-19 10:46:40 +02:00
Hugo Pereira Brito
f1c165a89d
feat(organization): add new check organization_members_mfa_required ( #6304 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:46:40 +02:00
Pablo Lara
a0e72eab0b
fix: UID Filter Improvement ( #7741 )
...
Co-authored-by: sumit_chaturvedi <chaturvedi.sumit@tftus.com >
2025-05-19 10:46:40 +02:00
Hugo Pereira Brito
e539b1ab4d
feat: add GitHub provider documentation and CIS v1.0.0 compliance ( #6116 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-19 10:46:40 +02:00
Hugo Pereira Brito
ddc7fe649d
feat(github): add new service Organization ( #6300 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:46:40 +02:00
Hugo Pereira Brito
d80ddc5107
feat(github): add new check repository_code_changes_multi_approval_requirement ( #6160 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:46:40 +02:00
Adrián Jesús Peña Rodríguez
04d3138a22
fix: ensure proper folder creation ( #7729 )
2025-05-19 10:46:40 +02:00
Pepe Fagoaga
caaadbbc26
feat(ui): Add AWS CloudFormation Quick Link to deploy the IAM Role ( #7735 )
2025-05-19 10:46:40 +02:00
César Arroba
6a104141f3
chore: add ref on checkout step ( #7740 )
2025-05-19 10:46:39 +02:00
Hugo Pereira Brito
7399815aa4
feat(github): add GitHub provider ( #5787 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:46:39 +02:00
Pablo Lara
94e5902553
docs: update changelog ( #7731 )
2025-05-19 10:46:39 +02:00
Sergio Garcia
a0b1838bd2
fix(deps): solve h11 package vulnerability ( #7696 )
2025-05-19 10:46:39 +02:00
sumit-tft
1300cf0ed2
fix: Added filter to get connected providers only for banner to show ( #7723 )
2025-05-19 10:46:35 +02:00
dependabot[bot]
c2cd5bcb30
chore(deps): bump h11 from 0.14.0 to 0.16.0 in /api ( #7610 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-19 10:46:10 +02:00
Pablo Lara
eb304023b7
chore: bump tailwind-merge from 2.5.3 to 3.2.0 ( #7722 )
2025-05-19 10:45:47 +02:00
Pablo Lara
f6d78770e5
chore: add M365 to scan page filters ( #7704 )
2025-05-19 10:45:47 +02:00
Pablo Lara
7e3ee14741
chore(deps): upgrade recharts from 2.13.0-alpha.4 to 2.15.2 ( #7717 )
2025-05-19 10:45:47 +02:00
Sergio Garcia
cfa3ba2c94
chore(docs): quality redrive to README.md ( #7616 )
...
Co-authored-by: dcanotrad <168282715+dcanotrad@users.noreply.github.com >
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com >
2025-05-19 10:45:47 +02:00
Alejandro Bailo
fc069d9eb1
feat: scan label validation ( #7693 )
2025-05-19 10:45:47 +02:00
Hugo Pereira Brito
071030c00d
chore(findings): enhance m365 authentication method information ( #7681 )
2025-05-19 10:45:46 +02:00
Víctor Fernández Poyatos
e2c93a0ba8
feat(findings): Improve performance on /findings/metadata, /overviews and filters ( #7690 )
2025-05-19 10:45:46 +02:00
Hugo Pereira Brito
deed6c0b5e
chore(compliance): update CIS 4.0 for M365 ( #7699 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:45:41 +02:00
Pedro Martín
fef5d3d0e4
docs(compliance): update compliance page with latest changes ( #7694 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-19 10:44:59 +02:00
Prowler Bot
52ba89ebdd
chore(regions_update): Changes in regions for AWS services ( #7709 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-05-19 10:44:02 +02:00
Pepe Fagoaga
4cdbc551d5
chore(api): Set tab name for API reference ( #7713 )
2025-05-19 10:44:02 +02:00
Andoni Alonso
7f582c8098
fix(typo): rename generate_compliance_json_from_csv_threatscore ( #7698 )
2025-05-19 10:44:02 +02:00
Pedro Martín
f4c797e9d4
feat(m365): add Prowler Threatscore ( #7692 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-19 10:44:02 +02:00
Sergio Garcia
b3b88ebd68
feat(kubernetes): allow setting cluster name in in-cluster mode ( #7695 )
2025-05-19 10:44:02 +02:00
César Arroba
a01ff0f7cc
chore: add pass PR url ( #7711 )
2025-05-19 10:44:02 +02:00
Alejandro Bailo
804c2cf058
feat: Horizontal bar chart ( #7680 )
2025-05-19 10:44:02 +02:00
Adrián Jesús Peña Rodríguez
9354cfac9e
docs: update the download export documentation ( #7682 )
2025-05-19 10:44:02 +02:00
Prowler Bot
13b3cf8fee
chore(release): Bump version to v5.7.0 ( #7697 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-05-19 10:43:54 +02:00
Alejandro Bailo
98b46a94d3
feat: accordion component ( #7700 )
2025-05-19 10:40:56 +02:00
Prowler Bot
575bb8cd2c
fix: move ProviderType to shared types and update usages ( #7714 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-05-19 14:11:52 +05:45
Prowler Bot
fcc25451d8
chore(ec2): improve severity logic in SG all ports open check ( #7769 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-16 16:06:51 +02:00
Prowler Bot
6c04592e7e
fix(check): Add support for condition with restriction on SNS endpoint ( #7757 )
...
Co-authored-by: Ogonna Iwunze <1915636+wunzeco@users.noreply.github.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-15 16:53:12 +02:00
Prowler Bot
73f9811f42
fix(check): add missing __init__.py files ( #7754 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
2025-05-15 15:01:42 +02:00
Prowler Bot
c89673a01e
fix(deps): solve h11 package vulnerability ( #7730 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-14 10:21:01 +02:00
Prowler Bot
2c7b10d71a
fix: Added filter to get connected providers only for banner to show ( #7726 )
...
Co-authored-by: sumit-tft <70506234+sumit-tft@users.noreply.github.com >
2025-05-13 13:02:03 +02:00
Prowler Bot
9ea500009b
fix(bump-version): bump for fix also in minors ( #7715 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-13 13:35:25 +05:45
Prowler Bot
5f92e33a54
fix(defender): enhance policies checks logic ( #7719 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-12 19:12:11 +02:00
Prowler Bot
d6b5d8a919
chore(compliance): update CIS 4.0 for M365 ( #7716 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-12 13:10:07 +02:00
Prowler Bot
b3d5f7b848
fix(m365): invalid user credentials exception ( #7707 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-12 12:46:02 +02:00
Pepe Fagoaga
a96aa9a3f6
chore(release): Bump version to v5.6.1 ( #7701 )
2025-05-12 14:41:03 +05:45
Pepe Fagoaga
ff3cd0f51b
fix(sdk): Set v5.6.0 in config
2025-05-08 14:18:51 +02:00
Pepe Fagoaga
c208948521
chore(deps): v5.6.0 ( #7689 )
2025-05-08 18:00:44 +05:45
Pepe Fagoaga
f1d5f73d40
chore(changelog): prepare for v5.6.0 ( #7688 )
2025-05-08 13:11:22 +02:00
Pedro Martín
1cc09b81f9
fix(prowler_threatscore): fine-tune LevelOfRisk ( #7667 )
2025-05-08 11:39:14 +02:00
Pedro Martín
56ef1a4f87
fix(dashboard): drop duplicates for rows ( #7686 )
2025-05-08 11:36:25 +02:00
Sergio Garcia
0f75c2a24f
fix(mutelist): properly handle wildcards and regex ( #7685 )
2025-05-08 11:36:25 +02:00
Pedro Martín
b7c317bf23
fix(dashboard): remove muted findings on compliance page ( #7683 )
2025-05-08 11:36:25 +02:00
Adrián Jesús Peña Rodríguez
54aa1a4507
feat: add compliance to API report files and its endpoint ( #7653 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-05-08 11:36:13 +02:00
Hugo Pereira Brito
0d4bd8c0a0
fix(metadata): typo in defender_chat_report_policy_configured ( #7678 )
2025-05-08 11:33:56 +02:00
Alejandro Bailo
1c040b8e41
feat: add DeltaIndicator in new findings ( #7676 )
2025-05-08 11:33:56 +02:00
Daniel Barranquero
c3b36720dc
feat(docs): add snapshots to M365 docs ( #7673 )
2025-05-08 11:33:56 +02:00
Hugo Pereira Brito
af6b0833a1
fix(powershell): remove platform-specific execution ( #7675 )
2025-05-08 11:33:56 +02:00
Alejandro Bailo
8817d08a92
refactor(finding-detail): remove "Next Scan" field ( #7674 )
2025-05-08 11:33:56 +02:00
Pablo Lara
78d9508862
docs: update changelog ( #7672 )
2025-05-08 11:33:56 +02:00
Alejandro Bailo
dc543b2c89
feat: diff between providers actions depending on their secrets ( #7669 )
2025-05-08 11:33:56 +02:00
Sergio Garcia
0025c99fb9
chore(actions): run tests in dependabot updates ( #7671 )
2025-05-08 11:33:56 +02:00
Pedro Martín
d3f12075e9
feat(aws): add static credentials for S3 and SH ( #7322 )
2025-05-08 11:33:56 +02:00
Pablo Lara
513bf6bca7
chore: tweaks for m365 provider ( #7668 )
2025-05-08 11:33:56 +02:00
Alejandro Bailo
7459fe9556
feat: add delta attribute in findings detail view with and finding id to the url ( #7654 )
2025-05-08 11:33:56 +02:00
Pablo Lara
2b06f0115e
feat(compliance): add a button to download the report in compliance card ( #7665 )
2025-05-08 11:33:56 +02:00
Andoni Alonso
2e134815d3
feat(teams): add new checks teams_security_reporting_enabled and defender_chat_report_policy_configured ( #7614 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
2025-05-08 11:33:56 +02:00
Daniel Barranquero
118a1c1138
feat(defender): add new check defender_malware_policy_comprehensive_attachments_filter_applied ( #7661 )
2025-05-08 11:33:55 +02:00
Daniel Barranquero
1b35a72915
feat(exchange): make exchange_user_mailbox_auditing_enabled check configurable ( #7662 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:33:55 +02:00
Hugo Pereira Brito
2d7b110b1b
feat(m365): ensure all forms of mail forwarding are blocked or disabled ( #7658 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:33:55 +02:00
Daniel Barranquero
7c00c949e6
docs(m365): add documentation for m365 ( #7622 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:33:55 +02:00
Pedro Martín
8fcbcda15c
chore(changelog): update with latest PR ( #7628 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:33:55 +02:00
Pedro Martín
fb33506f4a
feat(dashboard): support m365 provider ( #7633 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:33:55 +02:00
dependabot[bot]
e43b572d5e
chore(deps): bump docker/build-push-action from 6.15.0 to 6.16.0 ( #7650 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-08 11:33:55 +02:00
Prowler Bot
ff22e13e24
chore(regions_update): Changes in regions for AWS services ( #7657 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-05-08 11:33:55 +02:00
dependabot[bot]
c4946a8938
chore(deps): bump github/codeql-action from 3.28.15 to 3.28.16 ( #7649 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-08 11:33:55 +02:00
dependabot[bot]
0e51ee9c7c
chore(deps): bump trufflesecurity/trufflehog from 3.88.23 to 3.88.26 ( #7648 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-08 11:33:55 +02:00
dependabot[bot]
22a5776ec0
chore(deps): bump actions/setup-python from 5.5.0 to 5.6.0 ( #7647 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-08 11:33:55 +02:00
sumit-tft
108983e959
feat(ui): Page size for datatables ( #7634 )
2025-05-08 11:33:55 +02:00
Alejandro Bailo
635b3f1978
fix: error about page number persistence when filters change ( #7655 )
2025-05-08 11:33:55 +02:00
Andoni Alonso
dc3d5149e9
chore(sentry): attach stacktrace to logging events ( #7598 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
2025-05-08 11:33:55 +02:00
Daniel Barranquero
cffa560c9d
feat(exchange): add new check exchange_organization_modern_authentication_enabled ( #7636 )
...
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-08 11:33:55 +02:00
Daniel Barranquero
80c8cb9b6c
feat(exchange): add new check exchange_roles_assignment_policy_addins_disabled ( #7644 )
...
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-08 11:33:55 +02:00
Daniel Barranquero
dbffcedc49
feat(exchange): add new check exchange_mailbox_properties_auditing_e3_enabled ( #7642 )
...
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-08 11:33:55 +02:00
Daniel Barranquero
5d4191a7fc
feat(exchange): add new check exchange_transport_config_smtp_auth_disabled ( #7640 )
...
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-08 11:33:55 +02:00
Daniel Barranquero
ab6d05637d
feat(exchange): add new check exchange_organization_mailtips_enabled ( #7637 )
...
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-08 11:33:55 +02:00
Adrián Jesús Peña Rodríguez
75b3c02811
feat: add m365 to API ( #7563 )
...
Co-authored-by: Andoni A <14891798+andoniaf@users.noreply.github.com >
2025-05-08 11:33:43 +02:00
Hugo Pereira Brito
e25ff209b3
feat(m365): automate PowerShell modules installation ( #7618 )
...
Co-authored-by: Andoni A <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
2025-05-08 11:30:40 +02:00
Pablo Lara
81cf5303a1
fix: set correct default value for session duration ( #7639 )
2025-05-08 11:30:40 +02:00
Víctor Fernández Poyatos
087ac5b53a
test(performance): Add base framework for API performance tests ( #7632 )
2025-05-08 11:30:40 +02:00
Daniel Barranquero
fb429c9e23
feat(exchange): add new check exchange_mailbox_policy_additional_storage_restricted ( #7638 )
...
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-08 11:30:40 +02:00
Pedro Martín
284cd66ed6
feat(sharepoint): add new check related with OneDrive Sync ( #7589 )
...
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-08 11:30:40 +02:00
Pedro Martín
3ae2c4a225
fix(typos): remove unneeded files ( #7627 )
2025-05-08 11:30:40 +02:00
Erlend Ekern
2d270ace7f
chore(dockerfile): add image source as docker label ( #7617 )
2025-05-08 11:30:40 +02:00
Pedro Martín
aaeb71a563
feat(compliance): add new Prowler Threat Score Compliance Framework ( #7603 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:30:39 +02:00
dependabot[bot]
737abe83c8
chore(deps): bump @babel/runtime from 7.24.7 to 7.27.0 in /ui ( #7502 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-08 11:30:39 +02:00
Andoni Alonso
a78c5499c9
feat(teams): add new check teams_meeting_presenters_restricted ( #7613 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:30:39 +02:00
Andoni Alonso
e50d779e34
feat(teams): add new check teams_meeting_recording_disabled ( #7607 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:30:39 +02:00
Andoni Alonso
be2965d274
feat(teams): add new check teams_meeting_external_chat_disabled ( #7605 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:30:39 +02:00
Andoni Alonso
0bdaeff745
feat(teams): add new check teams_meeting_external_control_disabled ( #7604 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:30:39 +02:00
Hugo Pereira Brito
ad25a8fe82
fix(powershell): handle m365 provider execution and logging ( #7602 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:30:39 +02:00
Hugo Pereira Brito
aebc89c17c
feat(teams): add new check teams_meeting_chat_anonymous_users_disabled ( #7579 )
...
Co-authored-by: Andoni A <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:30:39 +02:00
Pablo Lara
8fac7ad44d
feat: add new M365 to the provider overview table ( #7615 )
2025-05-08 11:30:39 +02:00
dependabot[bot]
b0f5d6718f
chore(deps): bump h11 from 0.14.0 to 0.16.0 ( #7609 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-08 11:30:35 +02:00
Hugo Pereira Brito
83dfa8ae45
feat(teams): add new check teams_meeting_dial_in_lobby_bypass_disabled ( #7571 )
...
Co-authored-by: Andoni A <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Hugo Pereira Brito
d929e293b5
feat(teams): add new check teams_meeting_external_lobby_bypass_disabled ( #7568 )
...
Co-authored-by: Andoni A <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Pepe Fagoaga
87c4361559
chore(actions): Bump Prowler version on release ( #7560 )
2025-05-08 11:28:19 +02:00
Hugo Pereira Brito
de36bddccf
chore(m365): add test_connection function ( #7541 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Daniel Barranquero
97dac23d39
feat(exchange): add new check exchange_external_email_tagging_enabled ( #7580 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Daniel Barranquero
64082b5038
feat(exchange): add new check exchange_transport_rules_whitelist_disabled ( #7569 )
...
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Daniel Barranquero
2f6e83ad0c
feat(defender): Add new check defender_antispam_policy_inbound_no_allowed_domains ( #7500 )
...
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Hugo Pereira Brito
24e0a175b5
feat(teams): add new check teams_meeting_anonymous_user_start_disabled ( #7567 )
2025-05-08 11:28:19 +02:00
Hugo Pereira Brito
7c1ae956d5
fix(docs): overview m365 auth ( #7588 )
2025-05-08 11:28:19 +02:00
Pablo Lara
896c466889
chore: remove deprecated launch scan page from old 4-step workflow ( #7592 )
2025-05-08 11:28:19 +02:00
Pablo Lara
e2fd3f14ed
feat(m365): add the new provider m365 - UI part ( #7591 )
2025-05-08 11:28:19 +02:00
Hugo Pereira Brito
8239e2cd09
feat(teams): add new check teams_meeting_anonymous_user_join_disabled ( #7565 )
...
Co-authored-by: Andoni A <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Hugo Pereira Brito
9e21348cdd
feat(teams): add new check teams_external_users_cannot_start_conversations ( #7562 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Hugo Pereira Brito
62672a98f2
feat(teams): add new check teams_unmanaged_communication_disabled ( #7561 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Hugo Pereira Brito
08f52ee668
feat(teams): add new check teams_external_domains_restricted ( #7557 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Hugo Pereira Brito
253847e3cd
fix(teams): teams_email_sending_to_channel_disabled docstrings ( #7559 )
2025-05-08 11:28:19 +02:00
Daniel Barranquero
8449728df1
feat(defender): add new check defender_antispam_connection_filter_policy_safe_list_off ( #7494 )
...
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Daniel Barranquero
ba9d0cd9c2
feat(defender): add new check defender_antispam_connection_filter_policy_empty_ip_allowlist ( #7492 )
...
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Daniel Barranquero
1981173e75
feat(defender): add new check defender_domain_dkim_enabled ( #7485 )
...
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Daniel Barranquero
1f250dccb7
feat(defender): add new check defender_antispam_outbound_policy_configured ( #7480 )
...
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:19 +02:00
Prowler Bot
4a8f6070d3
chore(regions_update): Changes in regions for AWS services ( #7550 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-05-08 11:28:19 +02:00
César Arroba
87f89e68eb
chore: pass labels on PR merge trigger ( #7558 )
2025-05-08 11:28:19 +02:00
César Arroba
87cb33ba57
chore: revert pass labels ( #7556 )
2025-05-08 11:28:19 +02:00
César Arroba
83cb2ed297
chore: pass labels as json is required ( #7555 )
2025-05-08 11:28:18 +02:00
César Arroba
57ff41db3e
chore: fix merged PR action, incorrect order on payload ( #7554 )
2025-05-08 11:28:18 +02:00
César Arroba
3ad376fe07
chore: pass labels ( #7553 )
2025-05-08 11:28:18 +02:00
César Arroba
9f76c47c85
chore: fix json body ( #7552 )
2025-05-08 11:28:18 +02:00
César Arroba
c6c46b0f23
chore: fix trigger ( #7551 )
2025-05-08 11:28:18 +02:00
César Arroba
acb98372c7
chore(gha): trigger cloud pull-request when a PR is merged ( #7212 )
2025-05-08 11:28:18 +02:00
Daniel Barranquero
1998054680
feat(defender): add new check defender_antiphishing_policy_configured ( #7453 )
2025-05-08 11:28:18 +02:00
Daniel Barranquero
bb94ede69f
feat(defender): add new check defender_malware_policy_notifications_internal_users_malware_enabled ( #7435 )
...
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:28:18 +02:00
Daniel Barranquero
676133c14d
feat(defender): add service and new check defender_malware_policy_common_attachments_filter_enabled ( #7425 )
...
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:28:18 +02:00
Daniel Barranquero
00e33d39bb
feat(exchange): add new check exchange_mailbox_audit_bypass_disabled ( #7418 )
...
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:18 +02:00
Daniel Barranquero
311c9a41ff
feat(exchange): add service and new check exchange_organization_mailbox_auditing_enabled ( #7408 )
...
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:18 +02:00
Hugo Pereira Brito
86b6732013
feat(teams): add new check teams_email_sending_to_channel_disabled ( #7533 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-08 11:28:18 +02:00
Sergio Garcia
f851a90cb0
feat(gcp): support CLOUDSDK_AUTH_ACCESS_TOKEN ( #7495 )
2025-05-08 11:28:18 +02:00
Sergio Garcia
c8983440f1
chore(regions): change interval to weekly ( #7539 )
2025-05-08 11:28:18 +02:00
Prowler Bot
ca21d8ceae
chore(regions_update): Changes in regions for AWS services ( #7538 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-05-08 11:28:18 +02:00
Sergio Garcia
c07a531c3b
chore(dependabot): change settings ( #7536 )
2025-05-08 11:28:18 +02:00
Hugo Pereira Brito
b0e3511351
feat: adapt Microsoft365 provider to use PowerShell ( #7331 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-05-08 11:28:18 +02:00
Bogdan A
1c3d5b5f69
docs(gcp): update required permissions for GCP ( #7488 )
2025-05-08 11:28:18 +02:00
dependabot[bot]
e38a2f47b3
chore(deps): bump python from 3.12.9-alpine3.20 to 3.12.10-alpine3.20 ( #7520 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-08 11:28:18 +02:00
dependabot[bot]
b4dab02f5a
chore(deps): bump codecov/codecov-action from 5.4.0 to 5.4.2 ( #7522 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-08 11:28:18 +02:00
dependabot[bot]
a48fafc277
chore(deps): bump actions/setup-node from 4.3.0 to 4.4.0 ( #7521 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-05-08 11:28:18 +02:00
Prowler Bot
109c23ba69
chore(regions_update): Changes in regions for AWS services ( #7527 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-05-08 11:28:18 +02:00
Pepe Fagoaga
2fe98ae6ce
chore(action): Remove cache in PyPI release ( #7532 )
2025-05-08 11:28:06 +02:00
Prowler Bot
d56744844a
fix(inspector2): handle error when getting active findings ( #7679 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
Co-authored-by: Andoni A. <14891798+andoniaf@users.noreply.github.com >
2025-05-07 09:30:05 -04:00
Prowler Bot
cd21c6980b
fix(run-sh): Use poetry's env ( #7626 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-06 10:55:20 -04:00
Prowler Bot
ddc0c84fb2
fix(azure): CIS v2.0 4.4.1 Uses Wrong Check ( #7660 )
...
Co-authored-by: drewadwade <32397380+drewadwade@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-05-05 10:33:39 -04:00
Prowler Bot
26040f04ad
fix(s3): add ContentType in upload_file ( #7643 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-05-05 10:23:33 -04:00
Prowler Bot
bf7b2d7c8f
fix(compliance): improve compliance and dashboard ( #7611 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-04-24 13:37:46 -04:00
Prowler Bot
5df1e163ee
fix(html): remove first empty line ( #7608 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-04-24 11:27:31 -04:00
Prowler Bot
a1326022e5
fix(nhn): remove unneeded parameter ( #7601 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-04-24 09:23:25 -04:00
Prowler Bot
4f29743604
fix(scan): handle cloud provider errors and ignore expected sentry noise ( #7593 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-23 10:51:55 -04:00
Prowler Bot
ff9c992bf8
fix(aws): use correct ports in ec2_instance_port_cifs_exposed_to_internet recommendation ( #7581 )
...
Co-authored-by: Matt Keeler <19890779+mattkeeler@users.noreply.github.com >
2025-04-22 13:17:47 -04:00
Prowler Bot
8eb9d17006
fix(aws): update bucket naming validation to accept dots ( #7576 )
...
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-22 11:32:01 -04:00
Prowler Bot
7a6ed613d5
fix(azure): handle new FlowLog properties ( #7572 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-22 10:42:51 -04:00
Prowler Bot
98e3c4a105
fix(k8s): Remove command as it is not needed ( #7573 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-22 10:36:23 -04:00
Prowler Bot
010457ef09
fix(actions): Include files within providers for SDK tests ( #7578 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-04-22 10:32:38 -04:00
Prowler Bot
5d5e4530b3
chore(tests): Split by provider in the SDK ( #7575 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-04-22 10:02:56 -04:00
Prowler Bot
fe5694fd39
fix(aws): remove SHA-1 from ACM insecure key algorithms ( #7548 )
...
Co-authored-by: Felix Dreissig <f30@f30.me >
2025-04-18 16:38:06 -05:00
Prowler Bot
7c614ef160
fix(iam): change some logger.info values ( #7537 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-15 15:49:12 -04:00
Prowler Bot
36df42cf64
fix(pypi): package name location in pyproject.toml while replicating for prowler-cloud ( #7534 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-15 13:21:56 -04:00
Prowler Bot
09be60948d
revert: fix(findings): increase uid max length to 600 ( #7529 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-04-15 16:02:43 +05:45
Prowler Bot
a8b102794c
chore(changelog): prepare for 5.5.1 ( #7524 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-04-15 11:59:04 +05:45
Prowler Bot
01ed65fcf8
fix(pyproject): Restore packages location ( #7511 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-04-14 17:47:53 -04:00
Pepe Fagoaga
d7b024b460
chore(release): bump for 5.5.1 ( #7504 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-14 16:51:34 -04:00
Prowler Bot
45f1b4aeda
fix(gcp): handle projects without ID ( #7506 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-14 14:08:07 -04:00
Prowler Bot
1e79112ea0
fix(defender): add default name to contacts ( #7505 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-04-14 11:58:18 -04:00
Prowler Bot
7a27a8ddf5
fix(findings): increase uid max length to 600 ( #7501 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-04-14 19:03:08 +05:45
Pablo Lara
d8e575e6dc
fix: update redirect URL for SSO ( #7493 )
2025-04-11 14:42:30 +02:00
Pablo Lara
f7ed5bd365
fix: resolve social login issue in AuthForm on sign-up page ( #7490 )
2025-04-11 10:02:14 +02:00
dependabot[bot]
1c5348d846
chore(deps): bump tj-actions/changed-files from 46.0.4 to 46.0.5 ( #7486 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-11 10:02:08 +02:00
Pepe Fagoaga
2bde25a471
fix(api): poetry.lock
2025-04-10 12:32:59 +02:00
Pepe Fagoaga
c1b70ed0fc
fix(api): build Prowler from v5 branch
2025-04-09 17:20:47 +02:00
Pepe Fagoaga
575ef41d4f
fix(api): 1.6.0 in pyproject
2025-04-09 17:15:30 +02:00
Pepe Fagoaga
8f19bfda0d
chore(changelog): Prepare for v5.5.0 ( #7484 )
2025-04-09 17:07:13 +02:00
Sergio Garcia
fefdce129b
fix: handle errors in AWS and Azure ( #7482 )
2025-04-09 16:35:20 +02:00
Pepe Fagoaga
f85abf90fb
fix: conflict in poetry.lock
2025-04-09 16:17:29 +02:00
Pedro Martín
855cc17a23
fix(aws): add default session_duration ( #7479 )
2025-04-09 16:14:23 +02:00
eeche
d489c80857
feat(NHN): add NHN cloud provider with 6 checks ( #6870 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-04-09 16:14:22 +02:00
Prowler Bot
b81e12f697
chore(regions_update): Changes in regions for AWS services ( #7478 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:14:22 +02:00
Pablo Lara
c02b9073d1
fix: fix TS type for session duration ( #7481 )
2025-04-09 16:14:22 +02:00
Pedro Martín
2ce4d72111
feat(gcp): add SOC2 compliance framework ( #7476 )
2025-04-09 16:14:22 +02:00
Drew Kerrigan
eec0b45b32
fix(ui): Remove UTC from timestamps in app ( #7474 )
2025-04-09 16:14:22 +02:00
Pablo Lara
f4746a1b09
feat: update the NextJS version to the latest ( #7473 )
2025-04-09 16:14:22 +02:00
Prowler Bot
d4c23efee3
chore(regions_update): Changes in regions for AWS services ( #7467 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:14:22 +02:00
dependabot[bot]
6d7711ca1c
chore(deps): bump github/codeql-action from 3.28.13 to 3.28.15 ( #7463 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:14:22 +02:00
Pepe Fagoaga
a7f733522c
fix(action): Use poetry > v2 ( #7472 )
2025-04-09 16:14:22 +02:00
Pablo Lara
e2dfc1f383
feat: add link with the service status using static icon ( #7468 )
2025-04-09 16:14:22 +02:00
dependabot[bot]
163ae5d79d
chore(deps): bump tj-actions/changed-files from 46.0.3 to 46.0.4 ( #7443 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:14:22 +02:00
Prowler Bot
ff8c33ecf8
chore(regions_update): Changes in regions for AWS services ( #7446 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:14:18 +02:00
dependabot[bot]
cf4e8e940d
chore(deps): bump trufflesecurity/trufflehog from 3.88.22 to 3.88.23 ( #7444 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:13:36 +02:00
Prowler Bot
763e88edb5
chore(regions_update): Changes in regions for AWS services ( #7445 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:13:36 +02:00
Pablo Lara
c301fbd8b3
refactor: extract common auth headers into reusable helper ( #7439 )
2025-04-09 16:13:36 +02:00
Sergio Garcia
5121015586
fix(docs): solve broken links ( #7432 )
2025-04-09 16:13:36 +02:00
Adrián Jesús Peña Rodríguez
b750b6492d
feat: add missing SDK fields to API findings and resources ( #7318 )
2025-04-09 16:13:36 +02:00
Prowler Bot
da656b5086
chore(regions_update): Changes in regions for AWS services ( #7434 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:13:36 +02:00
dependabot[bot]
c82437c32c
chore(deps): bump trufflesecurity/trufflehog from 3.88.20 to 3.88.22 ( #7433 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:13:36 +02:00
Pedro Martín
22c4216ed6
docs: add onboarding information step by step for each provider ( #7362 )
2025-04-09 16:13:36 +02:00
Pablo Lara
07d0f72239
fix: correct fetch variable name from invitations to roles ( #7437 )
2025-04-09 16:13:36 +02:00
Prowler Bot
6d14b5619c
chore(regions_update): Changes in regions for AWS services ( #7424 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:12:19 +02:00
Prowler Bot
f12c7000bb
chore(regions_update): Changes in regions for AWS services ( #7417 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:12:19 +02:00
dependabot[bot]
ec06fd0bf4
chore(deps): bump azure-identity from 1.19.0 to 1.21.0 ( #7192 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com >
2025-04-09 16:12:19 +02:00
Daniel Barranquero
92911d2c0b
feat(entra): add new check entra_admin_users_cloud_only ( #7286 )
2025-04-09 16:12:19 +02:00
dependabot[bot]
985bfc1618
chore(deps): bump azure-mgmt-applicationinsights from 4.0.0 to 4.1.0 ( #7161 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com >
2025-04-09 16:12:03 +02:00
dependabot[bot]
d34c1556a1
chore(deps): bump azure-mgmt-containerregistry from 10.3.0 to 12.0.0 ( #7025 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com >
2025-04-09 16:11:44 +02:00
Pedro Martín
c0d4f43310
docs(python): add annotations about Python version ( #7402 )
2025-04-09 16:10:47 +02:00
Bogdan A
0b2dac83bd
feat(gcp): add check for dormant (unused) SA keys ( #7348 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2025-04-09 16:10:47 +02:00
Hugo Pereira Brito
b3d7bb4e8d
feat(entra): add new check entra_legacy_authentication_blocked ( #7240 )
2025-04-09 16:10:47 +02:00
Hugo Pereira Brito
71f8bcefa8
feat(entra): add new check entra_users_mfa_enabled ( #7228 )
2025-04-09 16:10:47 +02:00
Hugo Pereira Brito
a11b338994
feat(entra): add new check entra_admin_users_phishing_resistant_mfa_enabled ( #7211 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-09 16:10:47 +02:00
Hugo Pereira Brito
c7c8fc90b2
fix(entra): check name and logic of entra_admin_users_have_mfa_enabled ( #7230 )
2025-04-09 16:10:47 +02:00
Daniel Barranquero
2bd32f6e8f
feat(entra): add new check entra_policy_guest_invite_only_for_admin_roles ( #7241 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-09 16:10:47 +02:00
dependabot[bot]
32c8cc723e
chore(deps): bump azure-mgmt-resource from 23.2.0 to 23.3.0 ( #7054 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com >
2025-04-09 16:10:47 +02:00
Daniel Barranquero
c298541d8d
feat(entra): add new check entra_policy_guest_users_access_restrictions ( #7234 )
2025-04-09 16:10:47 +02:00
Daniel Barranquero
dcf53ea357
feat(entra): add new check entra_policy_restricts_user_consent_for_apps ( #7225 )
2025-04-09 16:10:47 +02:00
Víctor Fernández Poyatos
3c9ae06086
feat(findings): Handle muted findings in API and UI ( #7378 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-04-09 16:10:47 +02:00
Hugo Pereira Brito
735a8fbb95
feat(entra): add new check entra_managed_device_required_for_mfa_registration ( #7203 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-04-09 16:10:47 +02:00
Prowler Bot
7442eb398c
chore(regions_update): Changes in regions for AWS services ( #7395 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:10:47 +02:00
dependabot[bot]
509f185890
chore(deps): bump trufflesecurity/trufflehog from 3.88.18 to 3.88.20 ( #7394 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:10:47 +02:00
Prowler Bot
7712968eeb
chore(regions_update): Changes in regions for AWS services ( #7391 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:10:47 +02:00
dependabot[bot]
fc3ee5534d
chore(deps): bump actions/setup-python from 5.4.0 to 5.5.0 ( #7390 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:10:47 +02:00
Prowler Bot
376ec4c73b
chore(regions_update): Changes in regions for AWS services ( #7382 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:10:47 +02:00
Pablo Lara
3db0a0ed6f
chore: tweak for button see findings ( #7369 )
2025-04-09 16:10:46 +02:00
Pablo Lara
c3e5980eb0
chore(scans): properly enable link to findings when scan is completed ( #7368 )
2025-04-09 16:10:46 +02:00
dependabot[bot]
c830829b55
chore(deps): bump github/codeql-action from 3.28.12 to 3.28.13 ( #7367 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:10:46 +02:00
dependabot[bot]
3b21b7ecf0
chore(deps): bump tj-actions/changed-files from 46.0.1 to 46.0.3 ( #7363 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:10:46 +02:00
Víctor Fernández Poyatos
a3810f3fda
build(api): Force django-allauth==65.4.1 ( #7358 )
2025-04-09 16:10:46 +02:00
Pablo Lara
18fc405d15
docs: update readme ( #7357 )
2025-04-09 16:10:46 +02:00
Pablo Lara
aeb3bdc779
chore(findings): apply default filter to show failed findings ( #7356 )
2025-04-09 16:10:46 +02:00
Pablo Lara
b32f0997f5
docs(changelog): document addition of download column in scans table … ( #7354 )
2025-04-09 16:10:46 +02:00
Pablo Lara
a72d8d7c83
feat(scans): add download button column for completed scans in table ( #7353 )
2025-04-09 16:10:46 +02:00
Víctor Fernández Poyatos
a4f5566589
feat(compliance): Add endpoint to retrieve compliance overviews metadata ( #7333 )
2025-04-09 16:10:46 +02:00
Pablo Lara
bd839e1398
docs: update changelog with Next.js security patch ( #7339 ) ( #7341 )
2025-04-09 16:10:46 +02:00
Prowler Bot
7e9b1630f0
chore(regions_update): Changes in regions for AWS services ( #7219 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 16:10:29 +02:00
Prowler Bot
e2330acbff
chore(regions_update): Changes in regions for AWS services ( #7246 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 16:10:13 +02:00
Prowler Bot
0f15a20128
chore(regions_update): Changes in regions for AWS services ( #7250 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 16:10:06 +02:00
Prowler Bot
237ec20513
chore(regions_update): Changes in regions for AWS services ( #7334 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:10:01 +02:00
Pepe Fagoaga
497adbb4e3
fix(action): Use Poetry v2 ( #7329 )
2025-04-09 16:10:01 +02:00
Prowler Bot
1bb939c609
chore(regions_update): Changes in regions for AWS services ( #7323 )
...
Co-authored-by: prowler-bot <179230569+prowler-bot@users.noreply.github.com >
2025-04-09 16:10:01 +02:00
Pepe Fagoaga
8ee73af0c0
chore(aws-regions): remove backport to v3 ( #7319 )
2025-04-09 16:10:01 +02:00
dependabot[bot]
6ead888399
chore(deps): bump github/codeql-action from 3.28.11 to 3.28.12 ( #7321 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:10:01 +02:00
Pepe Fagoaga
c20f9edb0b
chore(dependabot): disable for v3 ( #7316 )
2025-04-09 16:10:01 +02:00
Pablo Lara
747d62393e
docs: add social login images and update documentation ( #7314 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-04-09 16:10:01 +02:00
Pepe Fagoaga
e757bde7ca
chore(dependabot): Disable for API and UI ( #7300 )
2025-04-09 16:10:01 +02:00
Pedro Martín
29ff19eead
fix(k8s): remove typos from PCI 4.0 ( #7294 )
2025-04-09 16:10:01 +02:00
Pepe Fagoaga
c516773cff
chore(social-login): improve copy when not enabled ( #7295 )
2025-04-09 16:10:01 +02:00
dependabot[bot]
e4a682e23e
chore(deps): bump trufflesecurity/trufflehog from 3.88.17 to 3.88.18 ( #7297 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:10:01 +02:00
Pepe Fagoaga
d427455db5
chore(security): Configure HTTP Security Headers ( #7220 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-04-09 16:10:01 +02:00
Pepe Fagoaga
f0cbcacbe4
chore(security): Add HTTP Security Headers ( #7289 )
2025-04-09 16:09:55 +02:00
Pablo Lara
df11afbcf0
fix: prevent SSR mismatch in OAuth URL generation ( #7288 )
2025-04-09 16:07:31 +02:00
dependabot[bot]
cc6db6b680
chore(deps): bump azure-mgmt-containerservice from 34.0.0 to 34.1.0 ( #6989 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com >
2025-04-09 16:07:31 +02:00
Pablo Lara
0eb51dc147
chore(providers): change wording when adding a new provider ( #7280 )
2025-04-09 16:07:31 +02:00
Pepe Fagoaga
aeb3dc9ac2
fix(aws-regions): Use @prowler-bot as author ( #7285 )
2025-04-09 16:07:31 +02:00
Pablo Lara
36c8240f2b
chore: add env vars for social login ( #7257 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
2025-04-09 16:07:31 +02:00
Prowler Bot
a0852c397d
chore(regions_update): Changes in regions for AWS services ( #7281 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 16:07:31 +02:00
Pablo Lara
32f1d1a713
feat(providers): add component to render a link to the documentation ( #7282 )
2025-04-09 16:07:31 +02:00
dependabot[bot]
76be3bd4ae
chore(deps): bump azure-mgmt-storage from 21.2.1 to 22.1.1 ( #7098 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com >
2025-04-09 16:07:31 +02:00
Adrián Jesús Peña Rodríguez
93b59e15e8
chore: add api reference to download report section ( #7243 )
2025-04-09 16:07:30 +02:00
Pablo Lara
f559b87018
chore: Rename keyServer and extract to helper ( #7256 )
2025-04-09 16:07:30 +02:00
Pedro Martín
84b50f2a3f
fix(.env): remove spaces ( #7255 )
2025-04-09 16:07:30 +02:00
Pedro Martín
69c7dc339f
fix(prowler): change from prowler.py to prowler-cli.py ( #7253 )
2025-04-09 16:07:30 +02:00
Pablo Lara
ea396a90e3
chore: update git ignore file ( #7254 )
2025-04-09 16:07:30 +02:00
Pedro Martín
d460509262
feat(jira): add basic auth method ( #7233 )
2025-04-09 16:07:30 +02:00
Pepe Fagoaga
4d2bb93a8c
fix(backport): Use container tagged version ( #7252 )
2025-04-09 16:07:30 +02:00
Pepe Fagoaga
d936c3f934
chore(security): Pin actions to the Full-Length Commit SHA ( #7249 )
2025-04-09 16:07:30 +02:00
Pablo Lara
c1e36f0df7
chore: add env var for social login ( #7251 )
2025-04-09 16:07:30 +02:00
Prowler Bot
d1f04fefb0
chore(regions_update): Changes in regions for AWS services ( #7237 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 16:07:27 +02:00
Prowler Bot
8703c55b5a
chore(regions_update): Changes in regions for AWS services ( #7245 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 16:06:57 +02:00
Pablo Lara
0af5c9c9c2
chore: improve UX when social login is not enabled ( #7242 )
2025-04-09 16:06:57 +02:00
Pablo Lara
57717467c7
chore(social-login): disable social login buttons when env vars are not set ( #7238 )
2025-04-09 16:06:57 +02:00
Pablo Lara
b59930803c
chore(social-login): rename env.vars for social login ( #7232 )
2025-04-09 16:06:57 +02:00
Pablo Lara
835272b3ab
chore: social auth is algo in sign-up page ( #7231 )
2025-04-09 16:06:57 +02:00
Pablo Lara
6a67d8d93a
chore: remove unused regions ( #7229 )
2025-04-09 16:06:57 +02:00
Pablo Lara
f87fd35c95
chore: change wording for launching a single scan ( #7226 )
2025-04-09 16:06:57 +02:00
Pablo Lara
7a00750e0a
chore: update changelog ( #7223 )
2025-04-09 16:06:57 +02:00
Pablo Lara
412697c418
feat(social-login): social login with Google is working ( #7218 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-04-09 16:06:57 +02:00
Víctor Fernández Poyatos
3cd4e4cbbf
fix(migrations): add through parameter to integration.providers ( #7222 )
2025-04-09 16:06:57 +02:00
Pepe Fagoaga
e18cace3bb
fix(pyproject): Rename prowler.py ( #7217 )
2025-04-09 16:06:57 +02:00
Víctor Fernández Poyatos
a1252e7afc
feat(integrations): Added new endpoints to allow configuring integrations ( #7167 )
2025-04-09 16:06:34 +02:00
Daniel Barranquero
7bc9aa2424
feat(entra): add new check entra_admin_mfa_enabled_for_administrative_roles ( #7181 )
...
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-04-09 16:04:42 +02:00
Pedro Martín
c4f87f45d4
feat(kubernetes): add ISO 27001 2022 compliance framework ( #7204 )
2025-04-09 16:04:42 +02:00
Hugo Pereira Brito
93f3a094fc
feat(entra): add new check entra_identity_protection_sign_in_risk_enabled ( #7171 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-04-09 16:04:42 +02:00
Andoni Alonso
881133d6b9
refactor(check): add docstrings and improve report handling ( #7113 )
2025-04-09 16:04:42 +02:00
Hugo Pereira Brito
ba02a26cc1
feat(docs): add microsoft365 configurable checks ( #7200 )
2025-04-09 16:04:42 +02:00
Hugo Pereira Brito
bb1b81455c
feat(entra): add new check entra_identity_protection_user_risk_enabled ( #7126 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-04-09 16:04:42 +02:00
Pepe Fagoaga
3116fef89a
chore(poetry): Upgrade to v2 ( #7112 )
2025-04-09 16:04:33 +02:00
Hugo Pereira Brito
f6dbf3ef5f
feat(entra): add new check entra_managed_device_required_for_authentication ( #7115 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-04-09 16:01:40 +02:00
Daniel Barranquero
35a9c03467
feat(entra): add new check entra_password_hash_sync_enabled ( #7061 )
2025-04-09 16:01:40 +02:00
dependabot[bot]
5fc95a879c
chore(deps): bump google-api-python-client from 2.162.0 to 2.163.0 ( #7191 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:01:40 +02:00
Prowler Bot
8ffa958c20
chore(regions_update): Changes in regions for AWS services ( #7197 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 16:01:40 +02:00
Pablo Lara
476cc59ca1
chore: update changelog ( #7199 )
2025-04-09 16:01:40 +02:00
Pablo Lara
26390cdcd9
feat(invitations): Disable editing for accepted invites ( #7198 )
2025-04-09 16:01:40 +02:00
Pablo Lara
95b8390ddd
chore(scans): rename type to trigger ( #7196 )
2025-04-09 16:01:40 +02:00
Pablo Lara
e9aebbd269
chore: auto refresh if the state is also available ( #7195 )
2025-04-09 16:01:40 +02:00
Pablo Lara
11ffbd86eb
styles: tweaks styles ( #7194 )
2025-04-09 16:01:40 +02:00
Pablo Lara
9f32ff0c10
chore(launch-scan): update wording ( #7193 )
2025-04-09 16:01:40 +02:00
Pablo Lara
33046eb95d
chore: update the changelog ( #7190 )
2025-04-09 16:01:40 +02:00
Hugo Pereira Brito
a77d6ebaa2
feat(microsoft365): add new check entra_admin_users_sign_in_frequency_enabled ( #7020 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-04-09 16:01:40 +02:00
Pablo Lara
f1fa79b7ae
feat(scans): allow running a scan once ( #7188 )
2025-04-09 16:01:40 +02:00
Adrián Jesús Peña Rodríguez
72874201c1
docs: add users, invitations and RBAC ( #7109 )
2025-04-09 16:01:40 +02:00
Daniel Barranquero
d979076814
feat(entra): add new check entra_dynamic_group_for_guests_created ( #7168 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-09 16:01:40 +02:00
Daniel Barranquero
2bdc6fef26
chore(providers): enhance Remediation.Code.CLI field from check's metadata ( #7094 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com >
2025-04-09 16:01:40 +02:00
Pedro Martín
5bfcdbb0b9
feat(gcp): add ISO 27001 2022 compliance framework ( #7185 )
2025-04-09 16:01:39 +02:00
Pedro Martín
8812566c83
fix(azure): add remaining checks for reqA.5.25 ( #7182 )
2025-04-09 16:01:39 +02:00
Daniel Barranquero
fab7a107fa
feat(entra): add new check entra_admin_consent_workflow_enabled ( #7110 )
2025-04-09 16:01:39 +02:00
Adrián Jesús Peña Rodríguez
cbd5197ddc
docs: add generate_output documentation ( #7122 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-04-09 16:01:39 +02:00
Hugo Pereira Brito
0b87b63cdd
refactor(microsoft365): resource metadata assertions ( #7169 )
2025-04-09 16:01:39 +02:00
Pedro Martín
18d7ce3607
feat(azure): add ISO 27001 2022 compliance framework ( #7170 )
2025-04-09 16:01:39 +02:00
dependabot[bot]
8f20eb958d
chore(deps): bump tzlocal from 5.3 to 5.3.1 ( #7162 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:01:39 +02:00
Prowler Bot
33ab90e119
chore(regions_update): Changes in regions for AWS services ( #7177 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 16:01:39 +02:00
dependabot[bot]
d4c59bf4fe
chore(deps): bump trufflesecurity/trufflehog from 3.88.15 to 3.88.16 ( #7174 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:01:39 +02:00
Harshit Raj Singh
5e45b30823
feat(aws): AWS Found Sec Best Practices & PCI DSS v3.2.1 upgrade ( #7017 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2025-04-09 16:01:39 +02:00
Pablo Lara
77f15a8749
fix: tweak z-index for custom inputs ( #7166 )
2025-04-09 16:01:39 +02:00
Pablo Lara
953fc0590b
feat(scans): improve scan launch provider selection ( #7164 )
2025-04-09 16:01:39 +02:00
dependabot[bot]
8ed6e497a3
chore(deps): bump django from 5.1.5 to 5.1.7 in /api ( #7145 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 16:01:01 +02:00
dependabot[bot]
10c3a1e3ce
chore(deps-dev): bump mock from 5.1.0 to 5.2.0 ( #7099 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 15:58:53 +02:00
Kay Agahd
32dec0b235
fix(doc): event_time has been changed to time_dt but was not documented ( #7136 )
2025-04-09 15:58:53 +02:00
dependabot[bot]
bf50c5e7b0
chore(deps): bump jinja2 from 3.1.5 to 3.1.6 ( #7151 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 15:58:53 +02:00
Prowler Bot
a660cf7024
chore(regions_update): Changes in regions for AWS services ( #7108 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 15:58:49 +02:00
Prowler Bot
50851aec64
chore(regions_update): Changes in regions for AWS services ( #7119 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 15:58:35 +02:00
dependabot[bot]
b931a81692
chore(deps-dev): bump mkdocs-git-revision-date-localized-plugin from 1.3.0 to 1.4.1 ( #7129 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 15:57:04 +02:00
Prowler Bot
7ce291d0d3
chore(regions_update): Changes in regions for AWS services ( #7131 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 15:56:58 +02:00
dependabot[bot]
d257e6368e
chore(deps): bump trufflesecurity/trufflehog from 3.88.14 to 3.88.15 ( #7127 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-04-09 15:55:06 +02:00
César Arroba
9f43391521
chore: increase release to 5.5.0 ( #7143 )
2025-04-09 15:54:59 +02:00
Prowler Bot
02099b793d
chore(regions_update): Changes in regions for AWS services ( #7146 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-04-09 15:53:07 +02:00
Pablo Lara
56b760208e
chore: update changelog ( #7149 )
2025-04-09 15:53:07 +02:00
Pablo Lara
042f138f56
feat: add changelog ( #7141 )
2025-04-09 15:53:07 +02:00
Pepe Fagoaga
f347080dbd
chore(release): bump for 5.4.5 ( #7475 )
2025-04-08 13:14:51 -04:00
Prowler Bot
2cc8363697
fix: handle errors in AWS, Azure, and GCP ( #7471 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-08 19:03:42 +05:45
Prowler Bot
154467e7c8
fix(provider): disable periodic task on views before deleting ( #7470 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-04-08 15:50:39 +05:45
Prowler Bot
16c71f3c04
fix(soc2_aws): update compliance and remove some requirements ( #7455 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-04-07 16:53:52 -04:00
Prowler Bot
849707166a
fix(gcp): handle logic for empty project names ( #7450 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-07 15:21:54 -04:00
Prowler Bot
59513d777c
fix(aws): add resource arn for transit gateways ( #7448 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-07 13:38:28 -04:00
Prowler Bot
f52929673d
fix(gcp): ignore redirect balancers and add regional ones ( #7449 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-07 12:43:45 -04:00
Prowler Bot
611681488d
fix(defender): add default resource name in contacts ( #7441 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-04 11:49:58 -04:00
Prowler Bot
9630f23585
fix(aws): solve multiple errors ( #7440 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-04 10:47:08 -04:00
Prowler Bot
23cfd91708
fix(azure): remove resource_name inside the Check_Report ( #7430 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-04-03 12:34:53 -04:00
Prowler Bot
0c44f28bf7
fix(gcp): make logging sink check at project level ( #7428 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-03 11:34:03 -04:00
Pepe Fagoaga
09c529d810
chore(release): bump for 5.4.4 ( #7427 )
2025-04-03 10:19:07 -04:00
Prowler Bot
5be859d86c
chore(deletion): Add environment variable for batch size ( #7426 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-04-03 15:42:22 +05:45
Prowler Bot
5340008c8f
chore(sentry): ignore exception when aws service not available in a region ( #7398 )
...
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com >
2025-04-03 13:01:14 +05:45
Prowler Bot
a5aa4c30d7
fix(scans): Handle duplicated scan tasks ( #7409 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-04-03 13:00:58 +05:45
Prowler Bot
56d0c2fbea
fix(resources): add the correct id and names for resources ( #7414 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-01 22:24:33 +02:00
Prowler Bot
6b7ef199e0
fix(report): log as error when Resource ID or Name do not exist ( #7412 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-04-01 21:23:16 +02:00
Prowler Bot
933c5063ee
fix(redshift): validation error for Cluster.multi_az ( #7400 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2025-03-31 14:51:49 +02:00
Prowler Bot
72a998a692
fix(rds): hundle Certificate rds-ca-2019 not found ( #7392 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2025-03-27 12:04:19 +01:00
Prowler Bot
a4d1e3bb69
fix(stepfunctions): Nonetype object has no attribute level ( #7389 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-27 11:09:17 +01:00
Prowler Bot
2a8b04cced
fix(fms): resource metadata could not be converted to dict ( #7388 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2025-03-27 09:13:16 +01:00
Prowler Bot
cfc02186d4
fix(vm): handle Nonetype is not iterable for extensions ( #7377 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-26 00:31:57 +01:00
Prowler Bot
7e432a3b69
fix(s3): handle None S3 account public access block ( #7376 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-25 17:55:54 +01:00
Prowler Bot
fed8de314f
fix(storagegateway): describe smb/nfs share per region ( #7375 )
...
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-25 16:56:25 +01:00
Prowler Bot
ce23c4b5aa
fix(network): handle Nonetype is not iterable for security groups ( #7372 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-03-25 15:53:55 +01:00
Prowler Bot
33e99ef628
fix(vm): handle NoneType accessing security_profile ( #7373 )
...
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-25 14:43:49 +01:00
Prowler Bot
72761a6ef6
fix(iam): handle none SAML Providers ( #7371 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-25 11:18:10 +01:00
Prowler Bot
2a4fdff827
fix(iam): handle UnboundLocalError cannot access local variable 'report' ( #7370 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2025-03-25 10:20:49 +01:00
Pepe Fagoaga
8e264313bc
chore(release): bump for 5.4.3
2025-03-24 18:08:59 +01:00
Víctor Fernández Poyatos
21654b0bc0
chore: bump API version ( #7355 )
2025-03-24 20:20:52 +05:45
Prowler Bot
7fa57ba3e2
ref(providers): Refactor provider deletion functions ( #7351 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-03-24 19:43:39 +05:45
Prowler Bot
ea9b6bb191
chore(awslambda): update obsolete lambda runtimes ( #7345 )
...
Co-authored-by: Jonny <106528116+jonathanbro@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-24 13:18:05 +01:00
Prowler Bot
95acb7b0c8
chore(next): Remove x-powered-by header ( #7347 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-03-24 16:44:50 +05:45
Prowler Bot
d23edfa337
chore: upgrade Next.js to 14.2.25 to fix auth middleware vulnerability ( #7340 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-03-24 09:52:42 +01:00
Pepe Fagoaga
40678a5863
chore(release): bump for 5.4.2 ( #7328 )
2025-03-20 18:49:13 +01:00
Prowler Bot
23aded92a3
chore(api): Update CHANGELOG ( #7327 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-03-20 15:24:16 +05:45
Prowler Bot
6e56d3862d
fix(scan_id): Read the ID from the Scan object ( #7326 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-03-20 15:22:57 +05:45
Prowler Bot
d95fccd163
fix(gcp): make provider id mandatory in test_connection ( #7315 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-03-19 20:38:37 +05:45
Prowler Bot
7ddf860a55
fix: add a handled response in case local files are missing ( #7227 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
2025-03-19 11:58:25 +01:00
Prowler Bot
3f41c75a45
fix(route53): solve false positive in route53_public_hosted_zones_cloudwatch_logging_enabled ( #7293 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2025-03-19 13:39:56 +05:45
Prowler Bot
04b6dbf639
fix(microsoft365): typo Microsoft365NotTenantIdButClientIdAndClienSecretError ( #7258 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
2025-03-19 13:38:08 +05:45
Prowler Bot
ff4d16deb5
fix(scan): add compliance info inside finding ( #7247 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-03-19 13:37:16 +05:45
Prowler Bot
562921cd5e
fix(test-connection): Handle provider without secret ( #7290 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-03-19 13:36:38 +05:45
Prowler Bot
8f061e4fed
fix(exports): change the way to remove the local export files after s3 upload ( #7224 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
2025-03-17 17:30:57 +05:45
Prowler Bot
3fb86d754a
fix(cloudwatch): handle None metric alarms ( #7207 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-12 16:18:44 +01:00
Prowler Bot
7874707310
chore(sentry): ignore new exceptions in Sentry ( #7189 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-12 11:35:32 +01:00
Prowler Bot
1c934e37c7
chore(sentry): ignore expected errors in GCP API ( #7186 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-11 17:27:07 +01:00
Prowler Bot
8459cff16d
fix(ens): remove and change duplicated ids ( #7180 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-03-11 12:46:31 +01:00
Prowler Bot
57ae096395
fix(azure): correct check title for SQL Server Unrestricted ( #7160 )
...
Co-authored-by: Gary Mclean <gary.mclean@krrv.io >
2025-03-07 19:22:35 +01:00
Prowler Bot
200185de25
fix(metadata): match type with check results ( #7155 )
...
Co-authored-by: Andoni Alonso <14891798+andoniaf@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-07 18:16:32 +01:00
Prowler Bot
f8447b0f79
fix(metadata): typo in ec2_securitygroup_allow_wide_open_public_ipv4 ( #7158 )
...
Co-authored-by: ryan-stavella <71134114+ryan-stavella@users.noreply.github.com >
2025-03-07 16:32:36 +01:00
Prowler Bot
19289bbe20
fix(aws): ecs_task_definitions_no_environment_secrets.metadata.json ( #7153 )
...
Co-authored-by: Kay Agahd <kagahd@users.noreply.github.com >
2025-03-07 15:27:59 +01:00
César Arroba
b5b371fa0c
chore: increase release to 5.4.1 ( #7144 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-07 14:20:28 +01:00
Prowler Bot
939a623cec
fix: tweaks for compliance cards ( #7148 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-03-07 11:40:55 +01:00
Víctor Fernández Poyatos
926f449ae6
fix(overviews): manage overview exceptions and use batch_size with bulk ( #7140 )
2025-03-06 15:39:51 +01:00
César Arroba
646668c6ae
chore(ui-gha): delete double quotes on prowler version ( #7139 )
2025-03-06 15:39:40 +01:00
Prowler Bot
8e6b92792b
fix(groups): display uid if alias is missing ( #7138 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-03-06 14:41:57 +01:00
Prowler Bot
65c081ce38
fix(credentials): adjust helper links to fit width ( #7134 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-03-06 13:01:10 +01:00
Pepe Fagoaga
5600131d6a
revert(findings): change uid from varchar to text ( #7132 )
2025-03-06 11:43:07 +01:00
César Arroba
dbd271980f
chore(ui-gha): add version prefix ( #7125 )
2025-03-05 16:34:42 +01:00
Víctor Fernández Poyatos
ff532a899e
fix(reports): Fix task kwargs and result ( #7124 )
2025-03-05 16:34:36 +01:00
César Arroba
0c9675ec70
chore(ui): add prowler version on build ( #7120 )
2025-03-05 16:34:26 +01:00
Pablo Lara
d45eda2b2b
feat(compliance): new compliance selector ( #7118 )
2025-03-05 16:34:07 +01:00
dependabot[bot]
0abcf80d19
chore(deps-dev): bump pytest from 8.3.4 to 8.3.5 ( #7097 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-05 16:33:35 +01:00
Pablo Lara
c0e10fd395
chore(ui): update label from 'Select a scan job' to 'Select a cloud p… ( #7107 )
2025-03-05 16:32:20 +01:00
Pepe Fagoaga
a80e9b26a8
chore(api): Use Prowler from v5.4 ( #7092 )
2025-03-03 22:30:58 +05:45
Sergio Garcia
2a9cd57fb8
fix(deps): update vulnerable cryptography dependency ( #6993 )
2025-03-03 17:38:23 +01:00
Prowler Bot
a0ad1a5f49
chore(deps): bump cryptography from 43.0.1 to 44.0.1 in /api ( #7003 )
...
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-03-03 17:21:15 +01:00
César Arroba
dff22dd166
Revert "chore(api): update prowler version to 5.4 ( #7091 )"
...
This reverts commit 58138810b9 .
2025-03-03 17:11:20 +01:00
César Arroba
58138810b9
chore(api): update prowler version to 5.4 ( #7091 )
...
Co-authored-by: Prowler Bot <bot@prowler.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-03-03 17:08:45 +01:00
Víctor Fernández Poyatos
1ecc272fe4
chore: update changelog
2025-03-03 16:27:05 +01:00
Pablo Lara
b784167006
fix(roles): show the correct error message ( #7089 )
2025-03-03 15:50:28 +01:00
Pablo Lara
cf0ec8dea0
fix: bug with create role and unlimited visibility checkbox ( #7088 )
2025-03-03 15:50:23 +01:00
Sergio Garcia
96cae5e961
feat(aws): add fixers for threat detection checks ( #7085 )
2025-03-03 15:50:18 +01:00
Pablo Lara
a48e5cb15f
feat(version): add prowler version to the sidebar ( #7086 )
2025-03-03 15:50:14 +01:00
Pablo Lara
5a9ff007e0
chore: Update the latest table findings with the most recent changes ( #7084 )
2025-03-03 15:50:06 +01:00
Prowler Bot
24c45f894c
chore(regions_update): Changes in regions for AWS services ( #7034 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-03-03 15:47:09 +01:00
dependabot[bot]
5d03c85629
chore(deps): bump cryptography from 43.0.1 to 44.0.1 in /api ( #7001 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 15:46:15 +01:00
Pablo Lara
41dc397a7a
feat(sidebar): sidebar with new functionalities ( #7018 )
2025-03-03 15:01:38 +01:00
Prowler Bot
237a9adce9
chore(regions_update): Changes in regions for AWS services ( #7067 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-03-03 15:01:29 +01:00
Sergio Garcia
a06167f1c2
fix(threat detection): run single threat detection check ( #7065 )
2025-03-03 15:01:21 +01:00
Pepe Fagoaga
a7d58c40dd
refactor(stats): Use Finding instead of Check_Report ( #7053 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2025-03-03 15:01:12 +01:00
Pepe Fagoaga
e260c46389
chore(examples): Scan AWS ( #7064 )
2025-03-03 15:01:02 +01:00
Sergio Garcia
115169a596
chore(gcp): enhance GCP APIs logic ( #7046 )
2025-03-03 15:00:49 +01:00
dependabot[bot]
5b19173c1d
chore(deps): bump trufflesecurity/trufflehog from 3.88.13 to 3.88.14 ( #7063 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 15:00:40 +01:00
Daniel Barranquero
d3dd1644e6
feat(m365): add sharepoint service with 4 checks ( #7057 )
...
Co-authored-by: MarioRgzLpz <mariorgzlpz1809@gmail.com >
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-03-03 15:00:29 +01:00
Pedro Martín
8ff0c59964
feat(docs): add info related with sts assume role and regions ( #7062 )
2025-03-03 15:00:19 +01:00
Daniel Barranquero
285939c389
fix(azure): handle account not supporting Blob ( #7060 )
2025-03-03 15:00:04 +01:00
Sergio Garcia
a62ae8af51
fix(ecs): ensure unique finding id in ECS checks ( #7059 )
2025-03-03 14:59:56 +01:00
Prowler Bot
5d78b9e439
chore(regions_update): Changes in regions for AWS services ( #7056 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-03-03 14:59:45 +01:00
Hugo Pereira Brito
1056c270ca
feat(microsoft365): add new check entra_policy_ensure_default_user_cannot_create_tenants ( #6918 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-03-03 14:59:35 +01:00
Pablo Lara
eeef6600b7
feat(exports): download scan exports ( #7006 )
2025-03-03 14:59:14 +01:00
Pepe Fagoaga
e142f17abe
fix(env): UI version must be stable ( #7055 )
2025-03-03 14:58:45 +01:00
Víctor Fernández Poyatos
a65d858dac
fix(migrations): Fix migration dependency order ( #7051 )
2025-03-03 14:58:32 +01:00
Víctor Fernández Poyatos
6235a1ba41
feat(labeler): apply label on migration changes ( #7052 )
2025-03-03 14:58:22 +01:00
Pepe Fagoaga
05007d03ee
fix(findings): change uid from varchar to text ( #7048 )
2025-03-03 14:58:13 +01:00
Víctor Fernández Poyatos
102d099947
feat(findings): Add Django management command to populate database with dummy data ( #7049 )
2025-03-03 14:58:03 +01:00
Adrián Jesús Peña Rodríguez
3194675a5c
feat(export): add API export system ( #6878 )
2025-03-03 14:57:40 +01:00
dependabot[bot]
14e6e4aa68
chore(deps-dev): bump black from 24.10.0 to 25.1.0 ( #6733 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-03-03 14:57:22 +01:00
Pedro Martín
b24c3665b5
feat(aws): add ISO 27001 2022 compliance framework ( #7035 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-03-03 14:56:31 +01:00
Prowler Bot
1f60878867
chore(regions_update): Changes in regions for AWS services ( #7015 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-03-03 14:54:16 +01:00
dependabot[bot]
2dd18662d8
chore(deps): bump google-api-python-client from 2.161.0 to 2.162.0 ( #7037 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:54:02 +01:00
Hugo Pereira Brito
175360dbe6
refactor(microsoft365): CheckReportMicrosoft365 and resource metadata ( #6952 )
2025-03-03 14:53:42 +01:00
Víctor Fernández Poyatos
80e24b971f
feat(findings): Optimize findings endpoint ( #7019 )
2025-03-03 14:53:22 +01:00
Pepe Fagoaga
78877c470a
chore(action): Conventional Commit Check ( #7033 )
2025-03-03 14:53:08 +01:00
dependabot[bot]
9c9b100359
chore(deps): bump trufflesecurity/trufflehog from 3.88.12 to 3.88.13 ( #7026 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:52:51 +01:00
Pedro Martín
10f3232294
feat(outputs): add sample outputs ( #6945 )
2025-03-03 14:52:37 +01:00
Pedro Martín
a2e5f70f36
fix(cis): show report table on the CLI ( #6979 )
2025-03-03 14:52:23 +01:00
Pedro Martín
8d8b31c757
feat(azure): add PCI DSS 4.0 ( #6982 )
2025-03-03 14:52:03 +01:00
Pedro Martín
cba1e718b9
feat(kubernetes): add PCI DSS 4.0 ( #7013 )
2025-03-03 14:51:42 +01:00
Pedro Martín
6c3c37fc26
feat(dashboard): take the latest finding uid by timestamp ( #6987 )
2025-03-03 14:51:29 +01:00
Víctor Fernández Poyatos
b610cacd0c
feat(tasks): add deletion queue for deletion tasks ( #7022 )
2025-03-03 14:51:14 +01:00
Pedro Martín
027a5705cb
feat(gcp): add PCI DSS 4.0 ( #7010 )
2025-03-03 14:51:00 +01:00
Prowler Bot
b7fbfb4360
chore(regions_update): Changes in regions for AWS services ( #7011 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-03-03 14:50:41 +01:00
dependabot[bot]
5acf0a7e3d
chore(deps-dev): bump mkdocs-material from 9.6.4 to 9.6.5 ( #7007 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:50:26 +01:00
Raj Chowdhury
3a25e86e30
fix(typo): solve typo in dashboard.md ( #7009 )
2025-03-03 14:50:06 +01:00
dependabot[bot]
50f1592eb3
chore(deps): bump trufflesecurity/trufflehog from 3.88.11 to 3.88.12 ( #7008 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:49:46 +01:00
César Arroba
0f2927cb88
feat(api): setup sentry for OSS API ( #6874 )
2025-03-03 14:49:32 +01:00
Pablo Lara
b4e1434052
chore(users): renaming the account now triggers a re-render in the sidebar ( #7005 )
2025-03-03 14:49:16 +01:00
dependabot[bot]
43710783f9
chore(deps): bump python from 3.12.8-alpine3.20 to 3.12.9-alpine3.20 ( #6882 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:49:04 +01:00
dependabot[bot]
16f767e7b9
chore(deps): bump tzlocal from 5.2 to 5.3 ( #6932 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:48:41 +01:00
Hugo Pereira Brito
42818217a0
docs(tutorials): update all deprecated poetry shell references ( #7002 )
2025-03-03 14:44:50 +01:00
Prowler Bot
13405594b2
chore(regions_update): Changes in regions for AWS services ( #6998 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-03-03 14:44:33 +01:00
Pedro Martín
b5a3852334
chore(github): add compliance to PR labeler ( #6996 )
2025-03-03 14:44:16 +01:00
Hugo Pereira Brito
181ff1acb3
docs(installation): add warning for poetry shell deprecation in README ( #6983 )
2025-03-03 14:43:35 +01:00
Pablo Lara
91e59a3279
chore(findings): add 'Status Extended' attribute to finding details ( #6997 )
2025-03-03 14:43:20 +01:00
Pedro Martín
b3fad1a765
feat(aws): add PCI DSS 4.0 ( #6949 )
2025-03-03 14:42:41 +01:00
dependabot[bot]
6f90927a79
chore(deps): bump trufflesecurity/trufflehog from 3.88.9 to 3.88.11 ( #6988 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:42:24 +01:00
dependabot[bot]
0bb4a9a3e9
chore(deps): bump kubernetes from 32.0.0 to 32.0.1 ( #6992 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:42:10 +01:00
Pablo Lara
80d9cde60b
feat(scans): update the progress for executing scans ( #6972 )
2025-03-03 14:41:39 +01:00
César Arroba
11196c2f83
chore(gha): trigger API or UI deployment when push to master ( #6946 )
2025-03-03 14:41:21 +01:00
Prowler Bot
55a0d0a1b5
chore(regions_update): Changes in regions for AWS services ( #6978 )
2025-03-03 14:41:06 +01:00
Pedro Martín
4e5e1d7bd4
feat(aws): add compliance CIS 4.0 ( #6937 )
2025-03-03 14:40:17 +01:00
dependabot[bot]
06a0a434ab
chore(deps-dev): bump flake8 from 7.1.1 to 7.1.2 ( #6954 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:39:58 +01:00
Pepe Fagoaga
153833fc55
fix(ocsf): Adapt for 1.4.0 ( #6971 )
2025-03-03 14:38:57 +01:00
Prowler Bot
fc4877975f
chore(regions_update): Changes in regions for AWS services ( #6968 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-03-03 14:38:21 +01:00
dependabot[bot]
0797efd4fd
chore(deps-dev): bump bandit from 1.8.2 to 1.8.3 ( #6955 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:38:07 +01:00
Prowler Bot
fbec99a0b7
chore(regions_update): Changes in regions for AWS services ( #6944 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-03-03 14:37:28 +01:00
dependabot[bot]
b2cb1de95e
chore(deps): bump trufflesecurity/trufflehog from 3.88.8 to 3.88.9 ( #6943 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:37:06 +01:00
dependabot[bot]
190c2316d7
chore(deps): bump google-api-python-client from 2.160.0 to 2.161.0 ( #6933 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:36:16 +01:00
César Arroba
f6c352281a
fix(gha): fix short sha step ( #6939 )
2025-03-03 14:36:00 +01:00
César Arroba
66dfe89936
chore(gha): add tag for api and ui images on push to master ( #6920 )
2025-03-03 14:35:41 +01:00
dependabot[bot]
8b3942ca49
chore(deps): bump trufflesecurity/trufflehog from 3.88.7 to 3.88.8 ( #6931 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:35:06 +01:00
dependabot[bot]
9d35213bd5
chore(deps-dev): bump mkdocs-material from 9.6.3 to 9.6.4 ( #6913 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:34:13 +01:00
Víctor Fernández Poyatos
3e586e615d
feat(social-login): Add social login integration for Google and Github OAuth providers ( #6906 )
2025-03-03 14:33:12 +01:00
Sergio Garcia
a4f950e093
chore(docs): external K8s cluster Prowler App credentials ( #6921 )
2025-03-03 14:32:30 +01:00
Pedro Martín
7c2441f6ff
fix(gcp): remove typos on CIS 3.0 ( #6917 )
2025-03-03 14:31:48 +01:00
dependabot[bot]
0a92af3eb2
chore(deps): bump trufflesecurity/trufflehog from 3.88.6 to 3.88.7 ( #6915 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:31:25 +01:00
César Arroba
666f3a0e20
fix(gha): fix test build containers on pull requests actions ( #6909 )
2025-03-03 14:30:35 +01:00
dependabot[bot]
06ef98b5cc
chore(deps-dev): bump coverage from 7.6.11 to 7.6.12 ( #6897 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:29:39 +01:00
Prowler Bot
79125bdd40
chore(regions_update): Changes in regions for AWS services ( #6900 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-03-03 14:28:42 +01:00
César Arroba
e8e8b085ac
chore(api): test build container image on pull request ( #6850 )
2025-03-03 14:28:24 +01:00
César Arroba
c9b81d003a
chore(ui): test build container image on pull request ( #6849 )
2025-03-03 14:27:33 +01:00
Pepe Fagoaga
23fa3c1e38
chore(version): Update version to 5.4.0 ( #6894 )
2025-03-03 14:26:51 +01:00
dependabot[bot]
03fbd0baca
chore(deps-dev): bump coverage from 7.6.10 to 7.6.11 ( #6887 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 14:24:50 +01:00
dependabot[bot]
d4fe24ef47
chore(deps): bump trufflesecurity/trufflehog from 3.88.5 to 3.88.6 ( #6888 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-03-03 13:05:51 +01:00
Prowler Bot
9c5220ee98
fix(elasticache): improve logic in elasticache_redis_cluster_backup_enabled ( #7045 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-02-26 12:12:44 +01:00
Prowler Bot
6491bce5a6
fix(azure): migrate resource models to avoid using SDK defaults ( #7043 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2025-02-26 10:49:33 +01:00
Prowler Bot
ca375dd79c
chore(iam): enhance iam_role_cross_service_confused_deputy_prevention recommendation ( #7041 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
2025-02-26 08:35:26 +01:00
Prowler Bot
e807573b54
fix(soc2_aws): remove duplicated checks ( #6999 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-02-20 17:26:50 +05:30
Prowler Bot
c0f4c9743f
fix(deps): update vulnerable cryptography dependency ( #6994 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-02-20 16:04:14 +05:30
Prowler Bot
5974d0b5da
fix(report): remove invalid resources in report ( #6984 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-02-20 11:05:58 +05:30
Prowler Bot
6244a8a5f7
fix(roles): handle empty response in deleteRole and ensure revalidation ( #6977 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-02-19 09:06:56 +01:00
Prowler Bot
5b9dae4529
test(cloudfront): add name retrieval test for cloudfront bucket domains ( #6975 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
2025-02-19 09:12:17 +05:30
Prowler Bot
a424374c44
fix(cloudfront): Incorrect bucket name retrievement ( #6967 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
2025-02-19 08:08:31 +05:30
Prowler Bot
b7fc2542e8
fix(gcp): Correct false positive when sslMode=ENCRYPTED_ONLY in CloudSQL ( #6942 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2025-02-14 16:36:26 -05:00
Prowler Bot
83a1598a1e
fix(issue pages): apply sorting by default in issue pages ( #6935 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-02-14 10:35:49 +01:00
Prowler Bot
b22b56a06b
fix(gcp): handle DNS Managed Zone with no DNSSEC ( #6928 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-02-13 14:50:05 -05:00
Prowler Bot
5020e4713c
fix(aws): codebuild service threw KeyError for projects type CODEPIPELINE ( #6930 )
...
Co-authored-by: Kay Agahd <kagahd@users.noreply.github.com >
2025-02-13 13:53:05 -05:00
Prowler Bot
ee534a740e
fix(aws): SNS threw IndexError if SubscriptionArn is PendingConfirmation ( #6923 )
...
Co-authored-by: Kay Agahd <kagahd@users.noreply.github.com >
2025-02-13 10:35:19 -05:00
Prowler Bot
48cb45b7a8
fix(aws): handle AccessDenied when retrieving resource policy ( #6912 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-02-12 19:15:51 -05:00
Prowler Bot
91b74822e9
fix(kms): Amazon KMS API call error handling ( #6904 )
...
Co-authored-by: Ogonna Iwunze <1915636+wunzeco@users.noreply.github.com >
2025-02-12 11:08:47 -05:00
Pepe Fagoaga
287eef5085
chore(version): Update version to 5.3.1 ( #6895 )
2025-02-12 16:39:09 +05:45
Mario Rodriguez Lopez
45d359c84a
feat(microsof365): Add documentation and compliance file ( #6195 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2025-02-10 17:18:43 +01:00
Pablo Lara
6049e5d4e8
chore: Update prowler api version ( #6877 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-02-10 17:39:08 +05:45
Víctor Fernández Poyatos
dfd377f89e
chore(api): Update changelog and specs ( #6876 )
2025-02-10 12:25:04 +01:00
Víctor Fernández Poyatos
37e6c52c14
chore: Add needed steps for API in PR template ( #6875 )
2025-02-10 12:24:51 +01:00
Pepe Fagoaga
d6a7f4d88f
fix(kubernetes): Change UID validation ( #6869 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-02-10 11:24:34 +01:00
Pepe Fagoaga
239cda0a90
chore: Rename dashboard table latest findings ( #6873 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-02-10 11:24:27 +01:00
dependabot[bot]
4a821e425b
chore(deps-dev): bump mkdocs-material from 9.6.2 to 9.6.3 ( #6871 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:24:21 +01:00
Sergio Garcia
e1a2f0c204
docs(eks): add documentation about EKS onboarding ( #6853 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-02-10 11:24:16 +01:00
Prowler Bot
c70860c733
chore(regions_update): Changes in regions for AWS services ( #6858 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-02-10 11:24:09 +01:00
Víctor Fernández Poyatos
05e71e033f
feat(findings): Use ArrayAgg and subqueries on metadata endpoint ( #6863 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-02-10 11:24:03 +01:00
Pablo Lara
5164ec2eb9
feat: implement new functionality with inserted_at__gte in findings a… ( #6864 )
2025-02-10 11:23:58 +01:00
Víctor Fernández Poyatos
be18dac4f9
docs: Add details about user creation in Prowler app ( #6862 )
2025-02-10 11:23:52 +01:00
dependabot[bot]
bb126c242f
chore(deps): bump microsoft-kiota-abstractions from 1.9.1 to 1.9.2 ( #6856 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:23:47 +01:00
Víctor Fernández Poyatos
e27780a856
feat(findings): Require date filters for findings endpoints ( #6800 )
2025-02-10 11:23:41 +01:00
Pranay Girase
196ec51751
fix(typo): typos in Dashboard and Report in HTML ( #6847 )
2025-02-10 11:23:33 +01:00
Prowler Bot
86abf9e64c
chore(regions_update): Changes in regions for AWS services ( #6848 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-02-10 11:23:28 +01:00
dependabot[bot]
9d8be578e3
chore(deps): bump trufflesecurity/trufflehog from 3.88.4 to 3.88.5 ( #6844 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:23:19 +01:00
Mario Rodriguez Lopez
b3aa800082
feat(entra): add new check entra_thirdparty_integrated_apps_not_allowed ( #6357 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-02-10 11:23:13 +01:00
Ogonna Iwunze
501674a778
feat(kms): add kms_cmk_not_multi_region AWS check ( #6794 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-02-10 11:23:01 +01:00
Prowler Bot
5ff6ae79d8
chore(regions_update): Changes in regions for AWS services ( #6821 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-02-10 11:21:08 +01:00
Mario Rodriguez Lopez
e518a869ab
feat(entra): add new entra service for Microsoft365 ( #6326 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-02-10 11:20:58 +01:00
Mario Rodriguez Lopez
43927a62f3
feat(microsoft365): add new check admincenter_settings_password_never_expire ( #6023 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-02-10 11:20:52 +01:00
dependabot[bot]
335980c8d8
chore(deps): bump kubernetes from 31.0.0 to 32.0.0 ( #6678 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:20:42 +01:00
Pablo Lara
ca3ee378db
style(forms): improve spacing consistency ( #6814 )
2025-02-10 11:17:11 +01:00
Pablo Lara
c05bc1068a
chore(forms): improvements to the sign-in and sign-up forms ( #6813 )
2025-02-10 11:17:03 +01:00
Drew Kerrigan
2e3164636d
docs(): add description of changed and new delta values to prowler app tutorial ( #6801 )
2025-02-10 11:16:56 +01:00
dependabot[bot]
c34e07fc40
chore(deps): bump pytz from 2024.2 to 2025.1 ( #6765 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:16:50 +01:00
dependabot[bot]
6022122a61
chore(deps-dev): bump mkdocs-material from 9.5.50 to 9.6.2 ( #6799 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:16:44 +01:00
dependabot[bot]
f65f5e4b46
chore(deps-dev): bump pylint from 3.3.3 to 3.3.4 ( #6721 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:16:37 +01:00
Pablo Lara
dee17733a0
feat(scans): show scan details right after launch ( #6791 )
2025-02-10 11:16:30 +01:00
dependabot[bot]
cddda1e64e
chore(deps): bump trufflesecurity/trufflehog from 3.88.2 to 3.88.4 ( #6760 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:16:23 +01:00
dependabot[bot]
f7b873db03
chore(deps): bump google-api-python-client from 2.159.0 to 2.160.0 ( #6720 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:16:17 +01:00
Víctor Fernández Poyatos
792bc70d0a
feat(schedules): Rework daily schedule to always show the next scan ( #6700 )
2025-02-10 11:16:11 +01:00
Hugo Pereira Brito
185491b061
fix: microsoft365 mutelist ( #6724 )
2025-02-10 11:16:05 +01:00
dependabot[bot]
3af8a43480
chore(deps): bump microsoft-kiota-abstractions from 1.6.8 to 1.9.1 ( #6734 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:15:57 +01:00
Pablo Lara
fd78406b29
fix: Enable hot reloading when using Docker Compose for UI ( #6750 )
2025-02-10 11:15:49 +01:00
Matt Johnson
4758b258a3
chore: Update Google Analytics ID across all docs.prowler.com sites. ( #6730 )
2025-02-10 11:15:41 +01:00
dependabot[bot]
015e2b3b88
chore(deps): bump uuid from 10.0.0 to 11.0.5 in /ui ( #6516 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:15:33 +01:00
Mario Rodriguez Lopez
e184c9cb61
feat(m365): add Microsoft 365 provider ( #5902 )
...
Co-authored-by: Daniel Barranquero <danielbo2001@gmail.com >
Co-authored-by: HugoPBrito <hugopbrit@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-02-10 11:15:24 +01:00
dependabot[bot]
9004a01183
chore(deps): bump azure-mgmt-web from 7.3.1 to 8.0.0 ( #6680 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:15:18 +01:00
dependabot[bot]
dd65ba3d9e
chore(deps): bump msgraph-sdk from 1.17.0 to 1.18.0 ( #6679 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:15:08 +01:00
dependabot[bot]
bba616a18f
chore(deps): bump azure-storage-blob from 12.24.0 to 12.24.1 ( #6666 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-02-10 11:14:33 +01:00
Pepe Fagoaga
aa0f8d2981
chore: bump for next minor ( #6672 )
2025-02-10 11:13:42 +01:00
Paolo Frigo
2511d6ffa9
docs: update # of checks, services, frameworks and categories ( #6528 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-02-10 11:12:02 +01:00
Prowler Bot
27329457be
fix(dashboard): adjust the bar chart display ( #6868 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-02-07 11:04:23 -05:00
Prowler Bot
7189f3d526
fix(aws): key error for detect-secrets ( #6865 )
...
Co-authored-by: Kay Agahd <kagahd@users.noreply.github.com >
2025-02-07 10:04:54 -05:00
Prowler Bot
58e7589c9d
fix(kms): handle error in DescribeKey function ( #6842 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-02-05 15:27:43 -05:00
Prowler Bot
d60f4b5ded
fix(cloudfront): fix false positive in s3 origins ( #6838 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2025-02-05 13:36:49 -05:00
Prowler Bot
4c2ec094f6
fix(findings): Spelling mistakes correction ( #6834 )
...
Co-authored-by: Gary Mclean <gary.mclean@krrv.io >
2025-02-05 11:53:17 -05:00
Prowler Bot
395ecaff5b
fix(directoryservice): handle ClientException ( #6828 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2025-02-05 11:20:13 -05:00
Prowler Bot
c39506ef7d
fix(aws) wording of report.status_extended in awslambda_function_not_publicly_accessible ( #6831 )
...
Co-authored-by: Kay Agahd <kagahd@users.noreply.github.com >
2025-02-05 11:18:27 -05:00
Prowler Bot
eb90d479e2
chore(aws_audit_manager_control_tower_guardrails): add checks to reqs ( #6803 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-02-04 19:47:04 -05:00
Prowler Bot
b92a73f5ea
fix(elasticache): InvalidReplicationGroupStateFault error ( #6820 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
2025-02-04 16:08:26 -05:00
Prowler Bot
ad121f3059
chore(deps-dev): bump moto from 5.0.27 to 5.0.28 ( #6817 )
...
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-02-04 14:25:04 -05:00
Pepe Fagoaga
70e4c5a44e
chore: bump for next patch ( #6764 )
2025-02-03 15:25:23 -05:00
Prowler Bot
b5a46b7b59
fix(cis_1.5_aws): add checks to needed reqs ( #6798 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-02-03 11:37:53 -05:00
Prowler Bot
f1a97cd166
fix(cis_1.4_aws): add checks to needed reqs ( #6796 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-02-03 11:37:39 -05:00
Prowler Bot
0774508093
fix(cis_2.0_aws): add checks to needed reqs ( #6787 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-02-03 11:37:24 -05:00
Prowler Bot
0664ce6b94
fix(gcp): fix wrong provider value in check ( #6789 )
...
Co-authored-by: secretcod3r <101349794+secretcod3r@users.noreply.github.com >
2025-02-03 10:32:53 -05:00
Prowler Bot
407c779c52
fix(findings): remove default status filtering ( #6785 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-02-03 15:25:11 +01:00
Prowler Bot
c60f13f23f
fix(findings): order findings by inserted_at DESC ( #6783 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-02-03 11:57:45 +01:00
Prowler Bot
37d912ef01
fix(celery): Kill celery worker process after every task to release memory ( #6763 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-01-31 19:37:34 +05:45
Pepe Fagoaga
d3de89c017
chore: bump for next patch ( #6762 )
2025-01-31 19:34:54 +05:45
Prowler Bot
cb22af25c6
fix(db_event): Handle other events ( #6757 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-01-30 21:48:42 +05:45
Prowler Bot
a534b94495
fix(set_report_color): Add more details to error ( #6755 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-01-30 21:46:34 +05:45
Prowler Bot
6262b4ff0b
feat(scans): Optimize read queries during scans ( #6756 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-01-30 20:56:11 +05:45
Prowler Bot
84ecd7ab2c
feat(findings): Improve /findings/metadata performance ( #6749 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-01-30 18:39:25 +05:45
Prowler Bot
1a5428445a
fix(neptune): correct service name ( #6747 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-01-30 17:52:00 +05:45
Prowler Bot
ac8e991ca0
fix(aws): iam_user_with_temporary_credentials resource in OCSF ( #6741 )
...
Co-authored-by: Kay Agahd <kagahd@users.noreply.github.com >
2025-01-30 17:17:20 +05:45
Prowler Bot
83a0331472
fix(acm): Key Error DomainName ( #6744 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-01-30 17:17:05 +05:45
Prowler Bot
cce31e2971
fix(finding): raise when generating invalid findings ( #6745 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-01-30 17:16:50 +05:45
Prowler Bot
0adf7d6e77
fix(sns): Add region to subscriptions ( #6740 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-01-30 15:46:55 +05:45
Pepe Fagoaga
295f8b557e
chore: bump for next patch ( #6727 )
2025-01-29 20:00:47 +05:45
Prowler Bot
bb2c5c3161
fix(scans): change label for next scan ( #6726 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-29 10:49:35 +01:00
Prowler Bot
0018f36a36
fix(migrations): Use indexes instead of constraints to define an index ( #6723 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-01-29 14:29:03 +05:45
Prowler Bot
857de84f49
fix(defender): add field to SecurityContacts ( #6715 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-01-29 13:53:14 +05:45
Prowler Bot
9630f2242a
revert: Update Django DB manager to use psycopg3 and connection pooling ( #6719 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-01-28 22:33:32 +05:45
Prowler Bot
1fe125867c
fix(scan-summaries): Improve efficiency on providers overview ( #6718 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-01-28 22:15:22 +05:45
Prowler Bot
0737893240
fix(scans): filters and sorting for scan table ( #6714 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-28 13:29:39 +01:00
Prowler Bot
282fe3d348
fix(scans, findings): Improve API performance ordering by inserted_at instead of id ( #6712 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-01-28 17:28:26 +05:45
Prowler Bot
b5d83640ae
fix: fixed bug when opening finding details while a scan is in progress ( #6709 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-28 07:01:43 +01:00
Prowler Bot
2823d3ad21
fix(cloudsql): add trusted client certificates case for cloudsql_instance_ssl_connections ( #6687 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2025-01-24 12:19:05 -05:00
Prowler Bot
00b93bfe86
fix(cloudwatch): NoneType object is not iterable ( #6677 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
2025-01-23 13:25:02 -05:00
Pepe Fagoaga
84c253d887
chore: bump for next patch ( #6673 )
2025-01-23 13:13:05 -05:00
Pepe Fagoaga
2ab5a702c9
chore(api): Bump to v1.3.0 ( #6670 )
2025-01-23 16:40:59 +01:00
Sergio Garcia
11d9cdf24e
feat(resource metadata): add resource metadata to JSON OCSF ( #6592 )
...
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com >
2025-01-23 16:08:13 +01:00
Rubén De la Torre Vico
b1de41619b
fix: add missing Check_Report_Azure parameters ( #6583 )
2025-01-23 16:07:23 +01:00
Rubén De la Torre Vico
18a4881a51
feat(network): extract Network resource metadata automated ( #6555 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-01-23 16:06:44 +01:00
Rubén De la Torre Vico
de76a168c0
feat(storage): extract Storage resource metadata automated ( #6563 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-01-23 16:06:40 +01:00
Rubén De la Torre Vico
bcc13a742d
feat(vm): extract VM resource metadata automated ( #6564 )
2025-01-23 16:06:32 +01:00
Rubén De la Torre Vico
23b584f4bf
feat(sqlserver): extract SQL Server resource metadata automated ( #6562 )
2025-01-23 16:06:25 +01:00
Daniel Barranquero
074b7c1ff5
feat(aws): include resource metadata to remaining checks ( #6551 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-01-23 16:06:18 +01:00
Rubén De la Torre Vico
c04e9ed914
feat(postgresql): extract PostgreSQL resource metadata automated ( #6560 )
2025-01-23 16:06:11 +01:00
Rubén De la Torre Vico
1f1b126e79
feat(policy): extract Policy resource metadata automated ( #6558 )
2025-01-23 16:06:06 +01:00
Rubén De la Torre Vico
9b0dd80f13
feat(entra): extract Entra resource metadata automated ( #6542 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-01-23 16:06:01 +01:00
Rubén De la Torre Vico
b0807478f2
feat(monitor): extract monitor resource metadata automated ( #6554 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-01-23 16:05:54 +01:00
Rubén De la Torre Vico
11dfa58ecd
feat(mysql): extract MySQL resource metadata automated ( #6556 )
2025-01-23 16:05:48 +01:00
Rubén De la Torre Vico
412f396e0a
feat(keyvault): extract KeyVault resource metadata automated ( #6553 )
2025-01-23 16:05:44 +01:00
Rubén De la Torre Vico
8100d43ff2
feat(iam): extract IAM resource metadata automated ( #6552 )
2025-01-23 16:05:38 +01:00
Sergio Garcia
bc96acef48
fix(gcp): iterate through service projects ( #6549 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2025-01-23 16:05:24 +01:00
Hugo Pereira Brito
6e9876b61a
feat(aws): include resource metadata in services from r* to s* ( #6536 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-01-23 16:05:17 +01:00
Pedro Martín
32253ca4f7
feat(gcp): add resource metadata to report ( #6500 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-01-23 16:05:08 +01:00
Hugo Pereira Brito
4c6be5e283
feat(aws): include resource metadata in services from a* to b* ( #6504 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-01-23 16:05:03 +01:00
Daniel Barranquero
69178fd7bd
chore(aws): add resource metadata to services from t to w ( #6546 )
2025-01-23 16:04:49 +01:00
Daniel Barranquero
cd4432c14b
chore(aws): add resource metadata to services from f to o ( #6545 )
2025-01-23 16:04:40 +01:00
Rubén De la Torre Vico
0e47172aec
feat(defender): extract Defender resource metadata in automated way ( #6538 )
2025-01-23 16:04:30 +01:00
Rubén De la Torre Vico
efe18ae8b2
feat(appinsights): extract App Insights resource metadata in automated way ( #6540 )
2025-01-23 16:04:18 +01:00
Hugo Pereira Brito
d5e13df4fe
feat: add resource metadata to emr_cluster_account_public_block_enabled ( #6539 )
2025-01-23 16:04:13 +01:00
Sergio Garcia
b0e84d74f2
feat(kubernetes): add resource metadata to report ( #6479 )
2025-01-23 16:04:05 +01:00
Hugo Pereira Brito
28526b591c
feat(aws): include resource metadata in services from d* to e* ( #6532 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-01-23 16:03:59 +01:00
Daniel Barranquero
51e6a6edb1
feat(aws): add resource metadata to all services starting with c ( #6493 )
2025-01-23 16:03:50 +01:00
Rubén De la Torre Vico
c1b132a29e
feat(cosmosdb): extract CosmosDB resource metadata in automated way ( #6533 )
2025-01-23 16:03:43 +01:00
Rubén De la Torre Vico
e2530e7d57
feat(containerregistry): extract Container Registry resource metadata in automated way ( #6530 )
2025-01-23 16:03:37 +01:00
Rubén De la Torre Vico
f2fcb1599b
feat(azure-app): extract Web App resource metadata in automated way ( #6529 )
2025-01-23 16:03:32 +01:00
Rubén De la Torre Vico
160eafa0c9
feat(aks): use Check_Report_Azure constructor properly in AKS checks ( #6509 )
2025-01-23 16:03:17 +01:00
Rubén De la Torre Vico
c2bc0f1368
feat(aisearch): use Check_Report_Azure constructor properly in AISearch checks ( #6506 )
2025-01-23 16:03:10 +01:00
Rubén De la Torre Vico
27d27fff81
feat(azure): include resource metadata in Check_Report_Azure ( #6505 )
2025-01-23 16:02:00 +01:00
Pepe Fagoaga
66e8f0ce18
chore(scan): Remove ._findings ( #6667 )
2025-01-23 15:58:37 +01:00
Pedro Martín
0ceae8361b
feat(kubernetes): add CIS 1.10 compliance ( #6508 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
# Conflicts:
# prowler/compliance/kubernetes/cis_1.10_kubernetes.json
2025-01-23 15:39:40 +01:00
Pedro Martín
5e52fded83
feat(azure): add CIS 3.0 for Azure ( #5226 )
...
# Conflicts:
# prowler/compliance/azure/cis_3.0_azure.json
2025-01-23 15:35:35 +01:00
Pablo Lara
0a7d07b4b6
chore: adjust DateWithTime component height when used with InfoField ( #6669 )
2025-01-23 15:21:42 +01:00
Pablo Lara
34b5f483d7
chore(scans): improve scan details ( #6665 )
2025-01-23 14:16:35 +01:00
Pedro Martín
9d04a1bc52
feat(detect-secrets): get secrets plugins from config.yaml ( #6544 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-01-23 14:16:15 +01:00
dependabot[bot]
b25c0aaa00
chore(deps): bump azure-mgmt-containerservice from 33.0.0 to 34.0.0 ( #6630 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-23 14:16:03 +01:00
dependabot[bot]
652b93ea45
chore(deps): bump azure-mgmt-compute from 33.1.0 to 34.0.0 ( #6628 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-23 14:15:54 +01:00
Pepe Fagoaga
ccb7726511
fix(templates): Customize principals and add validation ( #6655 )
2025-01-23 14:15:41 +01:00
Anton Rubets
c514a4e451
chore(helm): Add prowler helm support ( #6580 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-01-23 14:15:33 +01:00
Prowler Bot
d841bd6890
chore(regions_update): Changes in regions for AWS services ( #6652 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-01-23 14:15:24 +01:00
dependabot[bot]
ff54e10ab2
chore(deps): bump boto3 from 1.35.94 to 1.35.99 ( #6651 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-23 14:15:03 +01:00
Pepe Fagoaga
718e562741
chore(pre-commit): poetry checks for API and SDK ( #6658 )
2025-01-23 14:14:10 +01:00
Pablo Lara
ce05e2a939
feat(providers): show the cloud formation and terraform template links on the form ( #6660 )
2025-01-23 14:13:37 +01:00
Pablo Lara
90831d3084
feat(providers): make external id field mandatory in the aws role secret form ( #6656 )
2025-01-23 14:13:30 +01:00
dependabot[bot]
2c928dead5
chore(deps-dev): bump moto from 5.0.16 to 5.0.27 ( #6632 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-01-23 14:13:23 +01:00
dependabot[bot]
3ffe147664
chore(deps): bump botocore from 1.35.94 to 1.35.99 ( #6520 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-01-23 14:13:04 +01:00
dependabot[bot]
3373b0f47c
chore(deps-dev): bump mkdocs-material from 9.5.49 to 9.5.50 ( #6631 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-23 14:12:52 +01:00
Prowler Bot
b29db04560
chore(regions_update): Changes in regions for AWS services ( #6599 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-01-23 14:12:38 +01:00
Hugo Pereira Brito
f964a0362e
chore(services): delete all comment headers ( #6585 )
2025-01-23 14:11:58 +01:00
Prowler Bot
537b23dfae
chore(regions_update): Changes in regions for AWS services ( #6577 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-01-23 14:11:46 +01:00
Pablo Lara
48cf3528b4
feat(findings): add first seen in findings details ( #6575 )
2025-01-23 14:11:08 +01:00
dependabot[bot]
3c4b9d32c9
chore(deps): bump msgraph-sdk from 1.16.0 to 1.17.0 ( #6547 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-23 14:09:46 +01:00
Víctor Fernández Poyatos
fd8361ae2c
feat(db): Update Django DB manager to use psycopg3 and connection pooling ( #6541 )
...
# Conflicts:
# api/poetry.lock
# api/pyproject.toml
2025-01-23 14:07:34 +01:00
Prowler Bot
33cadaa932
chore(regions_update): Changes in regions for AWS services ( #6526 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-01-23 14:02:14 +01:00
dependabot[bot]
cc126eb8b4
chore(deps): bump google-api-python-client from 2.158.0 to 2.159.0 ( #6521 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-23 14:02:07 +01:00
Pedro Martín
c996b3f6aa
docs(readme): update pr template to add check for readme ( #6531 )
2025-01-23 14:01:53 +01:00
Adrián Jesús Peña Rodríguez
e2b406a300
feat(finding): add first_seen attribute ( #6460 )
2025-01-23 14:01:46 +01:00
dependabot[bot]
c2c69da603
chore(deps): bump django from 5.1.4 to 5.1.5 in /api ( #6519 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
# Conflicts:
# api/poetry.lock
2025-01-23 14:01:33 +01:00
Adrián Jesús Peña Rodríguez
4e51348ff2
feat(provider-secret): make existing external_id field mandatory ( #6510 )
2025-01-23 14:00:42 +01:00
dependabot[bot]
3257b82706
chore(deps-dev): bump eslint-config-prettier from 9.1.0 to 10.0.1 in /ui ( #6518 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-23 13:59:26 +01:00
Pepe Fagoaga
c98d764daa
chore(version): set next minor ( #6511 )
...
# Conflicts:
# prowler/config/config.py
# pyproject.toml
2025-01-23 13:57:20 +01:00
Prowler Bot
0448429a9f
chore(regions_update): Changes in regions for AWS services ( #6495 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-01-23 13:56:43 +01:00
Pepe Fagoaga
b948ac6125
feat(prowler-role): Add templates to deploy it in AWS ( #6499 )
2025-01-23 13:56:28 +01:00
dependabot[bot]
3acc09ea16
chore(deps): bump jinja2 from 3.1.4 to 3.1.5 ( #6457 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-23 13:56:09 +01:00
dependabot[bot]
82d0d0de9d
chore(deps-dev): bump bandit from 1.8.0 to 1.8.2 ( #6485 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-23 13:56:00 +01:00
Prowler Bot
f9cfc4d087
fix: add detector and line number of potential secret ( #6663 )
...
Co-authored-by: Kay Agahd <kagahd@users.noreply.github.com >
2025-01-22 10:55:49 -05:00
Pepe Fagoaga
7d68ff455b
chore(api): Use prowler from v5.1 ( #6659 )
2025-01-22 20:04:55 +05:45
Pepe Fagoaga
ddf4881971
chore(version): Update version to 5.1.6 ( #6645 )
2025-01-21 13:28:44 -05:00
Prowler Bot
9ad4944142
fix(filters): fix dynamic filters ( #6643 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-21 13:40:18 +01:00
Prowler Bot
7f33ea76a4
fix(OCSF): fix OCSF output when timestamp is UNIX format ( #6627 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2025-01-20 18:03:51 -05:00
Prowler Bot
1140c29384
fix(aws): list tags for DocumentDB clusters ( #6622 )
...
Co-authored-by: Kay Agahd <kagahd@users.noreply.github.com >
2025-01-20 17:22:06 -05:00
Prowler Bot
2441a62f39
fix: update Azure CIS with existing App checks ( #6625 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2025-01-20 16:27:14 -05:00
Pepe Fagoaga
c26a231fc1
chore(version): Update version to 5.1.5 ( #6618 )
2025-01-20 15:07:58 -05:00
Prowler Bot
2fb2315037
chore(RBAC): add permission's info ( #6617 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-20 17:31:52 +01:00
Prowler Bot
a9e475481a
fix(snippet-id): improve provider ID readability in tables ( #6616 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-20 17:28:04 +01:00
Prowler Bot
826d7c4dc3
fix(rbac): remove invalid required permission ( #6614 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
2025-01-20 17:02:31 +01:00
Prowler Bot
b7f4b37f66
feat(api): restrict the deletion of users, only the user of the request can be deleted ( #6613 )
...
Co-authored-by: Adrián Jesús Peña Rodríguez <adrianjpr@gmail.com >
2025-01-20 17:02:21 +01:00
Prowler Bot
193d691bfe
fix(RBAC): tweaks for edit role form ( #6610 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-20 14:12:43 +01:00
Prowler Bot
a359bc581c
fix(RBAC): restore manage_account permission for roles ( #6603 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-20 11:53:08 +01:00
Prowler Bot
9a28ff025a
fix(sqs): fix flaky test ( #6595 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2025-01-17 12:40:11 -05:00
Prowler Bot
f1c7050700
fix(apigatewayv2): managed exception NotFoundException ( #6590 )
...
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
2025-01-17 09:27:19 -05:00
Pepe Fagoaga
9391c27b9e
chore(version): Update version to 5.1.4 ( #6591 )
2025-01-17 09:25:35 -05:00
Prowler Bot
4c54de092f
feat(findings): Add resource_tag filters for findings endpoint ( #6587 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-01-17 19:01:51 +05:45
Prowler Bot
690c482a43
fix(gcp): fix flaky tests from dns service ( #6571 )
...
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2025-01-17 08:15:34 -05:00
Prowler Bot
ad2d857c6f
feat(findings): add /findings/metadata to retrieve dynamic filters information ( #6586 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-01-17 18:47:59 +05:45
Pepe Fagoaga
07ee59d2ef
chore(version): Update version to 5.1.3 ( #6584 )
2025-01-17 18:46:08 +05:45
Prowler Bot
bec4617d0a
fix(providers): update the label and placeholder based on the cloud provider ( #6582 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-17 12:33:25 +01:00
Prowler Bot
94916f8305
fix(findings): remove filter delta_in applied by default ( #6579 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-17 11:06:07 +01:00
Prowler Bot
44de651be3
fix(cis): add subsections if needed ( #6568 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-01-16 14:49:49 -05:00
Prowler Bot
bdcba9c642
fix(detect_secrets): refactor logic for detect-secrets ( #6566 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2025-01-16 13:07:18 -05:00
Prowler Bot
c172f75f1a
fix(dep): address compatibility issues ( #6557 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-16 14:35:06 +01:00
Prowler Bot
ec492fa13a
feat(filters): add resource type filter for findings ( #6525 )
...
Co-authored-by: Pablo Lara <larabjj@gmail.com >
2025-01-15 08:43:49 +01:00
Prowler Bot
702659959c
fix(Azure TDE): add filter for master DB ( #6514 )
...
Co-authored-by: johannes-engler-mw <132657752+johannes-engler-mw@users.noreply.github.com >
2025-01-14 15:25:27 -05:00
Pepe Fagoaga
fef332a591
chore(version): set next fixes
2025-01-14 18:05:04 +01:00
Pablo Lara
a65ca72177
chore(groups): Enable updating groups without roles or providers ( #6498 )
2025-01-14 11:16:13 +01:00
Pablo Lara
1108d90768
chore(roles): prevent capitalization of provider groups and roles ( #6497 )
2025-01-14 10:41:08 +01:00
Adrián Jesús Peña Rodríguez
6715aa351f
fix(rbac): block admin role deletion ( #6470 )
2025-01-14 10:27:41 +01:00
dependabot[bot]
851497eb0a
chore(deps): bump @radix-ui/react-slot from 1.1.0 to 1.1.1 in /ui ( #6481 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-14 10:25:14 +01:00
dependabot[bot]
3bb4663e3e
chore(deps-dev): bump eslint-plugin-import from 2.29.1 to 2.31.0 in /ui ( #6482 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-14 10:24:31 +01:00
Pablo Lara
6953fcf6b5
chore(rbac): tweaks role permissions ( #6496 )
2025-01-14 10:23:23 +01:00
Adrián Jesús Peña Rodríguez
ab844eee3f
ref(rbac): disable some checks ( #6471 )
2025-01-14 09:33:15 +01:00
Pedro Martín
708e06aa3b
fix(iso27001-2013): add ReqId and ReqDescription in output ( #6405 )
2025-01-13 13:14:09 -05:00
Prowler Bot
aa8b8bbcae
chore(regions_update): Changes in regions for AWS services ( #6459 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-01-13 12:41:11 -05:00
Pablo Lara
0ce1e15c2c
styles(invitations): tweak styles for invitation details box ( #6475 )
2025-01-13 18:32:33 +01:00
Pablo Lara
105a83d946
fix(invitation): correct the URL used to share an invitation ( #6472 )
2025-01-13 17:27:10 +01:00
Pedro Martín
e9a885a54d
feat(compliance): add CIS 3.0 for gcp ( #6463 )
2025-01-13 10:59:53 -05:00
Pablo Lara
0a8759ee06
chore(manage-groups): tweaks for provider manage groups ( #6468 )
2025-01-13 16:39:14 +01:00
Prowler Bot
33ec21bbac
chore(regions_update): Changes in regions for AWS services ( #6458 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-01-13 10:37:43 -05:00
dependabot[bot]
7c00f65ecc
chore(deps): bump @radix-ui/react-toast from 1.2.1 to 1.2.4 in /ui ( #6445 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-13 15:55:56 +01:00
Rubén De la Torre Vico
7777c8f135
fix(vpc): add new principal wildcard verification ( #6461 )
2025-01-13 09:49:10 -05:00
dependabot[bot]
2386490002
chore(deps-dev): bump openapi-schema-validator from 0.6.2 to 0.6.3 ( #6454 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-13 09:36:31 -05:00
Pepe Fagoaga
b620f12027
chore(rls): Add tenant_id filters in views and improve querysets ( #6211 )
...
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2025-01-13 11:37:40 +01:00
Rubén De la Torre Vico
00722181ad
docs(azure): improve tutorials for Prowler App ( #6210 )
2025-01-13 09:59:58 +01:00
Sergio Garcia
15e888a939
feat(ec2): include resource metadata in Check_Report ( #6440 )
2025-01-13 13:04:55 +05:45
dependabot[bot]
43fa600f1c
chore(deps): bump date-fns from 3.6.0 to 4.1.0 in /ui ( #6444 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-11 08:35:18 +01:00
dependabot[bot]
2e4b5399c9
chore(deps): bump lucide-react from 0.417.0 to 0.471.0 in /ui ( #6456 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-11 08:34:47 +01:00
Prowler Bot
62cbb442e8
chore(regions_update): Changes in regions for AWS services ( #6448 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-01-10 11:36:43 -05:00
Pedro Martín
b0fe696935
refactor(mutelist): use jsonschema on mutelist ( #6264 )
2025-01-10 20:04:20 +05:45
Matt Johnson
42dbefbb31
feat: New gen-ai category for all relevant checks. ( #6450 )
2025-01-10 08:57:20 -05:00
Daniel Barranquero
f3dbe28681
fix(codeartifact): fix flaky tests ( #6449 )
2025-01-10 18:16:00 +05:45
Pedro Martín
6a5f1a7839
docs(integrations): add integrations docs ( #6269 )
2025-01-10 17:00:20 +05:45
Pedro Martín
3b70f9fed4
docs(outputs): add custom outputs formats documentation ( #6386 )
2025-01-10 16:54:50 +05:45
dependabot[bot]
7eb01aaa5c
chore(deps-dev): bump safety from 3.2.3 to 3.2.9 in /api ( #6431 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-10 16:31:19 +05:45
dependabot[bot]
1e27e52fba
chore(deps-dev): bump vulture from 2.11 to 2.14 in /api ( #6426 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-10 15:14:55 +05:45
dependabot[bot]
16d73619e4
chore(deps): bump boto3 from 1.35.93 to 1.35.94 ( #6410 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-09 19:29:59 -05:00
dependabot[bot]
bc82696f15
chore(deps): bump google-api-python-client from 2.157.0 to 2.158.0 ( #6442 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-09 18:16:23 -05:00
dependabot[bot]
fdb90623fc
chore(deps): bump trufflesecurity/trufflehog from 3.88.1 to 3.88.2 ( #6446 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-09 17:52:12 -05:00
Prowler Bot
5fa62a9770
chore(regions_update): Changes in regions for AWS services ( #6399 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-01-09 14:57:30 -05:00
Pablo Lara
8f3df7e45d
fix(BC: NextUI): fix BC from NextUI, resolve ESLint warnings and optimize hooks dependencies ( #6404 )
2025-01-09 17:37:33 +01:00
dependabot[bot]
bb417587ae
chore(deps-dev): bump @iconify/react from 5.0.1 to 5.2.0 in /ui ( #6421 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-09 17:05:11 +01:00
dependabot[bot]
6b6e12cea3
chore(deps): bump jinja2 from 3.1.4 to 3.1.5 in /api ( #6316 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-09 20:39:02 +05:45
Pepe Fagoaga
65e70b2ca4
chore(dependabot): Review for API and UI ( #6402 )
2025-01-09 20:28:26 +05:45
Pepe Fagoaga
94d25f6f6a
chore(containers): Build stable for API and UI ( #6395 )
2025-01-09 20:24:57 +05:45
Sergio Garcia
4bcf036831
fix(iam): handle non existing MFA devices ( #6396 )
2025-01-09 09:23:05 -05:00
dependabot[bot]
901bc69a7d
chore(deps): bump django from 5.1.1 to 5.1.4 in /api ( #6376 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-09 13:36:58 +01:00
Adrián Jesús Peña Rodríguez
465217442b
fix(api): change the inserted_at.lte unittest ( #6403 )
2025-01-09 13:12:55 +01:00
Pablo Lara
e6b40358aa
feat(update-credentials): add explanation text for the current behavior ( #6400 )
2025-01-09 11:13:36 +01:00
Daniel Barranquero
9d48f7286a
fix(cloudformation): fix flaky tests ( #6398 )
2025-01-09 15:30:11 +05:45
Prowler Bot
80311d3837
chore(regions_update): Changes in regions for AWS services ( #6390 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-01-08 12:28:24 -05:00
Pedro Martín
f501149068
fix(pre-commit): add api needed excludes ( #6393 )
2025-01-08 16:34:55 +01:00
dependabot[bot]
750de62828
chore(deps): bump botocore from 1.35.93 to 1.35.94 ( #6388 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-08 10:32:34 -05:00
Pablo Lara
d2f338ceb6
feat(scans): add new component - alert bar
2025-01-08 11:01:52 +01:00
dependabot[bot]
e8d66979b3
chore(deps): bump azure-mgmt-network from 28.0.0 to 28.1.0 ( #6296 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-07 16:09:53 -05:00
Sergio Garcia
b5180389f8
feat(aws): add new check cloudformation_stack_cdktoolkit_bootstrap_version ( #6323 )
2025-01-07 14:52:55 -05:00
dependabot[bot]
fbd5235e15
chore(deps): bump msgraph-sdk from 1.15.0 to 1.16.0 ( #6350 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-07 13:56:02 -05:00
dependabot[bot]
afd2267c26
chore(deps): bump microsoft-kiota-abstractions from 1.6.7 to 1.6.8 ( #6347 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-07 11:40:57 -05:00
dependabot[bot]
9e798ababd
chore(deps): bump google-api-python-client from 2.156.0 to 2.157.0 ( #6349 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-07 10:40:20 -05:00
Prowler Bot
e9f2fc8ee1
chore(regions_update): Changes in regions for AWS services ( #6382 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-01-07 10:11:24 -05:00
dependabot[bot]
12198b4f06
chore(deps): bump boto3 from 1.35.87 to 1.35.93 ( #6381 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-07 09:20:20 -05:00
Adrián Jesús Peña Rodríguez
15fae4d8f8
fix(ci): move poetry deprecated command to new one ( #6384 )
2025-01-07 12:38:33 +01:00
dependabot[bot]
3de3fed858
chore(deps): bump next from 14.2.12 to 14.2.22 in /ui ( #6356 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-07 12:29:06 +01:00
dependabot[bot]
1bf4255d93
chore(deps): bump cookie and next-auth in /ui ( #5880 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2025-01-07 12:03:45 +01:00
dependabot[bot]
b91a132e61
chore(deps): bump azure-mgmt-compute from 33.0.0 to 33.1.0 ( #6219 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-07 12:02:47 +01:00
dependabot[bot]
39302c9e93
chore(deps): bump botocore from 1.35.88 to 1.35.93 ( #6373 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2025-01-06 22:59:41 -05:00
dependabot[bot]
65e21c4268
chore(deps): bump trufflesecurity/trufflehog from 3.88.0 to 3.88.1 ( #6372 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-01-06 18:06:28 -05:00
Rubén De la Torre Vico
3d6a6a9fec
fix(aws): add missing sqs service without subservice ( #6352 )
2025-01-06 12:48:18 -05:00
Rubén De la Torre Vico
d185902c86
docs: add new format CloudFormation for ResourceType in check metadata ( #6353 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2025-01-06 10:25:00 -05:00
Prowler Bot
8ce4ad83ed
chore(regions_update): Changes in regions for AWS services ( #6329 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2025-01-06 10:16:57 -05:00
dependabot[bot]
89620a96bc
chore(deps): bump botocore from 1.35.87 to 1.35.88 ( #6321 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-27 12:21:12 -05:00
dependabot[bot]
f1c008f934
chore(deps-dev): bump coverage from 7.6.9 to 7.6.10 ( #6322 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-27 09:59:40 -05:00
dependabot[bot]
4d688c9b47
chore(deps): bump boto3 from 1.35.85 to 1.35.87 ( #6320 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-26 19:01:01 -05:00
dependabot[bot]
db5481cc9c
chore(deps-dev): bump pylint from 3.3.2 to 3.3.3 ( #6317 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-26 13:50:20 -05:00
dependabot[bot]
ce9a5e6484
chore(deps): bump botocore from 1.35.85 to 1.35.87 ( #6307 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-26 09:18:02 -05:00
Víctor Fernández Poyatos
550165b42b
feat(compliance): generate compliance reports for GCP scans using API ( #6318 )
2024-12-26 13:31:20 +01:00
Prowler Bot
080551132a
chore(regions_update): Changes in regions for AWS services ( #6299 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2024-12-23 08:35:48 -05:00
dependabot[bot]
0a61848365
chore(deps): bump boto3 from 1.35.83 to 1.35.85 ( #6295 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-23 07:41:45 -05:00
dependabot[bot]
fcb9ca7795
chore(deps): bump trufflesecurity/trufflehog from 3.87.2 to 3.88.0 ( #6298 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-23 07:41:23 -05:00
Víctor Fernández Poyatos
71c58cee9e
fix(migrations): fix django migration order dependency ( #6302 )
2024-12-23 12:26:00 +01:00
Sergio Garcia
c811b6715d
fix(gha): run API and UI tests in correct versions ( #6294 )
2024-12-23 11:47:51 +01:00
Kay Agahd
231829d8cd
fix(aws): disallow child-accounts to overwrite policy for ai_services_opt_out ( #6229 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2024-12-20 11:04:42 -05:00
dependabot[bot]
dbd2f8becb
chore(deps): bump botocore from 1.35.83 to 1.35.85 ( #6276 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-20 09:47:05 -05:00
Prowler Bot
cc04e6614e
chore(regions_update): Changes in regions for AWS services ( #6282 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2024-12-20 09:46:55 -05:00
Pablo Lara
a5c5ed614c
chore(menu): add API reference link to the sidebar ( #6287 )
2024-12-20 15:04:29 +01:00
Víctor Fernández Poyatos
ea13241317
fix(users): fix /users/me behavior when having more than 1 users in the same tenant ( #6284 )
2024-12-20 09:01:23 -05:00
Sergio Garcia
a377a9ff6a
chore(gha): solve pypi release github action ( #6278 )
2024-12-20 08:57:29 -05:00
Víctor Fernández Poyatos
f7e510b333
fix(db-utils): fix batch_delete function ( #6283 )
2024-12-20 08:55:21 -05:00
Pablo Lara
4472b80f1c
chore(findings): remove delta new as filter by default in findings ( #6280 )
2024-12-20 09:36:01 +01:00
dependabot[bot]
577eb3eec9
chore(deps): bump msgraph-sdk from 1.14.0 to 1.15.0 ( #6250 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-20 09:34:46 +01:00
dependabot[bot]
1ed6a1a40f
chore(deps): bump trufflesecurity/trufflehog from 3.87.1 to 3.87.2 ( #6279 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-19 17:51:41 -05:00
Sergio Garcia
fe4cd1cddf
fix(aws): add missing region to Backup Recovery Point ( #6273 )
2024-12-19 16:08:22 -05:00
Pablo Lara
6d7a8c8130
feat(roles): RBAC functionality ( #6201 )
2024-12-19 18:35:10 +01:00
dependabot[bot]
3057aeeacf
chore(deps): bump slack-sdk from 3.33.5 to 3.34.0 ( #6254 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-19 12:27:35 -05:00
Sergio Garcia
bb5b63f62f
fix(aws): solve None type errors ( #6268 )
2024-12-19 11:32:33 -05:00
Prowler Bot
58cd944618
chore(regions_update): Changes in regions for AWS services ( #6262 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2024-12-19 10:05:09 -05:00
Daniel Barranquero
5964b68c86
feat(codeartifact): add new fixer codeartifact_packages_external_public_publishing_disabled_fixer ( #6263 )
2024-12-19 10:05:01 -05:00
Pepe Fagoaga
c87aaeba04
chore(api): Use prowler ^5.0 ( #6266 )
2024-12-19 09:40:51 -05:00
dependabot[bot]
6e361005dc
chore(deps): bump trufflesecurity/trufflehog from 3.87.0 to 3.87.1 ( #6249 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-19 09:02:44 -05:00
dependabot[bot]
f5ab254bc5
chore(deps): bump microsoft-kiota-abstractions from 1.6.6 to 1.6.7 ( #6233 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-19 09:02:01 -05:00
dependabot[bot]
298392b409
chore(deps): bump google-api-python-client from 2.155.0 to 2.156.0 ( #6252 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-19 11:10:10 +01:00
Twodragon
74a2bf0721
feat(prowler-docker): Run Prowler docker with AWS SSO ( #5867 )
...
Co-authored-by: twodragon114 <twodragon114@gmail.com >
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2024-12-19 10:55:15 +01:00
dependabot[bot]
ddc5dc0316
chore(deps): bump boto3 from 1.35.81 to 1.35.83 ( #6253 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-19 09:45:16 +01:00
Pepe Fagoaga
d3af947553
fix(gha): make conditional job for checking the repo ( #6255 )
2024-12-19 14:19:41 +05:45
Pepe Fagoaga
36bb2509ac
docs: add note about platform flag in docker ( #6256 )
2024-12-19 14:18:16 +05:45
Pepe Fagoaga
e4c2b0c2d3
chore: skip action on .env changes ( #6257 )
2024-12-19 14:17:56 +05:45
Víctor Fernández Poyatos
ac5260ad43
feat(celery): Add configurable broker visibility timeout setting ( #6245 )
2024-12-19 00:03:11 +05:45
Adrián Jesús Peña Rodríguez
33857109c9
ref(rbac): enable relationship creation when objects is created ( #6238 )
2024-12-18 16:45:32 +01:00
Pepe Fagoaga
8cc8f76204
fix(.env): remove comment ( #6230 )
2024-12-18 20:36:03 +05:45
Pedro Martín
8f3229928e
chore(config): set default values for empty config fields ( #6225 )
2024-12-18 09:48:32 -05:00
Pedro Martín
2551992fd8
fix(docs): change typo from provideruid in k8s ( #6239 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2024-12-18 09:02:44 -05:00
Prowler Bot
eb1decfce1
chore(regions_update): Changes in regions for AWS services ( #6237 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2024-12-18 08:51:22 -05:00
Pepe Fagoaga
fd5e7b809f
docs: add note about containers arch ( #6236 )
2024-12-18 11:09:35 +01:00
dependabot[bot]
1ac681226d
chore(deps): bump botocore from 1.35.81 to 1.35.83 ( #6232 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-17 18:52:46 -05:00
dependabot[bot]
366940298d
chore(deps): bump trufflesecurity/trufflehog from 3.86.1 to 3.87.0 ( #6234 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-17 18:51:32 -05:00
Adrián Jesús Peña Rodríguez
fa400ded7d
ref(rbac): improve rbac implementation for views ( #6226 )
2024-12-17 18:11:48 +01:00
dependabot[bot]
ec9455ff75
chore(deps): bump boto3 from 1.35.80 to 1.35.81 ( #6218 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-17 11:32:30 -05:00
Daniel Barranquero
2183f31ff5
feat(ec2): add new fixers for internet exposed ports ( #6223 )
2024-12-17 10:04:00 -05:00
Prowler Bot
67257a4212
chore(regions_update): Changes in regions for AWS services ( #6222 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2024-12-17 10:00:52 -05:00
Pedro Martín
001fa60a11
feat(mutelist): add description field ( #6221 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-12-17 15:13:55 +01:00
Víctor Fernández Poyatos
0ec3ed8be7
feat(services): Add GET /overviews/services to API ( #6029 )
2024-12-17 08:47:44 +01:00
dependabot[bot]
3ed0b8a464
chore(deps-dev): bump mkdocs-material from 9.5.48 to 9.5.49 ( #6217 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-17 08:42:55 +01:00
Pedro Martín
fd610d44c0
refactor(gcp): use always <client>.region for checks ( #6206 )
2024-12-16 18:21:42 -05:00
Adrián Jesús Peña Rodríguez
b8cc4b4f0f
feat(stepfunctions): add stepfunctions service and check stepfunctions_statemachine_logging_enabled ( #5466 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2024-12-16 11:34:02 -05:00
Pedro Martín
396e51c27d
feat(gcp): add service account credentials ( #6165 )
2024-12-16 10:11:32 -05:00
Daniel Barranquero
36e61cb7a2
feat(ec2): add new fixer ec2_ami_public_fixer ( #6177 )
2024-12-16 10:09:14 -05:00
Daniel Barranquero
78c6484ddb
feat(cloudtrail): add new fixer cloudtrail_logs_s3_bucket_is_not_publicly_accessible_fixer ( #6174 )
2024-12-16 10:05:34 -05:00
Daniel Barranquero
3f1e90a5b3
feat(s3): add new fixer s3_bucket_policy_public_write_access_fixer ( #6173 )
2024-12-16 10:01:38 -05:00
dependabot[bot]
e1bfec898f
chore(deps): bump botocore from 1.35.80 to 1.35.81 ( #6199 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-16 09:57:03 -05:00
dependabot[bot]
b5b816dac9
chore(deps): bump boto3 from 1.35.79 to 1.35.80 ( #6198 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-16 07:51:44 -05:00
Pepe Fagoaga
57854f23b7
chore(rls): rename tenant_transaction to rls_transaction ( #6202 )
2024-12-16 12:27:55 +01:00
Rubén De la Torre Vico
9d7499b74f
fix(azure): custom Prowler Role for Azure assignableScopes ( #6149 )
2024-12-16 08:34:17 +01:00
dependabot[bot]
5b0b85c0f8
chore(deps): bump actions/setup-node from 3 to 4 ( #5893 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-13 14:57:27 +01:00
Pedro Martín
f7e8df618b
chore(labeler): add provider github ( #6194 )
2024-12-13 09:43:49 -04:00
Adrián Jesús Peña Rodríguez
d00d254c90
feat(api): RBAC system ( #6114 )
2024-12-13 14:14:40 +01:00
dependabot[bot]
f9fbde6637
chore(deps): bump botocore from 1.35.79 to 1.35.80 ( #6172 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-13 13:20:40 +01:00
Sergio Garcia
7b1a0474db
fix(aws): set unique resource IDs ( #6152 )
2024-12-13 13:00:38 +01:00
Pepe Fagoaga
da4f9b8e5f
fix(RLS): enforce config security ( #6066 )
2024-12-13 12:55:09 +01:00
Pepe Fagoaga
32f69d24b6
fix: dependabot syntax ( #6181 )
2024-12-13 12:20:43 +01:00
Pepe Fagoaga
d032a61a9e
chore(dependabot): Add docker ( #6180 )
2024-12-13 12:13:53 +01:00
dependabot[bot]
07e0dc2ef5
chore(deps): bump cross-spawn from 7.0.3 to 7.0.6 in /ui ( #5881 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-12-13 08:25:57 +01:00
dependabot[bot]
9e175e8504
chore(deps): bump nanoid from 3.3.7 to 3.3.8 in /ui ( #6110 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-13 07:59:50 +01:00
dependabot[bot]
6b8a434cda
chore(deps): bump boto3 from 1.35.78 to 1.35.79 ( #6171 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-13 07:58:58 +01:00
Pepe Fagoaga
554491a642
chore(gha): build and push OSS UI ( #6168 )
2024-12-12 19:10:44 +01:00
Pedro Martín
dc4e2f3c85
feat(GHA): build containers for API ( #6032 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-12-12 19:05:25 +01:00
Daniel Barranquero
7d2c50991b
feat(s3): add new fixer s3_bucket_public_access_fixer ( #6164 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2024-12-12 12:17:41 -04:00
Pedro Martín
83c204e010
fix(rds): add invalid SG to status_extended ( #6157 )
2024-12-12 11:51:09 -04:00
dependabot[bot]
316eb049dd
chore(deps): bump botocore from 1.35.78 to 1.35.79 ( #6153 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-12 11:29:23 -04:00
Daniel Barranquero
be347b2428
feat(ec2): add new check ec2_launch_template_imdsv2_required ( #6139 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2024-12-12 11:27:20 -04:00
Daniel Barranquero
a90c772827
feat(s3): add new fixer s3_bucket_public_list_acl_fixer ( #6166 )
2024-12-12 11:16:46 -04:00
Daniel Barranquero
26c70976c0
feat(s3): add new fixer s3_bucket_public_write_acl_fixer ( #5855 )
2024-12-12 11:10:43 -04:00
dependabot[bot]
657310dc25
chore(deps): bump boto3 from 1.35.77 to 1.35.78 ( #6154 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-12 10:39:22 -04:00
Daniel Barranquero
6e595eaf92
feat(ec2): add new fixer ec2_instance_port_cifs_exposed_to_internet_fixer ( #6159 )
2024-12-12 09:22:56 -04:00
Prowler Bot
997831e33d
chore(regions_update): Changes in regions for AWS services ( #6158 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2024-12-12 09:10:46 -04:00
dependabot[bot]
5920cdc48f
chore(deps): bump trufflesecurity/trufflehog from 3.86.0 to 3.86.1 ( #6156 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-12 09:10:20 -04:00
dependabot[bot]
971e73f9cb
chore(deps): bump google-api-python-client from 2.154.0 to 2.155.0 ( #6155 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-12 09:09:51 -04:00
Mads Brouer Lundholm
bd9673c9de
fix(aurora): Add default ports to the check of using non default ports ( #5821 )
...
Co-authored-by: Mads Rantala Lundholm <mao@bankdata.dk >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2024-12-11 13:01:45 -04:00
johannes-engler-mw
eded97d735
feat(azure): check for minimal TLS version for Azure SQL server ( #5745 )
...
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com >
2024-12-11 16:37:53 +01:00
Daniel Barranquero
fdb1956b0b
feat(opensearch): add new fixer opensearch_service_domains_not_publicly_accessible_fixer ( #5926 )
2024-12-11 11:29:48 -04:00
Daniel Barranquero
a915c04e9e
fix(autoscaling): autoscaling_group_launch_configuration_requires_imdsv2 fails if Launch Template is used ( #6111 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2024-12-11 11:18:30 -04:00
Daniel Barranquero
07178ac69a
feat(glacier): add new fixer glacier_vaults_policy_public_access_fixer ( #5950 )
2024-12-11 11:10:12 -04:00
Daniel Barranquero
9b434d4856
feat(ecr): add new fixer ecr_repositories_not_publicly_accessible_fixer ( #5923 )
2024-12-11 10:42:11 -04:00
dependabot[bot]
0758e97628
chore(deps): bump botocore from 1.35.77 to 1.35.78 ( #6132 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-11 10:19:37 -04:00
Sergio Garcia
b486007f95
fix(README): show latest release ( #6145 )
2024-12-11 10:19:06 -04:00
dependabot[bot]
0c0887afef
chore(deps): bump trufflesecurity/trufflehog from 3.85.0 to 3.86.0 ( #6130 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-11 09:29:14 -04:00
dependabot[bot]
805ed81031
chore(deps): bump boto3 from 1.35.76 to 1.35.77 ( #6131 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-11 09:26:07 -04:00
Prowler Bot
ec3fddf5b1
chore(regions_update): Changes in regions for AWS services ( #6136 )
...
Co-authored-by: MrCloudSec <38561120+MrCloudSec@users.noreply.github.com >
2024-12-11 09:25:17 -04:00
Rubén De la Torre Vico
d7b0bc02ba
feat(app): add support for TLS 1.3 to Web Apps check ( #6004 )
2024-12-11 13:14:29 +01:00
Pablo Lara
4d1c8eae8f
feat(users): user detail can be edited now properly ( #6135 )
2024-12-11 10:05:30 +01:00
Sergio Garcia
989ccf4ae3
fix(iam): set unique resource id for each user access key ( #6128 )
2024-12-11 09:13:49 +01:00
Pedro Martín
9c089756c3
fix(compliance_tables): add correct values for findings ( #6122 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2024-12-10 15:40:45 -04:00
Hugo Pereira Brito
8d4b0914a8
fix(aws): get firewall manager managed rule groups ( #6119 )
2024-12-10 15:34:22 -04:00
Hugo Pereira Brito
1ae3f89aab
fix(aws): check AWS Owned keys in firehose_stream_encrypted_at_rest ( #6108 )
2024-12-10 13:42:13 -04:00
Daniel Barranquero
b984f0423a
feat(sqs): add new fixer sqs_queues_not_publicly_accessible_fixer ( #5911 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2024-12-10 12:26:42 -04:00
Sergio Garcia
f2f196cfcd
fix(aws): set IAM identity as resource in threat detection ( #6048 )
2024-12-10 17:03:01 +01:00
dependabot[bot]
6471d936bb
chore(deps): bump msgraph-sdk from 1.12.0 to 1.14.0 ( #5957 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-10 11:42:40 -04:00
Adrián Jesús Peña Rodríguez
21bbdccc41
fix(deploy): temporal fix for the alpine-python segmentation fault ( #6109 )
2024-12-10 16:27:52 +01:00
Sergio Garcia
48946fa4f7
fix(gcp): make sure default project is active ( #6097 )
2024-12-10 11:06:48 -04:00
dependabot[bot]
9312dda7c2
chore(deps): bump microsoft-kiota-abstractions from 1.6.2 to 1.6.6 ( #6038 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-10 10:37:04 -04:00
dependabot[bot]
e3013329ee
chore(deps): bump botocore from 1.35.76 to 1.35.77 ( #6098 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-10 09:26:36 -04:00
Sergio Garcia
38a0d2d740
fix(aws): set same severity for EC2 IMDSv2 checks ( #6046 )
2024-12-10 08:55:41 +01:00
Mario Rodriguez Lopez
5c2adf1e14
docs(unitesting): Make some fixes to the documentation ( #6102 )
2024-12-10 08:51:19 +01:00
Daniel Barranquero
7ddd2c04c8
feat(awslambda): add new fixer awslambda_function_not_publicly_accessible_fixer ( #5840 )
2024-12-09 12:28:42 -04:00
Pepe Fagoaga
9a55632d8e
fix(backport): more than one backport tag is allowed ( #6090 )
2024-12-09 17:19:33 +01:00
dependabot[bot]
f8b4427505
chore(deps-dev): bump vulture from 2.13 to 2.14 ( #6068 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-09 11:10:41 -04:00
Sergio Garcia
f1efc1456d
chore(dependabot): change interval of PRs ( #6086 )
2024-12-09 15:46:28 +01:00
Sergio Garcia
2ea5851b67
docs(api): add commands to run API scheduler ( #6085 )
2024-12-09 10:34:02 -04:00
dependabot[bot]
a3051bc4e3
chore(deps-dev): bump mkdocs-material from 9.5.47 to 9.5.48 ( #6073 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-09 10:14:08 -04:00
Pepe Fagoaga
d454427b8b
fix(backport): remove v from branch prefix ( #6081 )
2024-12-09 10:13:20 -04:00
Pepe Fagoaga
4b41bd6adf
chore(containers): support for v4.6 branch ( #6063 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2024-12-09 09:23:06 -04:00
Pepe Fagoaga
cdd044d120
chore(dependabot): Update for UI and v4 ( #6062 )
2024-12-09 09:15:03 -04:00
Pepe Fagoaga
213a793fbc
chore(actions): standardize names ( #6059 )
2024-12-09 09:14:06 -04:00
Pepe Fagoaga
a8a567c588
docs: Prowler SaaS -> Cloud and add missing compliance ( #6061 )
2024-12-09 09:12:54 -04:00
Pepe Fagoaga
fefe89a1ed
fix(backport): Add action to detect labels ( #5270 )
2024-12-09 09:12:08 -04:00
Sergio Garcia
493fe2d523
docs(env): move warning about env files ( #6049 )
2024-12-09 11:11:05 +01:00
dependabot[bot]
d8fc830f1d
chore(deps): bump boto3 from 1.35.71 to 1.35.76 ( #6054 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-09 10:11:51 +01:00
Pepe Fagoaga
b6c3ba0f0d
chore: delete unneeded requirements file ( #6056 )
2024-12-09 09:07:10 +01:00
dependabot[bot]
32cd39d158
chore(deps-dev): bump coverage from 7.6.8 to 7.6.9 ( #6053 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-06 20:29:06 -04:00
dependabot[bot]
203275817f
chore(deps-dev): bump pytest from 8.3.3 to 8.3.4 ( #5992 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-06 12:53:11 -04:00
dependabot[bot]
c05c3396b5
chore(deps-dev): bump mkdocs-material from 9.5.46 to 9.5.47 ( #5988 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-06 11:56:37 -04:00
dependabot[bot]
8f172aec8a
chore(deps-dev): bump pylint from 3.3.1 to 3.3.2 ( #5993 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-06 11:04:28 -04:00
dependabot[bot]
263a7e2134
chore(deps): bump botocore from 1.35.71 to 1.35.76 ( #6037 )
2024-12-06 09:41:57 -04:00
dependabot[bot]
a2ea216604
chore(deps): bump slack-sdk from 3.33.4 to 3.33.5 ( #6039 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-06 08:44:00 -04:00
dependabot[bot]
77c572f990
chore(deps): bump trufflesecurity/trufflehog from 3.84.1 to 3.85.0 ( #6040 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-12-06 08:38:14 -04:00
Prowler Bot
bb0c346c4d
chore(regions_update): Changes in regions for AWS services ( #6041 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-12-06 08:38:03 -04:00
Daniel Barranquero
2ce8e1fd21
fix(backup): modify list recovery points call ( #5996 )
2024-12-06 08:35:29 -04:00
Pepe Fagoaga
ecfd94aeb1
fix(codecov): create components ( #6028 )
2024-12-05 16:35:56 +01:00
Pedro Martín
eddc672264
chore(version): update prowler version ( #6027 )
2024-12-05 13:51:13 +01:00
Pedro Martín
8c71a39487
docs(prowler-app): add link to https://api.prowler.com/api/v1/docs ( #6016 )
2024-12-05 11:01:51 +01:00
Pedro Martín
ff0ac27723
docs(index): update index with images ( #6015 )
2024-12-05 11:01:42 +01:00
Víctor Fernández Poyatos
ad7134d283
fix(tenant): fix delete tenants behavior ( #6013 )
2024-12-04 13:57:16 +01:00
Pablo Lara
58723ae52e
fix(invitations): remove wrong url ( #6005 )
2024-12-03 21:08:31 +01:00
Pablo Lara
52723eda6e
feat(providers): refactor workflow providers v2 ( #6001 )
2024-12-03 17:36:24 +01:00
Pepe Fagoaga
4a4636571e
chore(actions): prepare for v5 ( #6003 )
2024-12-03 17:07:35 +01:00
Víctor Fernández Poyatos
32d8da2131
fix(api): cascade deletion and next scan at time ( #5999 )
2024-12-03 14:59:49 +01:00
Hugo Pereira Brito
bb34a932ff
feat(docs): added link from app guide to app installation ( #5987 )
2024-12-02 12:22:24 -04:00
Sergio Garcia
50796bea7a
chore(docs): update screenshots and docs of Prowler App ( #5984 )
2024-12-02 11:37:00 -04:00
Víctor Fernández Poyatos
d678946044
chore(celery-beat): disable periodic cleanup ( #5986 )
2024-12-02 12:43:21 +01:00
Pablo Lara
fdafb8b0d3
chore(teaks v5): apply v5 feedback changes (temporarily hide recover password) ( #5985 )
2024-12-02 12:34:29 +01:00
Pablo Lara
c8b84163c9
chore: apply v5 feedback changes (add link to the graph) ( #5983 )
2024-12-01 17:57:20 +01:00
Víctor Fernández Poyatos
ab489befe6
feat(provider): add include query parameter for provider_groups ( #5974 )
2024-12-01 16:57:59 +01:00
Pablo Lara
67f3adbe4c
Feature/v5 tweaks UI v4 ( #5982 )
2024-12-01 16:57:34 +01:00
Pablo Lara
9b018ff885
chore: apply v5 feedback changes (scan page) ( #5981 )
2024-12-01 15:41:34 +01:00
Pablo Lara
3c2b0a58a1
feat(v5): tweaks UI for v5 release - 2 ( #5979 )
2024-12-01 15:28:11 +01:00
Víctor Fernández Poyatos
2a13301d35
feat(scan): add state filter for scans endpoints ( #5980 )
2024-12-01 15:03:28 +01:00
Pedro De Castro
333f74dba0
fix(docs): Docker compose files download ( #5977 )
2024-12-01 08:44:56 -04:00
Víctor Fernández Poyatos
ffaa267b5e
feat(scan, schedule): add next_scan_at field to scans and POST /schedules/daily ( #5978 )
2024-12-01 09:12:19 +01:00
Sergio Garcia
ff80a47123
feat(docker-compose): add Docker Compose YAMLs and .env ( #5909 )
2024-11-30 17:21:31 -04:00
Sergio Garcia
17c31c64d9
fix(tests): use datetime.datetime.now() in GCP kms_key_rotation_enabled ( #5976 )
2024-11-30 16:31:56 -04:00
Víctor Fernández Poyatos
add2134274
fix(overview): retrieve aggregated findings from completed scans ( #5975 )
2024-11-30 19:25:29 +01:00
Pablo Lara
3547153c0a
feat(v5): tweaks UI ( #5971 )
2024-11-30 18:51:26 +01:00
Adrián Jesús Peña Rodríguez
76b8ac157d
feat(dynamic_filters): add dynamic filters system ( #5973 )
2024-11-30 17:09:38 +01:00
Pedro Martín
e09a04d593
docs(readme): update readme with console instead of bash ( #5970 )
2024-11-29 12:50:08 -04:00
Sergio Garcia
f6187ee9ca
docs(readme): add Prowler App documentation ( #5916 )
2024-11-29 17:43:32 +01:00
Sergio Garcia
1fbf72cb6b
docs(installation): add documentation for Prowler App installation ( #5883 )
2024-11-29 17:28:14 +01:00
Sergio Garcia
bcb2987f60
docs(architecture): add Prowler App architecture diagram ( #5914 )
2024-11-29 17:17:00 +01:00
Sergio Garcia
75b6d376c4
docs(usage): add documentation for Prowler App usage ( #5885 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2024-11-29 11:00:36 -04:00
Víctor Fernández Poyatos
9794b5cf27
fix(scan): fix deadlock on resource transactions during concurrent scans ( #5968 )
2024-11-29 15:41:03 +01:00
Víctor Fernández Poyatos
89a7128236
feat(Provider): add soft deletion for providers and related resources ( #5956 )
2024-11-29 15:26:14 +01:00
Sergio Garcia
c1d6021a3a
fix(k8s): handle Kubernetes kubeconfig content correctly ( #5939 )
2024-11-29 09:31:52 -04:00
StylusFrost
d5bb5e9287
fix(azure): containerregistry_not_publicly_accesible is not accurate ( #5938 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com >
2024-11-29 14:06:55 +01:00
Rubén De la Torre Vico
466ec0e66c
fix(rds): add default key value to RDS event ( #5961 )
2024-11-29 09:01:06 -04:00
Rubén De la Torre Vico
f0ebfcdd69
feat(prowler-policy): add missing permissions ( #5962 )
2024-11-29 09:00:05 -04:00
dependabot[bot]
fb15329aee
chore(deps): bump boto3 from 1.35.70 to 1.35.71 ( #5958 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-29 08:56:39 -04:00
Sergio Garcia
c35dc7ea4a
fix(api): add EKS ARN to K8s validation ( #5963 )
2024-11-29 08:55:58 -04:00
Pablo Lara
6dea923866
chore(codebase) Update/UI code base ( #5960 )
2024-11-29 06:54:38 +01:00
Pedro Martín
bcf1ef1d31
chore(check): remove custom_report_interface ( #5955 )
2024-11-28 13:06:06 -04:00
dependabot[bot]
9bf3171cfa
chore(deps): bump botocore from 1.35.70 to 1.35.71 ( #5944 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-28 11:57:35 -04:00
Prowler Bot
70e327a3c1
chore(regions_update): Changes in regions for AWS services ( #5947 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-28 09:11:29 -04:00
dependabot[bot]
af815287ed
chore(deps-dev): bump bandit from 1.7.10 to 1.8.0 ( #5943 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-28 09:11:17 -04:00
Pablo Lara
d5187b3099
chore(auth): restore auth file and move the server action to user file ( #5951 )
2024-11-28 12:55:31 +01:00
Pablo Lara
fd8d34e8bc
feat(ui:profile) add profile card ( #5948 )
2024-11-28 10:39:10 +01:00
Sergio Garcia
4ba1c0259f
fix(gcp): use session credentials to check if API is active ( #5935 )
2024-11-27 14:00:26 -04:00
Sergio Garcia
17a39f3305
fix(aws): exclude threat detection checks if category not present ( #5933 )
2024-11-27 11:54:59 -04:00
Víctor Fernández Poyatos
b69a0d5137
feat(overviews): Add API overview endpoints for findings and severity ( #5910 )
2024-11-27 15:51:05 +01:00
Pepe Fagoaga
f576b24fc8
fix(list_by_service): execute lambda if requested ( #5930 )
2024-11-27 15:32:57 +01:00
dependabot[bot]
f9864eeda0
chore(deps): bump boto3 from 1.35.66 to 1.35.70 ( #5929 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-27 10:16:36 -04:00
dependabot[bot]
03db9d3f74
chore(deps): bump botocore from 1.35.69 to 1.35.70 ( #5918 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-27 09:07:21 -04:00
Pablo Lara
677e20a1a4
feat(ui:overview) overview findings by status and severity ( #5925 )
2024-11-27 13:53:16 +01:00
Prowler Bot
4a8150d613
chore(regions_update): Changes in regions for AWS services ( #5922 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-27 08:51:19 -04:00
Pablo Lara
afd152c073
feat(ui:cleaning): tweaks for Prowler v5 ( #5913 )
2024-11-26 16:26:06 +01:00
Pablo Lara
d57db6c39e
feat(ui:overview): add new fail findings to date table ( #5906 )
2024-11-26 16:17:26 +01:00
Pablo Lara
0b2e1f1917
feat: configure codeql for ui repository ( #5912 )
2024-11-26 16:09:56 +01:00
dependabot[bot]
9a666891fd
chore(deps-dev): bump mkdocs-material from 9.5.45 to 9.5.46 ( #5894 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-26 09:45:31 -04:00
Mario Rodriguez Lopez
9c383baff3
fix(ec2): Change ec2_sg_high_risk_ports configurable parameter name ( #5904 )
2024-11-26 08:24:45 -04:00
Prowler Bot
3e9b4d34bd
chore(regions_update): Changes in regions for AWS services ( #5905 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-26 08:12:21 -04:00
dependabot[bot]
122ddd3e72
chore(deps-dev): bump coverage from 7.6.7 to 7.6.8 ( #5895 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-26 08:11:40 -04:00
dependabot[bot]
f61d800147
chore(deps): bump actions/checkout from 3 to 4 ( #5892 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-26 08:33:12 +01:00
dependabot[bot]
901806e98b
chore(deps): bump codecov/codecov-action from 4 to 5 ( #5891 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-26 08:32:51 +01:00
dependabot[bot]
920d6a8692
chore(deps): bump tj-actions/changed-files from 42 to 45 ( #5890 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-26 08:32:13 +01:00
Sergio Garcia
8eb2fbeb18
chore(version): update Prowler version ( #5884 )
2024-11-26 08:20:42 +01:00
dependabot[bot]
96e91c4d70
chore(deps): bump botocore from 1.35.66 to 1.35.69 ( #5897 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-26 08:20:16 +01:00
Pedro De Castro
94c6253c70
feat: Merge new components API and UI ( #5875 )
2024-11-25 18:37:00 +01:00
Pedro De Castro
04d99f1928
chore: Github Actions. Postgres env variables
2024-11-25 18:22:54 +01:00
Pedro De Castro
94a174c405
chore: Github Actions. Postgres env variables
2024-11-25 18:03:18 +01:00
Sergio Garcia
2e26750006
chore(gcp): update docstring of ADC credentials ( #5877 )
2024-11-25 13:01:42 -04:00
Pedro De Castro
e7e80944e9
chore: Github Actions. Naming and API env variables
2024-11-25 17:57:51 +01:00
Pedro De Castro
ff6c1e4127
chore: Change API license to match current Prowler license
2024-11-25 16:35:32 +01:00
Daniel Barranquero
a67e3f4c58
chore(aws): update fixers docstring ( #5874 )
2024-11-25 11:16:16 -04:00
Prowler Bot
a4c92ea0ea
chore(regions_update): Changes in regions for AWS services ( #5873 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-25 10:30:34 -04:00
Pedro De Castro
f4ffb42c91
chore(actions): Fix CodeQL ignore path syntax
2024-11-25 14:32:28 +01:00
Pedro De Castro
0ec9f37d2f
chore: Revert changes at the Pull Request template
2024-11-25 14:11:39 +01:00
dependabot[bot]
e4ecc98aae
chore(deps): bump trufflesecurity/trufflehog from 3.84.0 to 3.84.1 ( #5870 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-25 09:02:32 -04:00
Pedro De Castro
15f500f91a
chore(actions): Update Github Actions according to the new components
2024-11-25 14:02:01 +01:00
Pedro De Castro
5120c1d869
chore(ui): Merge UI repository
2024-11-25 13:18:47 +01:00
Pedro De Castro
725fcf80aa
chore(ui): Merge UI repository
2024-11-25 13:15:14 +01:00
Pedro De Castro
6fe8c81312
chore(api): Merge API repository
2024-11-25 13:12:54 +01:00
Pedro De Castro
befcdd3dfa
Update and remove MD files preparing repositories merge ( #99 )
2024-11-25 13:06:04 +01:00
Pedro De Castro
766fcf75cd
chore: Update and remove MD files preparing repositories merge ( #89 )
2024-11-25 12:55:01 +01:00
Pablo Lara
d2a1433ff8
Merge pull request #98 from prowler-cloud/PRWLR-5379-Overview-Page-Provider-Overview
...
feat(overview): overview page provider overview
2024-11-25 12:15:31 +01:00
Pablo Lara
cfd4339c41
feat: render all providers with or without data
2024-11-25 12:11:27 +01:00
Pablo Lara
365c3fe3ad
Merge pull request #97 from prowler-cloud/PRWLR-5450-Providers-Page-Add-Provider-Remove-Start-now
...
feat(providers) providers page add provider remove start now
2024-11-25 12:00:21 +01:00
Pablo Lara
f8af960909
feat: add graph in overview page with providers overview
2024-11-24 15:22:12 +01:00
Pablo Lara
121b24b7d1
chore: improve filtering component
2024-11-24 13:21:42 +01:00
Pablo Lara
c7b463d61e
chore: refresh scan's data with a button
2024-11-24 11:57:29 +01:00
Pablo Lara
520a5fc756
chore: changes for setup provider's workflow
2024-11-24 10:25:30 +01:00
Pablo Lara
f45edc18a9
chore: updating changes with prowler cloud ui
2024-11-24 09:27:18 +01:00
sansns-aws
53a4befb01
feat(aws): add MemoryDB service ( #5546 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2024-11-22 15:13:16 -04:00
StylusFrost
fee0bf3ea1
feat(azure): AI Search service check not publicly accesible ( #5846 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2024-11-22 13:28:44 -04:00
Daniel Barranquero
6811a22651
feat(documentdb): add new fixer documentdb_cluster_public_snapshot_fixer ( #5759 )
2024-11-22 11:14:24 -04:00
Daniel Barranquero
fe2dd69b08
feat(neptune): add new fixer neptune_cluster_public_snapshot_fixer ( #5749 )
2024-11-22 11:13:18 -04:00
dependabot[bot]
26a9748700
chore(deps): bump boto3 from 1.35.65 to 1.35.66 ( #5860 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-22 10:34:44 -04:00
Prowler Bot
cef0a54bc3
chore(regions_update): Changes in regions for AWS services ( #5863 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-22 10:34:24 -04:00
dependabot[bot]
553a51ddc2
chore(deps): bump trufflesecurity/trufflehog from 3.83.7 to 3.84.0 ( #5862 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-22 10:33:58 -04:00
Gary Mclean
61dc09d15d
Fix CIS details for new EFS Controls ( #5858 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2024-11-22 11:55:21 +01:00
dependabot[bot]
38f0f9a84d
chore(deps): bump aiohttp from 3.10.8 to 3.10.11 ( #85 )
...
Bumps [aiohttp](https://github.com/aio-libs/aiohttp ) from 3.10.8 to 3.10.11.
- [Release notes](https://github.com/aio-libs/aiohttp/releases )
- [Changelog](https://github.com/aio-libs/aiohttp/blob/master/CHANGES.rst )
- [Commits](https://github.com/aio-libs/aiohttp/compare/v3.10.8...v3.10.11 )
---
updated-dependencies:
- dependency-name: aiohttp
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-22 09:43:01 +01:00
dependabot[bot]
9b91ba2b91
chore(deps): bump azure-mgmt-cosmosdb from 9.6.0 to 9.7.0 ( #5834 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-21 14:22:28 -04:00
Víctor Fernández Poyatos
1c6d42e60d
feat(Overview): PRWLR-5433 Add /overviews/providers endpoint ( #88 )
...
* feat(Overview): PRWLR-5433 add overviews/providers views and serializers
* test(Overview): PRWLR-5433 add unit tests
* chore(Schema): update API schema
* feat(Overview): PRWLR-5433 order by -findings_failed by default
* test(Tenant): PRWLR-5433 fix unit test
2024-11-21 17:59:21 +01:00
dependabot[bot]
18d60c98d7
chore(deps): bump botocore from 1.35.65 to 1.35.66 ( #5850 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-21 12:40:45 -04:00
Daniel Barranquero
00054b5cd9
feat(ec2): add new fixer ec2_ebs_public_snapshot_fixer ( #5825 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2024-11-21 12:40:28 -04:00
Pedro Martín
24fc86cbb3
fix(severity): add enum for severity values ( #5856 )
2024-11-21 12:28:20 -04:00
Daniel Barranquero
861fb22257
feat(kms): add new fixer kms_cmk_not_deleted_unintentionally_fixer ( #5842 )
2024-11-21 11:45:55 -04:00
dependabot[bot]
7e14204be8
chore(deps): bump boto3 from 1.35.64 to 1.35.65 ( #5853 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-21 11:44:04 -04:00
Daniel Barranquero
09ea6ba6c4
feat(rds): add new fixer rds_instance_no_public_access_fixer ( #5794 )
2024-11-21 11:42:03 -04:00
dependabot[bot]
a83725fbed
chore(deps-dev): bump mkdocs-material from 9.5.44 to 9.5.45 ( #5852 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-21 10:34:11 -04:00
dependabot[bot]
34210cfc06
chore(deps): bump google-api-python-client from 2.153.0 to 2.154.0 ( #5851 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-21 09:22:35 -04:00
Pedro Martín
2e20d52030
feat(compliance): add ENSRD2022 for Azure and GCP ( #5746 )
2024-11-21 09:36:47 +01:00
sansns-aws
9b0b61ef02
feat(sgw): add storagegateway_fault_tolerance check ( #5570 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2024-11-20 15:10:44 -04:00
dependabot[bot]
0203aec9e0
chore(deps): bump botocore from 1.35.64 to 1.35.65 ( #5836 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-20 11:06:49 -04:00
Pablo Lara
6cdfddd2ff
Merge pull request #96 from prowler-cloud/PRWLR-5142-Prowler-V-release-final-tweaks-for-Findings-page
...
Tweaks for findings details and filters
2024-11-20 16:06:19 +01:00
Pablo Lara
a1074f1a81
feat: filters for findings are working
2024-11-20 15:56:21 +01:00
Pablo Lara
a90a3f12e7
fix: fix typo error
2024-11-20 15:46:09 +01:00
Pablo Lara
47d74a7742
fix: fix typo error
2024-11-20 15:45:32 +01:00
dependabot[bot]
862a4ad76c
chore(deps): bump slack-sdk from 3.33.3 to 3.33.4 ( #5837 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-20 10:17:30 -04:00
Sergio Garcia
4b7883c464
fix(kubernetes): filter apiGroup in permission checks ( #5829 )
2024-11-20 15:06:06 +01:00
dependabot[bot]
2bf835d3d2
chore(deps): bump boto3 from 1.35.63 to 1.35.64 ( #5835 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-20 09:29:24 -04:00
Prowler Bot
09733eb298
chore(regions_update): Changes in regions for AWS services ( #5839 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-20 09:29:03 -04:00
Pablo Lara
7fd53c1bc3
feat: tweaks filters
2024-11-20 13:58:45 +01:00
Víctor Fernández Poyatos
ad949632b4
feat(Provider, Scan): PRWLR-5405 Add daily schedule scan for added Providers ( #87 )
...
* feat: PRWLR-5405 add django-celery-beat dep
* fix(Scan): PRWLR-5405 fix scan status update in real-time
* feat(Celery-beat): PRWLR-5405 add django-celery-beat resources
* feat(Provider,Beat): PRWLR-5405 add daily scheduled scan for each new provider
* chore(Scan): PRWLR-5405 change default sort parameter
* fix(Migrations): PRWLR-5405 fix meta fields
* test(Tenants): PRWLR-5405 fix integration tests
* chore: fix typo on .env.example
2024-11-20 13:10:45 +01:00
Pedro Martín
096749a455
refactor(arn): fine tune arn and resources id for unknown values ( #5841 )
2024-11-20 12:56:51 +01:00
Pablo Lara
ebc96bed06
chore: spacing tweaks
2024-11-20 10:16:56 +01:00
Pablo Lara
c4a3a1e0b5
chore: move filters outside of the table
2024-11-20 10:15:14 +01:00
Pablo Lara
07beb094fb
chore:color tweaks
2024-11-20 09:57:31 +01:00
Pablo Lara
280a4df4f2
chore: put in a row the links for remediation
2024-11-20 09:50:47 +01:00
Pablo Lara
ccc2aecbd4
chore: color tweaks
2024-11-20 09:46:04 +01:00
Pablo Lara
a2cc3e913d
chore: finding details tweaks
2024-11-20 08:31:29 +01:00
Pedro Martín
b06e549d81
refactor(arn): refactor arn for unknown resources ( #5712 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2024-11-19 16:21:43 -04:00
Pablo Lara
b28cfede8c
chore: remove container class and style tweaks for status finding badge
2024-11-19 17:36:56 +01:00
Sergio Garcia
a5f5967bb2
fix(aws): exclude member accounts in IAM Root Credentials check ( #5813 )
2024-11-19 15:06:12 +01:00
Sergio Garcia
7a4f5f34f7
fix(kubernetes): validate seccomp profile at pod and container levels ( #5814 )
2024-11-19 15:04:30 +01:00
Rubén De la Torre Vico
e33b081dc6
chore(iam): add exception for public policy in EKS service ( #4759 )
2024-11-19 09:42:56 -04:00
Prowler Bot
c8fdaa3923
chore(regions_update): Changes in regions for AWS services ( #5824 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-19 09:24:49 -04:00
dependabot[bot]
8a491bcf7d
chore(deps): bump trufflesecurity/trufflehog from 3.83.6 to 3.83.7 ( #5819 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-19 09:24:32 -04:00
Daniel Barranquero
f5e71db5e0
fix(rds): fix typo error in rds_snapshots_public_access_fixer test ( #5826 )
2024-11-19 09:23:52 -04:00
Pablo Lara
73c5764495
chore: add new component for finding status and add sorting to the findings table
2024-11-19 13:05:22 +01:00
Pablo Lara
e84fd1fd65
fix: change types because changed in the API specs.
2024-11-19 12:39:35 +01:00
dependabot[bot]
456f79d80c
chore(deps): bump botocore from 1.35.63 to 1.35.64 ( #5818 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-19 09:52:56 +01:00
Sergio Garcia
9f728833a7
chore(iam): add missing service catalog permissions ( #5816 )
2024-11-19 09:21:20 +01:00
dependabot[bot]
f01ce849dc
chore(deps): bump aiohttp from 3.10.10 to 3.10.11 ( #5815 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-18 18:35:48 -04:00
Hugo Pereira Brito
572d5a1f2e
fix(wafv2): only list resources for regional Web ACLs ( #5811 )
2024-11-18 12:09:23 -04:00
Sergio Garcia
c69571abcd
feat(aws): add new check iam_root_credentials_management_enabled ( #5801 )
2024-11-18 16:59:35 +01:00
dependabot[bot]
8ddb9fbb84
chore(deps): bump boto3 from 1.35.60 to 1.35.63 ( #5809 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-18 11:27:20 -04:00
dependabot[bot]
193b79c221
chore(deps-dev): bump coverage from 7.6.6 to 7.6.7 ( #5795 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-18 10:36:03 -04:00
Pedro Martín
a25a6148f2
docs(gcp): improve docstrings ( #5716 )
2024-11-18 15:19:15 +01:00
Pedro Martín
0a63e707c2
docs(kubernetes): improve docstrings for methods ( #5717 )
2024-11-18 15:18:57 +01:00
dependabot[bot]
f53a887291
chore(deps): bump botocore from 1.35.61 to 1.35.63 ( #5797 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-18 09:37:53 -04:00
Prowler Bot
ca35510d74
chore(regions_update): Changes in regions for AWS services ( #5802 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-18 09:37:25 -04:00
Pablo Lara
776b41e866
Merge pull request #95 from prowler-cloud/PRWLR-5363-Compliance-Overview
...
Compliance overview - first iteration -
2024-11-18 14:17:08 +01:00
Pablo Lara
985efc67cc
feat: first iteration of compliance dashboard is working
2024-11-18 14:05:36 +01:00
Pedro Martín
5d7c8d9cd2
docs(aws): improve docstrings ( #5714 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-11-18 12:17:05 +01:00
Pedro Martín
0d01790b22
docs(azure): improve docstrings ( #5715 )
2024-11-18 10:46:34 +01:00
Pablo Lara
223073e3df
feat: allow compliance data selection by choosing a scan
2024-11-18 09:07:07 +01:00
Pablo Lara
783db5c3dc
feat: allow compliance data selection by choosing a scan
2024-11-18 08:21:54 +01:00
Pablo Lara
eb40369c30
chore: render an message if there is no data for compliances
2024-11-18 07:45:19 +01:00
Pablo Lara
e92bbffc53
chore: delete old dummy data for compliances dashboard
2024-11-16 21:13:41 +01:00
Pablo Lara
d1424b3c9c
fix: resolve breaking changes caused by updated API specs
2024-11-16 15:57:28 +01:00
Pablo Lara
1d0cc950a1
Merge pull request #94 from prowler-cloud/PRWLR-4887-Invitations-users-integration
...
Invitations/Users integration page
2024-11-16 15:04:01 +01:00
Pablo Lara
01bc745478
chore: replace 'delete' with 'revoke' in invitations
2024-11-16 12:59:30 +01:00
Pablo Lara
aedc8de964
Merge branch 'main' into PRWLR-4887-Invitations-users-integration
2024-11-16 12:52:11 +01:00
Pablo Lara
3f5f50fe38
chore: add defaultValue prop to the CustomInput component
2024-11-16 12:50:22 +01:00
Pablo Lara
4fd5d868c6
chore: change label for revoke invitations
2024-11-16 12:49:33 +01:00
Pablo Lara
e21386c1d5
chore: Show the error in the after the invitation token field
2024-11-16 12:48:23 +01:00
dependabot[bot]
78b518e22b
chore(deps-dev): bump coverage from 7.6.4 to 7.6.6 ( #5793 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-15 10:23:35 -05:00
Pepe Fagoaga
17af724995
chore(labeler): Add compliance ( #5790 )
2024-11-15 10:16:03 -05:00
Víctor Fernández Poyatos
aa8c46d232
feat(ComplianceOverview): PRWLR-5149 Add compliance overview endpoints ( #84 )
...
* chore(Fixtures): PRWLR-5149 move development fixtures to dev directory
* feat(Compliance): PRWLR-5149 add compliance templates and basic logic on scans
* chore(Compliance): PRWLR-5149 make default compliance requirements pass if no findings
* feat(Compliance): PRWLR-5149 add model
* feat(Compliance): PRWLR-5149 add serializers
* feat(Compliance): PRWLR-5149 add filters
* feat(Compliance): PRWLR-5149 add views and urls
* feat(Scan): PRWLR-5149 add compliance storing during scans
* chore(Compliance, Scan): PRWLR-5149 refactor for performance
* chore(Compliance): PRWLR-5149 add docstrings
* feat(ComplianceOverview): PRWLR-5149 add new view for summary
* chore: PRWLR-5149 update resource_names on all models to follow JSON:API spec
* feat(ComplianceOverview): PRWLR-5149 add indexes to model for performance
* feat(ComplianceOverview): PRWLR-5149 refactor views to summarize by default
* chore(ComplianceOverview): PRWLR-5149 improve readability
* chore(ComplianceOverview): PRWLR-5149 set default ordering to compliance_id
* feat(Compliance): PRWLR-5149 add check status values count for each requirement
* chore: PRWLR-5149 update API spec
* chore(Provider,Scan): PRWLR-5149 disable scanner_args
* feat(Scan): PRWLR-5149 retrieve all regions from provider when generating compliance
* feat(Scan): PRWLR-5149 improve efficiency on scan task
* chore: PRWLR-5149 update API spec
* test(Compliance): PRWLR-5149 add unit tests
* test(Scan): PRWLR-5149 update scan task unit tests
* fix(ComplianceOverview): PRWLR-5149 fix filter
* test(ComplianceOverview): PRWLR-5149 add unit tests
* chore: PRWLR-5149 update API spec
* feat(Compliance): PRWLR-5149 add manual findings to compliance results
* chore(ComplianceOverview): PRWLR-5149 add fixture
* chore: PRWLR-5149 update poetry lock
* fix(Build): fix dockerfile and resources fixture
* chore(Schema): update API schema
2024-11-15 15:39:27 +01:00
dependabot[bot]
c9898d6d01
chore(deps): bump codecov/codecov-action from 4 to 5 ( #5783 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-15 09:35:54 -05:00
Prowler Bot
259538d5e4
chore(regions_update): Changes in regions for AWS services ( #5784 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-15 09:33:24 -05:00
dependabot[bot]
4785feae0e
chore(deps): bump botocore from 1.35.60 to 1.35.61 ( #5780 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-15 09:33:05 -05:00
Pedro Martín
8be83fc632
fix(compliance): use SubscriptionID instead of name for Azure CIS ( #5786 )
2024-11-15 14:40:33 +01:00
Pedro Martín
005d251106
fix(iam): use get to get the key ( #5785 )
2024-11-15 14:37:36 +01:00
dependabot[bot]
b6c8adfc64
chore(deps): bump azure-storage-blob from 12.23.1 to 12.24.0 ( #5767 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-14 12:01:27 -05:00
Hugo Pereira Brito
7a711095cd
feat(kinesis): add new check kinesis_stream_data_retention_period ( #5547 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2024-11-14 12:01:01 -05:00
Daniel Barranquero
b0bb348480
feat(rds): add new fixer rds_snapshots_public_access_fixer ( #5773 )
2024-11-14 10:40:33 -05:00
Hugo Pereira Brito
c1b050b8b9
feat(firehose): add new check firehose_stream_encrypted_at_rest ( #5635 )
...
Co-authored-by: Sergio Garcia <hello@mistercloudsec.com >
2024-11-14 10:27:17 -05:00
Víctor Fernández Poyatos
28c7e803ac
feat(azure): Add get_regions method for provider ( #5774 )
2024-11-14 15:58:12 +01:00
Sergio Garcia
7a57922891
chore(api): ensure correct deployment ( #79 )
...
* chore(api): ensure correct deployment
* add hadolint
* chore: revision
* chore: revision
* chore: revision
* chore: revision
* typo
2024-11-14 15:11:53 +01:00
Prowler Bot
919acfd548
chore(regions_update): Changes in regions for AWS services ( #5771 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-14 08:57:26 -05:00
dependabot[bot]
1586cdae5e
chore(deps): bump google-api-python-client from 2.152.0 to 2.153.0 ( #5763 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-14 08:57:09 -05:00
Pepe Fagoaga
cb74dae296
refactor(aws): Rename get_regions and validate partition ( #5772 )
2024-11-14 13:02:32 +01:00
Pablo Lara
58068b34bf
feat: invitations are working - first iteration
2024-11-14 11:55:11 +01:00
dependabot[bot]
3608aa3536
chore(deps): bump boto3 from 1.35.58 to 1.35.60 ( #5770 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-14 10:01:57 +01:00
Pablo Lara
1dc4bd313a
feat: invitation workflow is working as expected
2024-11-14 08:08:08 +01:00
dependabot[bot]
c59b08c40b
chore(deps): bump botocore from 1.35.59 to 1.35.60 ( #5765 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-13 19:11:52 -05:00
Rubén De la Torre Vico
73361a1cea
chore(ec2): add name from image information to status_extended ( #5755 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2024-11-13 14:30:58 -05:00
Pedro Martín
794268cec5
feat(gcp): add get regions method ( #5756 )
2024-11-13 19:11:42 +01:00
Pedro Martín
06b41cf8e6
refactor(azure): get locations with self session ( #5751 )
2024-11-13 19:00:18 +01:00
Pedro Martín
a419b4b898
feat(aws): get regions by partition ( #5748 )
2024-11-13 18:52:50 +01:00
Pablo Lara
890bd12e99
feat: workflow to invite an user is working
2024-11-13 18:52:06 +01:00
Adrián Jesús Peña Rodríguez
bf04261af6
feat(provider-groups): PRWLR-4725 add provider-groups system ( #82 )
...
* feat(provider-groups): PRWLR-4725 add provider-groups system
* feat(provider-groups): PRWLR-4725 add provider-groups migrations
* feat(provider-groups): PRWLR-4725 improve provider-groups models
2024-11-13 18:17:08 +01:00
Víctor Fernández Poyatos
f3dce4f7a7
fix(User): PRWLR-5356 allow deleting and updating users ( #83 )
2024-11-13 17:35:56 +01:00
Pablo Lara
29dfd303db
feat: adding workflow to send invites to the user
2024-11-13 17:18:32 +01:00
Sergio Garcia
521b3ded9c
fix(Dockerfile): ensure correct deployment ( #92 )
...
* fix(Dockerfile): ensure correct deployment
* chore(dockerfile): Add NEXT_TELEMETRY_DISABLED=1
---------
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-11-13 16:15:33 +01:00
Rubén De la Torre Vico
622bc48688
fix(ec2): add default value to Name key for image information ( #5747 )
2024-11-13 15:22:52 +01:00
dependabot[bot]
c0659f712a
chore(deps): bump botocore from 1.35.58 to 1.35.59 ( #5740 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-13 09:20:49 -05:00
Sergio Garcia
796983a530
fix(gcp): scan only ACTIVE projects ( #5743 )
2024-11-13 15:18:42 +01:00
Pablo Lara
e4395ddd55
Merge pull request #91 from prowler-cloud/PRWLR-4734-Users-Page-displays-the-users-for-the-current-membership
...
Users page displays the users for the current membership
2024-11-13 14:41:02 +01:00
Pablo Lara
6d05ad9815
chore: remove unused console log
2024-11-13 14:32:10 +01:00
Pablo Lara
0290b837f2
feat: user table is working as expected
2024-11-13 14:31:33 +01:00
Pablo Lara
833bf0520c
chore: remove old files and add new ones related to users
2024-11-13 14:25:31 +01:00
Pablo Lara
239826ce1f
chore: remove old files and add new ones related to users
2024-11-13 14:24:44 +01:00
Prowler Bot
8dc042e594
chore(regions_update): Changes in regions for AWS services ( #5744 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-13 08:13:35 -05:00
dependabot[bot]
e881a0f274
chore(deps): bump google-api-python-client from 2.151.0 to 2.152.0 ( #5742 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-13 08:13:18 -05:00
Adrián Jesús Peña Rodríguez
b1547a6d28
fix(migrations): add missing operations ( #66 )
...
* fix(migrations): add missing operations
* fix(migrations): remove redundant base_manager_name
2024-11-13 12:08:14 +01:00
Pablo Lara
4603e6b46d
chore: invert severity filter list order
2024-11-13 10:07:14 +01:00
Víctor Fernández Poyatos
26050bad5b
build(Dockerfile): remove g++ from dockerfile and update prowler ( #81 )
2024-11-13 09:46:16 +01:00
Pablo Lara
810cc6c2f8
Merge pull request #89 from prowler-cloud/PRWLR-5141-Prowler-V-release-tweaks-scan-page-v3
...
Tweaks scan page v3
2024-11-13 08:26:48 +01:00
Pablo Lara
8fb6f5b11d
chore: add GitHub action to run the build
2024-11-13 08:22:58 +01:00
Pablo Lara
db36cdf379
fix: fix the build, and run prettier
2024-11-13 08:21:13 +01:00
dependabot[bot]
5641160177
chore(deps): bump boto3 from 1.35.57 to 1.35.58 ( #5741 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-12 18:17:31 -05:00
Hugo Pereira Brito
dca49b1972
feat(aws): add new service firehose ( #5620 )
...
Co-authored-by: MrCloudSec <hello@mistercloudsec.com >
2024-11-12 17:41:46 -05:00
Rubén De la Torre Vico
b8b60e6bc5
feat(prowler-check-kreator): ProwlerChecKreator first version ( #5099 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-12 15:00:09 -05:00
dependabot[bot]
9d65b49cb4
chore(deps): bump azure-mgmt-network from 27.0.0 to 28.0.0 ( #5703 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rubén De la Torre Vico <ruben@prowler.com >
Co-authored-by: Sergio Garcia <38561120+MrCloudSec@users.noreply.github.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-12 13:37:51 -05:00
Sergio Garcia
f1334190d8
fix(aws): remove cloudwatch_log_group_no_critical_pii_in_logs check ( #5736 )
2024-11-12 12:50:47 -05:00
dependabot[bot]
c434181dfd
chore(deps): bump azure-mgmt-containerservice from 32.1.0 to 33.0.0 ( #5706 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-12 11:43:21 -05:00
dependabot[bot]
f3cfacae9a
chore(deps): bump msgraph-sdk from 1.11.0 to 1.12.0 ( #5722 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-12 10:26:10 -05:00
Víctor Fernández Poyatos
3efdfad37d
fix(ResourceTagMapping): PRWLR-5271 set CASCADE for resource field ( #80 )
2024-11-12 15:59:44 +01:00
sansns-aws
77c7986797
feat(aws): Update check metadata with logging category ( #5639 )
2024-11-12 09:26:52 -05:00
Prowler Bot
2ac716d6db
chore(regions_update): Changes in regions for AWS services ( #5732 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-12 09:25:12 -05:00
dependabot[bot]
daee5fb4d2
chore(deps): bump microsoft-kiota-abstractions from 1.6.0 to 1.6.2 ( #5720 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-12 13:46:19 +01:00
Pablo Lara
7fc06a2740
Merge pull request #87 from prowler-cloud/PRWLR-5183-test-new-prowler-app
...
chore(ui): ensure correct deployments
2024-11-12 08:42:02 +01:00
dependabot[bot]
d587d40451
chore(deps): bump botocore from 1.35.57 to 1.35.58 ( #5721 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-11 19:32:42 -05:00
dependabot[bot]
f0cd88bd0e
chore(deps): bump trufflesecurity/trufflehog from 3.83.5 to 3.83.6 ( #5723 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-11 19:32:13 -05:00
Sergio
65c197d9ae
revert package-lock.json
2024-11-11 16:38:43 -05:00
Sergio
a3060ed295
chore(ui): ensure correct deployments
2024-11-11 16:28:46 -05:00
dependabot[bot]
aca17904fa
chore(deps-dev): bump mkdocs-git-revision-date-localized-plugin from 1.2.9 to 1.3.0 ( #5704 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-11 14:24:40 -05:00
dependabot[bot]
0157802ac1
chore(deps-dev): bump pytest-randomly from 3.15.0 to 3.16.0 ( #5705 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-11 12:12:44 -05:00
sansns-aws
10766d708d
feat(mq): add mq_broker_not_publicly_accessible check ( #5604 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-11 12:12:21 -05:00
Mario Rodriguez Lopez
f231d8b080
feat(appsync): add new check appsync_field_level_logging_enabled ( #5602 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-11-11 10:23:13 -05:00
dependabot[bot]
590a7b2697
chore(deps): bump boto3 from 1.35.55 to 1.35.57 ( #5719 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-11 10:04:32 -05:00
Hugo Pereira Brito
3c3421644f
fix(docs): provider typo ( #5713 )
2024-11-11 09:21:54 -05:00
Pedro Martín
f1f68da25d
feat(jira): add jira integration ( #5629 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-11-11 15:00:31 +01:00
Prowler Bot
48df7fdebf
chore(regions_update): Changes in regions for AWS services ( #5709 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-11 08:51:17 -05:00
dependabot[bot]
f2e8691bf4
chore(deps): bump botocore from 1.35.56 to 1.35.57 ( #5702 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-11 08:50:28 -05:00
Pablo Lara
2378b01ea9
chore: apply tweaks to scan table
2024-11-11 13:39:37 +01:00
Pablo Lara
60c2c409b0
fix: apply prettier to fix an error coming from main branch
2024-11-11 13:02:03 +01:00
Matt Johnson
344d54155a
docs: Update contact.md with new Slack join URL ( #5671 )
2024-11-11 12:06:16 +01:00
Pablo Lara
1c84ceda2e
Merge branch 'main' into PRWLR-5141-Prowler-V-release-tweaks-scan-page-v3
2024-11-11 12:05:09 +01:00
Pablo Lara
1a6f8fc504
Merge pull request #84 from prowler-cloud/dev-company-name
...
fix(company_name): Getting the value from form. Avoid send empty values
2024-11-11 11:58:48 +01:00
dependabot[bot]
8ecffa3039
chore(deps): bump trufflesecurity/trufflehog from 3.83.4 to 3.83.5 ( #5708 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-11 10:11:40 +01:00
Pedro De Castro
39fbdab93c
fix(company_name): Getting the value from form. Avoid send empty values
2024-11-09 19:50:54 +01:00
dependabot[bot]
efbbfc1c68
chore(deps): bump azure-mgmt-resource from 23.1.1 to 23.2.0 ( #5684 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-08 15:18:01 -05:00
dependabot[bot]
dc68c1b955
chore(deps): bump msgraph-sdk from 1.8.0 to 1.11.0 ( #5687 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-08 14:09:14 -05:00
Mario Rodriguez Lopez
5de13bdd8a
fix(ec2): unique finding per Security Group in high risk ports check ( #5697 )
2024-11-08 14:08:27 -05:00
dependabot[bot]
5d0f498425
chore(deps): bump botocore from 1.35.55 to 1.35.56 ( #5683 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-08 12:41:05 -05:00
Mario Rodriguez Lopez
716558ffcb
feat(servicecatalog): Add new check servicecatalog_portfolio_shared_within_organization_only ( #5632 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-11-08 12:22:13 -05:00
dependabot[bot]
23929b3e68
chore(deps): bump dash from 2.18.1 to 2.18.2 ( #5682 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-08 11:50:17 -05:00
dependabot[bot]
a5612abc8c
chore(deps-dev): bump safety from 3.2.8 to 3.2.9 ( #5681 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-08 10:54:18 -05:00
Prowler Bot
78dddc1e03
chore(regions_update): Changes in regions for AWS services ( #5694 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-08 10:53:57 -05:00
dependabot[bot]
76020d4d47
chore(deps): bump alive-progress from 3.1.5 to 3.2.0 ( #5689 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-08 09:54:57 -05:00
Pablo Lara
1802caf25f
Merge branch 'main' into PRWLR-5141-Prowler-V-release-tweaks-scan-page-v3
2024-11-08 13:27:05 +01:00
Pedro De Castro
7c2cd453eb
Finding detail card
...
Finding detail card
2024-11-08 12:50:24 +01:00
Pedro De Castro
a07a0b05bc
feat: services view
...
feat: services view
2024-11-08 12:48:35 +01:00
dependabot[bot]
b0af1390b5
chore(deps): bump trufflesecurity/trufflehog from 3.83.3 to 3.83.4 ( #5692 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-08 11:48:59 +01:00
Pablo Lara
d0d8de9028
chore: add a default name for scans if it's empty by the user
2024-11-08 11:37:55 +01:00
Pablo Lara
30ed31cebe
Merge pull request #82 from prowler-cloud/PRWLR-5141-Prowler-V-release-tweaks-scan-page-v2
...
Create workflow to launch a scan
2024-11-08 11:21:39 +01:00
dependabot[bot]
bc3cd43126
chore(deps): bump slack-sdk from 3.33.1 to 3.33.3 ( #5688 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-08 11:19:02 +01:00
Pablo Lara
bec7644798
feat: render the task result in scan details
2024-11-08 11:17:43 +01:00
Pablo Lara
327b4f4bba
chore: style tweaks for sheet component
2024-11-08 10:42:31 +01:00
Pablo Lara
39f1796da6
feat: scan details can be shared now in the URL
2024-11-08 10:36:28 +01:00
Pablo Lara
fdb644fc6d
chore: WIP
2024-11-08 09:56:58 +01:00
Pablo Lara
df73234234
feat: the new workflow to launch a scan is almost done
2024-11-08 09:41:48 +01:00
Pepe Fagoaga
95dc87a91b
chore(partitions): add env to create partitions ( #68 )
...
* fix(partitions): Use calendar months
* fix: unit to get partition datetime
* fix: imports
* fix: format
* chore: merge
* fix(partitions): Only allow month as unit
* fix(uuid7_end): default months to 1
* test: fix test_uuid7_end
* test: reset expected dt to start of month
* fix: tests uuid utils
* docs: we only allow months
---------
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2024-11-08 09:34:32 +01:00
dependabot[bot]
087dae07d8
chore(deps-dev): bump coverage from 7.6.1 to 7.6.4 ( #5686 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-08 09:04:20 +01:00
Pablo Lara
5801857883
feat: dynamic provider selector for scan launch
2024-11-08 08:45:27 +01:00
dependabot[bot]
0baf4fb224
chore(deps): bump boto3 from 1.35.29 to 1.35.55 ( #5685 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-08 08:15:43 +01:00
Pablo Lara
1c37b58177
delete: remove old component
2024-11-08 08:11:24 +01:00
dependabot[bot]
0f8ea48f2f
chore(deps): bump azure-mgmt-containerservice from 32.0.0 to 32.1.0 ( #5664 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-07 15:49:57 -05:00
dependabot[bot]
ec207c50ce
chore(deps): bump microsoft-kiota-abstractions from 1.3.3 to 1.6.0 ( #5662 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-07 14:54:13 -05:00
dependabot[bot]
b59b40b822
chore(deps): bump azure-keyvault-keys from 4.9.0 to 4.10.0 ( #5660 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-07 13:26:51 -05:00
dependabot[bot]
aa51045329
chore(deps-dev): bump mkdocs-material from 9.5.39 to 9.5.44 ( #5659 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-07 12:36:15 -05:00
Drew Kerrigan
d8d831c2a0
fix(): remove escaped newlines when reading cetificates for JWT signing and verification ( #77 )
...
* fix(): remove escaped newlines when reading cetificates for JWT signing and verification
* fix(): updating dev credentials in README
2024-11-07 18:13:51 +01:00
dependabot[bot]
1a9f854063
chore(deps): bump google-api-python-client from 2.147.0 to 2.151.0 ( #5661 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-07 11:42:31 -05:00
Mario Rodriguez Lopez
6bdcb509e1
feat(appsync): add new check appsync_graphql_apis_no_api_key_authentication ( #5591 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-11-07 11:42:07 -05:00
Pablo Lara
260f007e5b
chore: adding a select component to choose a provider to launch a scan
2024-11-07 17:02:23 +01:00
Sergio Garcia
ce1e9de104
chore(aws): deprecate glue_etl_jobs_logging_enabled check ( #5670 )
2024-11-07 10:25:32 -05:00
dependabot[bot]
2471bc569a
chore(deps): bump botocore from 1.35.29 to 1.35.55 ( #5663 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-07 10:22:14 -05:00
Daniel Barranquero
d0ef75d8d9
feat(dms): add new check dms_replication_task_target_logging_enabled ( #5631 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-07 10:19:44 -05:00
Sergio Garcia
aa79a289ce
fix(aws): update EKS check in compliance frameworks ( #5672 )
2024-11-07 15:56:55 +01:00
dependabot[bot]
0340ab9570
chore(deps-dev): bump pytest-cov from 5.0.0 to 6.0.0 ( #5666 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-07 09:17:18 -05:00
thomscode
a2929f2efb
fix(mutelist): set arguments while loading providers ( #5653 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-11-07 09:12:29 -05:00
Prowler Bot
bf4db86dec
chore(regions_update): Changes in regions for AWS services ( #5655 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-07 08:22:22 -05:00
Daniel Barranquero
a339dafcc6
fix(guardduty): fix guardduty_is_enabled_fixer test ( #5668 )
2024-11-07 08:21:49 -05:00
dependabot[bot]
f376516aad
chore(deps-dev): bump vulture from 2.12 to 2.13 ( #5665 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-07 08:20:54 -05:00
dependabot[bot]
816b49fac5
chore(deps-dev): bump black from 24.8.0 to 24.10.0 ( #5667 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-07 12:55:16 +01:00
Pepe Fagoaga
6851350093
fix(lock): Use detect-secrets from package not repo ( #5656 )
2024-11-07 11:30:46 +01:00
Pablo Lara
69528cbe66
Merge pull request #81 from prowler-cloud/PRWLR-5141-Prowler-V-release-tweaks-scan-page
...
chore: remove unused icon
2024-11-07 10:52:24 +01:00
Pablo Lara
c268e0613c
chore: remove unused icon
2024-11-07 10:51:42 +01:00
Pablo Lara
714e96cc6e
Merge pull request #80 from prowler-cloud/PRWLR-5141-Prowler-V-release-tweaks-scan-page
...
Add scan details for demo purposes
2024-11-07 10:38:32 +01:00
Pablo Lara
89dd56a0ff
chore: add scan details for demo purposes
2024-11-07 10:32:52 +01:00
Víctor Fernández Poyatos
0271fe5ca0
feat(User): Add GET /users ( #76 )
...
* feat(Membership): implement include parameter for users in memberships
* feat(User): refactor userviewset
* chore(Schema): update API schema
* feat(User): add filters
2024-11-07 10:24:00 +01:00
Pedro De Castro
89d7189a0f
fix(findings): Add resource id to props
2024-11-07 08:05:16 +01:00
Pedro De Castro
fca3d138c5
feat: Finding detail
2024-11-07 08:01:38 +01:00
Pedro De Castro
354bd90cfa
fix: remove ui folder from prev project
2024-11-07 07:14:04 +01:00
Pedro De Castro
c1f86cb502
fix: remove console log and linter errors
2024-11-07 06:38:34 +01:00
Pedro De Castro
fd2fdbe2f9
feat: services view
2024-11-07 06:31:18 +01:00
Daniel Barranquero
d5873c0437
feat(dms): add new check dms_replication_task_source_logging_enabled ( #5627 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-06 15:50:48 -05:00
Mario Rodriguez Lopez
a2dba30869
feat(servicecatalog): Add new service servicecatalog ( #5618 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-06 12:02:14 -05:00
Mario Rodriguez Lopez
0662dff13f
feat(appsync): Add new service AppSync ( #5589 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-06 11:50:27 -05:00
Daniel Barranquero
0ae26bddfc
feat(dms): add new check dms_endpoint_redis_tls_enabled ( #5583 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-11-06 11:03:13 -05:00
Sergio Garcia
43efabef6c
fix(docker): add g++ to Dockerfile for presidio-analyzer compatibility ( #5645 )
2024-11-06 10:45:16 -05:00
Pablo Lara
58b5d3cf83
Merge pull request #77 from prowler-cloud/PRWLR-5141-Prowler-V-release-final-touches-for-Launch-Scan-page
...
Prwlr 5141 prowler v release final touches for launch scan page
2024-11-06 15:57:02 +01:00
Pablo Lara
87fb26d271
chore: twaks for scan page
2024-11-06 15:54:15 +01:00
Pablo Lara
05271bc110
fix: sign-in and sign-up buttons have again loading state
2024-11-06 15:42:23 +01:00
Víctor Fernández Poyatos
6f1aa6a1b1
fix(Finding): PRWLR-5179 Fix finding's scan filters and related UUID utils ( #75 )
...
* fix(Finding): PRWLR-5179 fix scan_id filters and related logic
* test(uuid_utils): PRWLR-5179 refactor unit tests
* chore: PRWLR-5179 update API spec
2024-11-06 15:06:29 +01:00
Pablo Lara
c7a8a62cf2
Merge pull request #76 from prowler-cloud/PRWLR-5109-Set-Up-Providers-Credentials-Workflow
...
Set up providers credentials workflow
2024-11-06 14:33:38 +01:00
Pablo Lara
2448f9b029
chore: build is working as expected
2024-11-06 14:29:10 +01:00
Pablo Lara
e90e10587b
chore: remove unused console log
2024-11-06 14:06:14 +01:00
Pablo Lara
b11a33d3da
feat: reset credentials for gcp, azure and kubernetes if test connection fail
2024-11-06 13:46:03 +01:00
Pablo Lara
73f7167b63
chore: replace Link component to use it from NextJS and not from NextUI
2024-11-06 11:03:12 +01:00
Pablo Lara
05e3be418d
fix: the test connection button from actions in the providers table is working as expected now
2024-11-06 10:55:40 +01:00
Adrián Jesús Peña Rodríguez
b09fd48d61
fix(auth): PRWLR-5180 change user_id to sub ( #74 )
2024-11-06 10:53:40 +01:00
dependabot[bot]
e73fc14f62
chore(deps): bump trufflesecurity/trufflehog from 3.83.2 to 3.83.3 ( #5647 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-06 10:13:09 +01:00
Pablo Lara
c62ab62bf9
feat: improve custom button and add prop to use it asLink when needed
2024-11-06 09:34:18 +01:00
Pablo Lara
44b0208846
chore: handle API error from test connection
2024-11-06 08:47:56 +01:00
Pablo Lara
e444e39fd0
feat: add helper function to monitor task state during execution
2024-11-06 08:29:39 +01:00
Sergio Garcia
89fe8fa8e2
chore(version): update Prowler version ( #5642 )
2024-11-06 08:11:13 +01:00
Pablo Lara
76c6065a80
fix: avoid app crashed when there is no data to render
2024-11-06 07:45:57 +01:00
Drew Kerrigan
634ef2e599
fix(docs): Update misc tutorial categories example ( #5644 )
2024-11-05 15:37:20 -05:00
Sergio Garcia
4efb70a508
chore(README): update summary table ( #5633 )
2024-11-05 13:24:46 -05:00
Pepe Fagoaga
c3ae0aa873
fix(connection): return Connection on generic exception ( #5636 )
2024-11-05 12:24:18 -05:00
Sergio Garcia
a109cd2816
fix(gcp): do not require organization id to get projects ( #5637 )
2024-11-05 12:24:07 -05:00
sansns-aws
78fb540bbb
feat(rds): add rds_cluster_protected_by_backup_plan check ( #5638 )
2024-11-05 11:30:45 -05:00
sansns-aws
5b543bf058
feat(aws): Update check metadata with redudancy category ( #5640 )
2024-11-05 11:27:24 -05:00
Pablo Lara
f96777bcf9
chore: handle data when executing the request
2024-11-05 16:35:48 +01:00
Pablo Lara
4a3ff78636
feat: aws providers can be added via role
2024-11-05 16:19:07 +01:00
Daniel Barranquero
9802fc141a
feat(dms): add new check dms_endpoint_mongodb_authentication_enabled ( #5578 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-11-05 09:58:55 -05:00
Víctor Fernández Poyatos
4ab119d6c9
feat(Invitation): PRWLR-4722 Add invitations endpoints ( #71 )
...
* feat(Invitation): PRWLR-4722 add model and enum
* feat(Invitation): PRWLR-4722 add serializers
* feat(Invitation): PRWLR-4722 add filters
* feat(Invitation): PRWLR-4722 update token field constraints
* feat(Invitation): PRWLR-4722 add serializers
* feat(Invitation): PRWLR-4722 add views, url and custom logic
* feat(Invitation): PRWLR-4722 update unique constraint in model
* feat(Invitation): PRWLR-4722 update serializer validation error messages
* fix(Invitation): PRWLR-4722 fix view logic
* feat(User): PRWLR-4722 add invitation_code query param and logic to create user view
* fix(Invitation): PRWLR-4722 fix invitation creation tenant filter
* chore: PRWLR-4722 add comments
* feat(Invitation): PRWLR-4722 add email filter to view
* fix(Utils): PRWLR-4722 fix datetime functions
* fix(User): PRWLR-4722 fix bug when creating users
* fix(Tests): PRWLR-4722 adapt unit and integration tests
* test(db-utils): PRWLR-4722 add new unit tests
* test(Invitation): PRWLR-4722 add unit tests
* test(Invitation): PRWLR-4722 add unit tests
* fix(Invitation): PRWLR-4722 fix views and serializers
* feat(Invitation): PRWLR-4722 refactor invitation validation and tests
* chore: PRWLR-4722 update API spec
* test(Invitation): PRWLR-4722 add more unit tests
* feat(Invitation): PRWLR-4722 refactor invitation urls
* chore: PRWLR-4722 update API spec
2024-11-05 15:30:53 +01:00
Daniel Barranquero
ea038085ba
feat(dms): add new check dms_endpoint_neptune_iam_authorization_enabled ( #5549 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-11-05 08:43:57 -05:00
Pablo Lara
f2d207d1d4
fix: fix build error ( #73 )
2024-11-05 14:43:19 +01:00
Sergio Garcia
6ff1c436a0
fix(aws): handle global WAFv2 ACLs in service ( #5628 )
2024-11-05 08:42:20 -05:00
Adrián Jesús Peña Rodríguez
4bab3e262c
feat(serializers): add role_session_name description ( #70 )
...
* feat(serializers): add role_session_name description
* feat(serializers): update spec
2024-11-05 13:27:20 +01:00
Pablo Lara
e0c2720d31
chore: hidden credentials inputs for cloud providers
2024-11-05 07:07:53 +01:00
Rubén De la Torre Vico
1b50fdba28
feat(secretsmanager): add new check secretsmanager_secret_rotated_periodically ( #5450 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-04 16:08:38 -05:00
Sergio Garcia
230d2571f9
fix(k8s): do not raise error when unable to list roles ( #5630 )
2024-11-04 13:47:18 -05:00
sansns-aws
6c818cbcc3
fix(rds): Check Aurora clusters properly for backup plan ( #5594 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-04 13:20:22 -05:00
Mario Rodriguez Lopez
694cee1afb
feat(kafka): add new check kafka_connector_in_transit_encryption_enabled ( #5577 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-11-04 12:46:32 -05:00
Mario Rodriguez Lopez
bc89f4383e
feat(ecs): add new check ecs_task_set_no_assign_public_ip ( #5603 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-04 11:49:22 -05:00
Sergio Garcia
84d4e4a604
fix(aws): solve invalid ECR Registry ARN ( #5622 )
2024-11-04 11:47:49 -05:00
Hugo Pereira Brito
5fbf8ddfe9
feat(transfer): add new check transfer_server_encryption_in_transit ( #5590 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-11-04 11:30:18 -05:00
Víctor Fernández Poyatos
e3ae44d033
fix(Provider): PRWLR-5153 fix provider initialization when testing connection ( #69 )
2024-11-04 17:20:31 +01:00
Prowler Bot
ddcd06d9be
chore(regions_update): Changes in regions for AWS services ( #5617 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-04 11:20:16 -05:00
Pepe Fagoaga
5214a37d6d
chore: add dependabot labels ( #5624 )
2024-11-04 10:45:53 -05:00
sansns-aws
a1f4ae73cf
feat(aws): Update check metadata with category ( #5607 )
2024-11-04 10:45:36 -05:00
Prowler Bot
d0bc37c281
chore(regions_update): Changes in regions for AWS services ( #5600 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-04 10:24:55 -05:00
Prowler Bot
85393e6f78
chore(regions_update): Changes in regions for AWS services ( #5613 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-11-04 10:20:42 -05:00
Sergio Garcia
e3104ae5ee
feat(aws): add new check cloudwatch_log_group_no_critical_pii_in_logs ( #5494 )
2024-11-04 10:20:35 -05:00
Sergio Garcia
be523c11c8
fix(aws): do not flag cross-service confused deputy as public ( #5593 )
2024-11-04 15:51:52 +01:00
Hugo Pereira Brito
797b627695
feat(aws): add new service transfer ( #5585 )
2024-11-04 08:55:47 -05:00
dependabot[bot]
5ac670ed4f
chore(deps): bump trufflesecurity/trufflehog from 3.82.13 to 3.83.2 ( #5611 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-11-04 08:51:15 -05:00
Pablo Lara
e04ba94ace
chore: Button for Start scan now is working now as the last step in the workflow
2024-11-04 13:37:10 +01:00
Pablo Lara
9a9481a88e
chore: set buttons for start scan now or schedule it
2024-11-04 13:21:45 +01:00
Pablo Lara
3609043e4c
chore: remove connected param in the last step
2024-11-04 12:53:55 +01:00
Pedro Martín
bf9111397b
feat(mutelist): add mute_finding method ( #5563 )
2024-11-04 12:05:03 +01:00
Víctor Fernández Poyatos
3de2c47c56
fix(Scan): PRWLR-5145 Update resource storing when performing a scan ( #67 )
...
* chore(Resource): PRWLR-5145 remove region from unique constraint
* feat(Resource): PRWLR-5145 update how resources are stored during a scan
* test(Task): PRWLR-5145 add unit tests for scan task resources
2024-11-04 11:05:02 +01:00
Pedro Martín
17dd9de6d8
fix(main): set attributes on load_checks_to_execute ( #5606 )
2024-11-04 09:05:02 +01:00
Pablo Lara
8ca21bb92e
chore: add alias by default if provider alias is empty when add a provider
2024-11-04 07:46:44 +01:00
Pablo Lara
258d18112c
feat: add action to getTask and implement the last step in the workflow - launch scan
2024-11-03 11:31:47 +01:00
Pablo Lara
ff9d5442ab
chore: update with the last step - workflow component
2024-11-03 10:39:10 +01:00
Pablo Lara
4a3b767002
chore: remove the old test connection component
2024-11-03 10:07:11 +01:00
Pablo Lara
ee2d7ca79e
feat: add test connection form
2024-11-02 10:08:00 +01:00
Pablo Lara
89c441ba58
feat: add test connection form
2024-11-02 09:10:30 +01:00
Pablo Lara
c3c775786c
feat: add credentials for kubernetes
2024-11-01 09:30:43 +01:00
Pablo Lara
33ae08be65
feat: add credentials for GCP
2024-10-31 18:38:12 +01:00
Pablo Lara
593bce5155
feat: add credentials for AWS and Azure are working nicely
2024-10-31 18:27:28 +01:00
Adrián Jesús Peña Rodríguez
31c035eb52
fix(migrations): PRWLR-4869 add missing error_messages field ( #65 )
2024-10-31 17:49:14 +01:00
Pedro Martín
e4400ecf10
fix(checks_loader): solve issue related with checks from compliance ( #5601 )
2024-10-31 17:28:23 +01:00
Víctor Fernández Poyatos
fc19fbac68
feat(ProviderSecret): PRWLR-5128 Implement role assumption provider credentials for AWS ( #64 )
...
* feat(ProviderSecret): PRWLR-5128 add role assumption logic
* feat(Provider): PRWLR-5128 add static kwargs to Prowler provider initialization
* chore: PRWLR-5128 update API spec
* test(ProviderSecret): PRWLR-5128 add new unit tests
* chore: PRWLR-5128 update API spec
2024-10-31 16:25:20 +01:00
Adrián Jesús Peña Rodríguez
c188028de5
feat(auth): PRWLR-4944 add recommended fields to JWTs ( #62 )
...
* feat(auth): PRWLR-4944 add recommended fields to JWTs
* feat(auth): PRWLR-4944 remove extra validations
* feat(auth): PRWLR-4944 fix format
2024-10-31 16:24:23 +01:00
Víctor Fernández Poyatos
43f9a5b1d0
fix(Task): fix serializer to convert None to null when decoding ( #63 )
2024-10-31 16:21:40 +01:00
Pablo Lara
c81cb04bd0
chore: create separate component for azure credentials
2024-10-31 09:12:31 +01:00
Pablo Lara
d7452238d6
chore: create separate component for aws credentials
2024-10-31 09:08:23 +01:00
Pablo Lara
fb99733a1e
chore: add form for azure credentials
2024-10-31 08:51:44 +01:00
Pablo Lara
7c4f34bb6c
feat: custom add credentials page
2024-10-31 08:08:20 +01:00
sansns-aws
cbba5acc31
chore(aws): cleanup tests in dynamodb and cw ( #5588 )
2024-10-31 07:59:33 +01:00
Pablo Lara
9882cd53cf
chore: add credentials type to the url if exists
2024-10-31 06:48:58 +01:00
Pablo Lara
052b882195
chore: client validation when select a provider type
2024-10-31 06:41:36 +01:00
Pablo Lara
3a8053c3c6
chore: remove the old form to add providers
2024-10-31 05:53:59 +01:00
Mario Rodriguez Lopez
046f1b2e5f
feat(guardduty): add new check guardduty_eks_runtime_monitoring_enabled ( #5582 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-30 15:01:50 -05:00
sansns-aws
9e8f88c889
feat(elbv2): add elbv2_nlb_tls_termination_enabled check ( #5550 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-30 15:00:55 -05:00
sansns-aws
2d73b9b8f4
feat(elbv2): add elbv2_cross_zone_load_balancing_enabled check ( #5548 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-30 14:42:56 -05:00
sansns-aws
9a7190c9c2
chore(aws): cleanup tests ( #5592 )
2024-10-30 14:04:05 -05:00
sansns-aws
a2b6bdc461
feat(ecs): Add ecs_task_definitions_logging_block_mode check ( #5526 )
2024-10-30 12:02:36 -05:00
Pablo Lara
d0b5992146
feat: redirect on add credentials page if there is no provider associated
2024-10-30 17:30:29 +01:00
Pablo Lara
37343750cd
chore: add form for add-credentials-providers
2024-10-30 17:26:34 +01:00
Hugo Pereira Brito
056d482023
feat(glue): add new check glue_etl_jobs_logging_enabled ( #5581 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-30 10:56:46 -05:00
Sergio Garcia
239b248935
feat(aws): add new check bedrock_agent_guardrail_enabled ( #5509 )
2024-10-30 09:41:44 -05:00
Sergio Garcia
5bd394dffe
fix(gcp): enforce correct severity levels in CloudSQL PostgreSQL log_min_messages ( #5571 )
2024-10-30 09:41:06 -05:00
Prowler Bot
1195b75acc
chore(regions_update): Changes in regions for AWS services ( #5580 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-30 09:03:02 -05:00
Daniel Barranquero
fee70bc9b4
chore(rds): improve metadata title and description for check rds_instance_transport_encrypted ( #5584 )
2024-10-30 09:02:03 -05:00
Pablo Lara
f1a951b2e4
chore: add form for add-credentials-providers
2024-10-30 15:01:48 +01:00
Sergio Garcia
01716d9020
feat(aws): add new check cloudwatch_log_group_not_publicly_accessible ( #5495 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2024-10-30 08:50:17 -05:00
Pedro Martín
b87e6d20d7
feat(s3): add test_connection method ( #5332 )
2024-10-30 11:45:22 +01:00
Pedro Martín
11592634f2
fix(check): add .value to severity enum ( #5579 )
2024-10-30 11:44:42 +01:00
Sergio Garcia
bc308de571
feat(SecurityHub): add test_connection method ( #5350 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2024-10-30 10:02:13 +01:00
Pablo Lara
6783da028c
WIP
2024-10-30 09:49:11 +01:00
Pablo Lara
ee7ba35068
WIP
2024-10-30 06:18:21 +01:00
Pablo Lara
886e3aefb0
WIP
2024-10-30 04:09:19 +01:00
Pablo Lara
ccc80d5ce4
WIP
2024-10-30 04:03:51 +01:00
Pablo Lara
e468a91468
WIP
2024-10-30 03:47:07 +01:00
Hugo Pereira Brito
4bee4d482a
feat(s3): add new check s3_bucket_event_notifications_enabled ( #5562 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-29 15:38:38 -05:00
Hugo Pereira Brito
82ec3e8779
feat(s3): add new check s3_multi_region_access_point_public_access_block ( #5552 )
...
Co-authored-by: Sergio <sergio@prowler.com >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-29 14:56:56 -05:00
sansns-aws
85777546e8
feat(autoscaling): Add autoscaling_group_capacity_rebalance_enabled check ( #5523 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-29 14:51:21 -05:00
Kay Agahd
ec69d8073a
fix(aws): findings in IAM policies were not reported ( #5560 )
2024-10-29 14:29:29 -05:00
Sergio Garcia
e6053ce218
feat(slack): add test_connection method ( #5340 )
2024-10-29 18:14:06 +01:00
Sergio Garcia
f01910e4f2
feat(gcp): add --organization-id flag ( #5524 )
2024-10-29 18:11:53 +01:00
sansns-aws
8848cadc0a
chore(aws): Cleanup RDS and S3 tests ( #5569 )
2024-10-29 12:06:12 -05:00
sansns-aws
2c7d71a0d9
chore(glue): Cleanup tests ( #5568 )
2024-10-29 12:06:03 -05:00
sansns-aws
dcd1b1121a
chore(codebuild): Cleanup tests ( #5567 )
2024-10-29 11:31:19 -05:00
Hugo Pereira Brito
8a6e222f7a
feat(wafv2): set us-east-1 region for global acls ( #5558 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-29 10:16:48 -05:00
Pepe Fagoaga
01045c973f
chore(partitions): add env to create partitions ( #61 )
...
* chore(partitions): add env to create partitions
* chore(partitions): rename env to DJANGO_MANAGE_DB_PARTITIONS
* chore(partitions): use True|False as value
* fix: begin comment with uppercase
2024-10-29 16:16:09 +01:00
Pablo Lara
5a8d6087f9
wIP
2024-10-29 16:00:09 +01:00
Prowler Bot
a4c39c25f1
chore(regions_update): Changes in regions for AWS services ( #5559 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-29 08:55:45 -05:00
Rubén De la Torre Vico
628d50cf0d
chore(azure): deprecate AzureGermanCloud ( #5561 )
2024-10-29 08:54:55 -05:00
Pablo Lara
f0c663aca8
feat: add new component - workflow to set up providers
2024-10-29 12:22:03 +01:00
Pablo Lara
0a801d29cd
feat: add new component - navigation header
2024-10-29 10:01:46 +01:00
Pablo Lara
52526800f9
feat: add new component - navigation header
2024-10-29 09:52:03 +01:00
sansns-aws
f70e3deade
feat(aws): add DirectConnect service and checks ( #5522 )
2024-10-28 16:48:22 -05:00
sansns-aws
14f06d6497
chore(elbv2): cleanup tests ( #5553 )
2024-10-28 15:45:01 -05:00
Sergio Garcia
3c6e06837c
fix(dependabot): security update werkzeug ( #5551 )
2024-10-28 13:49:47 -05:00
Sergio Garcia
e778444d1d
fix(PyPi): solve detect-secrets dependency ( #5514 )
2024-10-28 11:36:19 -05:00
NIRBHAY KUMAR
a4cca188ef
chore(slack): add text argument by best practice ( #5541 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-28 11:19:05 -05:00
Hugo Pereira Brito
76ee608ef8
fix: added s3 origin comprobation in cloudfront_distributions_s3_origin_non_existent_bucket ( #5543 )
2024-10-28 10:01:03 -05:00
Prowler Bot
7af5c82371
chore(regions_update): Changes in regions for AWS services ( #5540 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-28 15:16:51 +01:00
Adrián Jesús Peña Rodríguez
98ec0532b2
fix(serializers): PRWLR-4869 hide email address information when it already exists ( #60 )
...
* fix(serializers): PRWLR-4869 hide email address information when it already exists
* fix(serializers): PRWLR-4869 fix ruff format error
2024-10-28 15:11:20 +01:00
MrSecure
172530153c
feat(color): add --no-color flag ( #5368 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-10-28 12:23:21 +01:00
Pedro Martín
0114d0462f
feat(check): add check methods ( #5462 )
2024-10-28 12:22:34 +01:00
Pepe Fagoaga
6502330512
chore(providers): Remove get_output_mapping ( #5484 )
2024-10-28 11:40:31 +01:00
Prowler Bot
9bf9ebe4fd
chore(regions_update): Changes in regions for AWS services ( #5542 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-28 11:17:35 +01:00
Sergio Garcia
406d5864ee
fix(kubernetes): handle input kube config file ( #5502 )
2024-10-28 08:51:37 +01:00
dependabot[bot]
674a38e80f
chore(deps): bump werkzeug from 3.0.4 to 3.0.6 ( #59 )
...
Bumps [werkzeug](https://github.com/pallets/werkzeug ) from 3.0.4 to 3.0.6.
- [Release notes](https://github.com/pallets/werkzeug/releases )
- [Changelog](https://github.com/pallets/werkzeug/blob/main/CHANGES.rst )
- [Commits](https://github.com/pallets/werkzeug/compare/3.0.4...3.0.6 )
---
updated-dependencies:
- dependency-name: werkzeug
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-28 08:50:45 +01:00
Sergio Garcia
0f9ebecbb7
fix(aws): review checks with wrong attributes ( #5503 )
2024-10-28 08:45:03 +01:00
Pablo Lara
753c128357
chore: remove unused console log
2024-10-28 07:45:07 +01:00
Hugo Pereira Brito
0331af02ac
feat(mq): add new check mq_broker_logging_enabled ( #5483 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-25 14:33:35 -07:00
Sergio Garcia
64fb823276
fix(aws): review checks in compliance frameworks ( #5513 )
2024-10-25 18:32:46 +02:00
Prowler Bot
33f2c80a78
chore(regions_update): Changes in regions for AWS services ( #5533 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-25 09:07:51 -07:00
dependabot[bot]
84ce7a8b52
chore(deps): bump trufflesecurity/trufflehog from 3.82.12 to 3.82.13 ( #5531 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-24 16:13:42 -07:00
Hugo Pereira Brito
1a6b2eaa7d
feat(mq): add new check mq_broker_active_deployment_mode ( #5433 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-24 16:13:11 -07:00
Hugo Pereira Brito
df373279e9
feat(mq): add new check mq_broker_cluster_deployment_mode ( #5481 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-24 12:00:13 -07:00
Prowler Bot
6a09171851
chore(regions_update): Changes in regions for AWS services ( #5519 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-24 07:54:54 -07:00
sansns-aws
93d257941b
feat(aws): add new check fsx_windows_file_system_multi_az ( #5491 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-23 14:07:57 -07:00
sansns-aws
28f8915f6f
feat(aws): Add Fault Tolerance Checks ( #5488 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-23 14:07:43 -07:00
Daniel Barranquero
fef99fd5fb
feat(backup): add new check backup_recovery_point_encrypted ( #5426 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-23 11:16:43 -07:00
sansns-aws
1e1c7cc1ce
feat(aws): add new check redshift_cluster_multi_az_enabled ( #5492 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-23 10:32:25 -07:00
sansns-aws
7e7d86f14a
feat(aws): add new check dynamodb_accelerator_cluster_multi_az ( #5493 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-23 10:16:56 -07:00
Prowler Bot
41cdc2bcc7
chore(regions_update): Changes in regions for AWS services ( #5511 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-23 07:55:04 -07:00
dependabot[bot]
c41866db38
chore(deps): bump trufflesecurity/trufflehog from 3.82.11 to 3.82.12 ( #5508 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-22 16:27:05 -07:00
Mario Rodriguez Lopez
f36d23c9a7
feat(elb): add new check elb_desync_mitigation_mode ( #5500 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-22 11:08:13 -07:00
Hugo Pereira Brito
8ac28fbcfd
feat(waf): add new check waf_global_webacl_with_rules ( #5469 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-22 10:26:22 -07:00
Hugo Pereira Brito
7f41ae7385
feat(waf): add new check waf_global_webacl_logging_enabled ( #5479 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-22 09:41:00 -07:00
Prowler Bot
4c5f3a212c
chore(regions_update): Changes in regions for AWS services ( #5499 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-22 07:54:22 -07:00
Adrián Jesús Peña Rodríguez
a4b16dd1e9
fix(Finding): PRWLR-5098 change the size of the UID field to 300 characters ( #58 )
2024-10-22 11:58:49 +02:00
Pablo Lara
13ff0e08bb
Merge pull request #75 from prowler-cloud/PRWLR-4982-Create-a-finding-component-integrate-with-API
...
Prwlr 4982 create a finding component integrate with api
2024-10-22 11:09:33 +02:00
Pablo Lara
9a9a6410e1
feat: render findings first iteration
2024-10-22 11:07:00 +02:00
Hugo Pereira Brito
ffa29f2f6e
feat(waf): add new check waf_global_rulegroup_not_empty ( #5467 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-21 12:53:06 -07:00
Pablo Lara
af267fede4
chore: WIP
2024-10-21 20:30:26 +02:00
Rubén De la Torre Vico
2ef9e27ee3
fix(kinesis): add missing init file ( #5490 )
2024-10-21 10:26:36 -07:00
Mario Rodriguez Lopez
d4b93d79b5
feat(elb): add new check elb_ssl_listeners_use_acm_certificate ( #5424 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-21 10:15:12 -07:00
Daniel Barranquero
d00afbdc87
feat(apigateway): add new check apigateway_restapi_tracing_enabled ( #5470 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-21 10:14:38 -07:00
Hugo Pereira Brito
5b0868e26c
feat(waf): add new check waf_global_rule_with_conditions ( #5465 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-21 10:14:15 -07:00
Mario Rodriguez Lopez
415c319208
feat(iam): add new check iam_policy_cloudshell_admin_not_attached ( #5437 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-21 07:41:58 -07:00
Daniel Barranquero
1aca7a754c
feat(apigateway): add new check apigateway_restapi_cache_encrypted ( #5448 )
2024-10-21 07:38:55 -07:00
Prowler Bot
147c3c455b
chore(regions_update): Changes in regions for AWS services ( #5477 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-21 07:29:06 -07:00
Pablo Lara
cc0923b3c7
chore: update FindingProps to the latest version
2024-10-21 12:02:07 +02:00
Pablo Lara
5f7a3d0bcf
chore: update FindingProps to the latest version
2024-10-21 11:55:02 +02:00
Rubén De la Torre Vico
d997ebb2cc
feat(athena): add new check athena_workgroup_logging_enabled ( #5468 )
2024-10-18 16:40:57 -04:00
Mario Rodriguez Lopez
50cb79ee2f
feat(aws): Add new checks ses_identities/glue_data_catalogs/secretsmanager _not_publicly_accessible ( #5471 )
2024-10-18 16:40:12 -04:00
johannes-engler-mw
2b34fd39f6
feat(containerregistry): add new check containerregistry_uses_private_link ( #5375 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-18 16:15:52 -04:00
Mario Rodriguez Lopez
0c82137834
feat(eventbridge): add new check eventbridge_global_endpoint_event_replication_enabled ( #5396 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-18 15:36:39 -04:00
Hugo Pereira Brito
413b86e7cf
chore(wafv2): migrated testing from magicmock to moto ( #5464 )
2024-10-18 14:55:49 -04:00
Víctor Fernández Poyatos
ed427c1352
chore(Scan, Finding): PRWLR-5056 Adjust finding information storing when performing a scan ( #57 )
...
* chore: PRWLR-5056 update Prowler dependency
* feat(Scan): PRWLR-5056 adapt scan task code to sdk breaking changes
* test(Scan): PRWLR-5056 fix unit tests
* chore: PRWLR-5056 update fixtures
* chore: PRWLR-5056 update Prowler dependency
2024-10-18 13:56:07 +02:00
Pepe Fagoaga
23a20a582e
chore(findings): add new properties ( #5463 )
2024-10-18 13:36:41 +02:00
Pepe Fagoaga
8411fcb5fc
chore(severities): Use enum ( #5460 )
2024-10-18 11:39:48 +02:00
Pedro Martín
41e585643b
feat(scan): add mutelist and config file to scan ( #5310 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-10-18 10:34:46 +02:00
dependabot[bot]
aca5824240
chore(deps): bump trufflesecurity/trufflehog from 3.82.9 to 3.82.11 ( #5458 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-18 09:29:38 +02:00
Pedro Martín
e65b346afd
feat(exceptions): modify custom exceptions ( #5451 )
2024-10-18 09:28:58 +02:00
Pepe Fagoaga
98cb954f74
refactor(finding): Add metadata object ( #5447 )
...
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-18 09:26:50 +02:00
Hugo Pereira Brito
778edd5fec
feat(mq): add new check mq_broker_auto_minor_version_upgrades ( #5431 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2024-10-17 14:33:42 -04:00
Rubén De la Torre Vico
06deda7e5f
feat(opensearch): add new check opensearch_domain_master_nodes_fault_tolerant ( #5393 )
2024-10-17 14:32:42 -04:00
Víctor Fernández Poyatos
a8825c385b
feat(User): PRWLR-4988 Make users' email case insensitive ( #56 )
...
* feat(User): PRWLR-4988 make User.email case insensitive
* test(User): PRWLR-4988 update unit tests
* feat(User): PRWLR-4988 include email validation in serializer
2024-10-17 19:22:20 +02:00
Adrián Jesús Peña Rodríguez
26a00a14df
feat(datasync): add datasync service and check datasync_task_logging_enabled ( #5444 )
2024-10-17 13:07:18 -04:00
Sergio Garcia
12abea371d
fix(bedrock): add filtering and handle different ARNs ( #5453 )
2024-10-17 12:53:18 -04:00
Víctor Fernández Poyatos
6d69a192f3
fix(Finding, Resource): PRWLR-5057 Fix include query parameter for /findings and /resources ( #55 )
...
* fix(Finding, Resource): PRWLR-5057 fix include query parameter
* fix(Finding, Resource): PRWLR-5057 optimize requests
* test(Finding, Resource): PRWLR-5057 add unit tests for include
2024-10-17 18:07:06 +02:00
Rubén De la Torre Vico
a17cf1bbb6
feat(secretsmanager): add new check secretsmanager_secret_unused ( #5428 )
2024-10-17 10:24:12 -04:00
Mario Rodriguez Lopez
5d51942768
feat(fsx): add new check fsx_file_system_copy_tags_to_backups_enabled ( #5417 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-17 10:23:21 -04:00
Pepe Fagoaga
3122d727a5
chore(aws): Add AWSSessionTokenExpired ( #5378 )
2024-10-17 15:43:27 +02:00
Mario Rodriguez Lopez
e5f89d5bc7
feat(fsx): add new check fsx_file_system_copy_tags_to_volumes_enabled ( #5414 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-17 09:40:42 -04:00
Pedro Martín
efc60d2bf4
feat(scan): add status argument ( #5443 )
2024-10-17 15:27:27 +02:00
Mario Rodriguez Lopez
f7fd355dc1
refactor(acm): Change certificates from list to dict in acm_service ( #5420 )
2024-10-17 09:16:21 -04:00
Prowler Bot
7bd402bf4e
chore(regions_update): Changes in regions for AWS services ( #5445 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-17 08:49:42 -04:00
Pedro Martín
b69962efb6
feat(scan): add excluded_checks and services ( #5442 )
2024-10-17 10:25:07 +02:00
Pedro Martín
2b8b223403
feat(k8s): Add kubeconfig content authentication ( #5397 )
...
Co-authored-by: Sergio <sergio@prowler.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-10-17 09:56:51 +02:00
Pedro Martín
a024ab31a0
feat(scan): add arguments ( #5427 )
2024-10-17 09:29:02 +02:00
Hugo Pereira Brito
9969e271ed
feat(waf): add new check waf_regional_rulegroup_not_empty ( #5415 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-16 15:22:24 -04:00
Sergio Garcia
f1449b66d6
feat(k8s): Add kubeconfig content static authentication ( #5370 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-10-16 18:52:15 +02:00
Hugo Pereira Brito
3c0f360244
feat(waf): add new check waf_regional_rule_with_conditions ( #5411 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-16 12:41:57 -04:00
Sergio Garcia
6e3c008a89
chore(aws): improve logic for determining if resources are publicly accessible ( #5195 )
2024-10-16 12:10:38 -04:00
Pablo Lara
a694b422cf
WIP
2024-10-16 18:03:29 +02:00
Hugo Pereira Brito
9d97b1a7ee
feat(waf): add new check waf_regional_webacl_with_rules ( #5392 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-16 11:58:03 -04:00
Hugo Pereira Brito
d07f1e982a
feat(wafv2): add new check wafv2_webacl_with_rules ( #5376 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-16 11:44:41 -04:00
Hugo Pereira Brito
402e0e3107
feat(wafv2): add new check wafv2_webacl_rule_logging_enabled ( #5362 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-16 10:19:19 -04:00
dependabot[bot]
c5716bf9b6
chore(deps): bump trufflesecurity/trufflehog from 3.82.8 to 3.82.9 ( #5421 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-16 09:03:57 -04:00
Víctor Fernández Poyatos
60c75b4814
chore(Finding): PRWLR-5059 Remove default filtering and change default ordering ( #54 )
2024-10-16 13:41:41 +02:00
Pepe Fagoaga
bfdff563e6
chore(aws): Set scan_unused_services False by default ( #5425 )
2024-10-16 13:19:10 +02:00
Pedro Martín
4be83f240a
feat(azure): add provider id validation inside test_connection ( #5391 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-10-16 12:02:40 +02:00
Pablo Lara
efd2805602
feat: render finding table
2024-10-16 11:07:57 +02:00
Pablo Lara
b3c905c95a
chore: add Findings props type
2024-10-16 07:09:30 +02:00
Pablo Lara
868615fa89
chore: clean finding folder
2024-10-16 07:08:22 +02:00
Pablo Lara
08937a9a66
Merge pull request #74 from prowler-cloud/PRWLR-4883-Integrate-authentication-endpoint-client-validation
...
Prevent sending default empty string for company name during sign-up
2024-10-16 06:17:12 +02:00
Pablo Lara
ce205dc95d
fix: prevent sending default empty string for company name during sign-up
2024-10-16 06:06:37 +02:00
Daniel Barranquero
45c32abcdf
feat(autoscaling): add new check autoscaling_group_multiple_instance_types ( #5325 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-15 15:36:48 -04:00
Hugo Pereira Brito
c0ac4c7c30
feat(MQ): add new service MQ ( #5419 )
2024-10-15 14:32:28 -04:00
Daniel Barranquero
c90cb3712b
feat(cloudwatch): add new check cloudwatch_alarm_actions_alarm_state_configured ( #5404 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-15 10:51:02 -04:00
Daniel Barranquero
23c3884ab7
feat(cloudwatch): add new check cloudwatch_alarm_actions_enabled ( #5416 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-15 09:50:50 -04:00
Mario Rodriguez Lopez
a491e39a18
feat(fsx): Add new service FSx ( #5412 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-15 09:01:25 -04:00
Rubén De la Torre Vico
78d2fb9fd5
feat(codebuild): add new check codebuild_report_group_export_encrypted ( #5384 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-15 08:39:18 -04:00
Rubén De la Torre Vico
aac6038565
feat(codebuild): add new check codebuild_project_logging_enabled ( #5365 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-15 07:42:45 -04:00
Prowler Bot
0449d6372c
chore(regions_update): Changes in regions for AWS services ( #5413 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-15 07:41:07 -04:00
Pedro Martín
bc1e6c0626
feat(azure): add authentication method from static credentials ( #5358 )
2024-10-15 09:37:17 +02:00
Pedro Martín
c1d061ef70
feat(gcp): add provider id validation inside test_connection ( #5381 )
2024-10-15 09:04:17 +02:00
Mario Rodriguez Lopez
9788fe4236
feat(macie): add new check macie_automated_sensitive_data_discovery_enabled ( #5390 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-14 17:58:44 -04:00
Mario Rodriguez Lopez
7fd0798b7c
feat(opensearch): add new check opensearch_service_domains_fault_tolerant_data_nodes ( #5366 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-14 14:49:46 -04:00
Rubén De la Torre Vico
82ab439e9a
feat(codebuild): add new check codebuild_project_s3_logs_encrypted ( #5363 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-14 14:40:04 -04:00
Sergio Garcia
54280ee2dc
fix(iam): update AWS Support policy ( #5399 )
2024-10-14 13:58:42 -04:00
Sergio Garcia
434460b978
fix(organizations): no finding for access denied in listing policies ( #5400 )
2024-10-14 13:58:30 -04:00
Daniel Barranquero
808fa96407
feat(autoscaling): add new check autoscaling_group_launch_configuration_requires_imdsv2 ( #5356 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-14 13:16:02 -04:00
Hugo Pereira Brito
2c0c1f7d09
refactor(WAF): Rename WAF to WAFRegional and Add Global WAF Service ( #5389 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-14 11:49:26 -04:00
Pablo Lara
53b04879a0
Merge pull request #69 from prowler-cloud/dependabot/pip/django-5.0.9
...
chore(deps): bump django from 5.0.8 to 5.0.9
2024-10-14 17:46:48 +02:00
Pablo Lara
91e7906a0b
Merge pull request #73 from prowler-cloud/PRWLR-4777-Create-Scan-page-integration-scan-endpoint-4
...
Create scan page integration scan endpoint
2024-10-14 17:43:49 +02:00
Pablo Lara
7f73e26016
fix: showing the error for company name when try to sign up
2024-10-14 17:42:30 +02:00
Pablo Lara
d0b54d1950
feat: detail view for scans has been implemented
2024-10-14 17:30:32 +02:00
Pablo Lara
da9429351f
chore: replace disable for isDisable prop
2024-10-14 17:28:22 +02:00
Rubén De la Torre Vico
037e40f8e4
feat(config): add new check config_recorder_using_aws_service_role ( #5357 )
2024-10-14 11:19:35 -04:00
Daniel Barranquero
e0ed891fc4
feat(autoscaling): add new check autoscaling_group_launch_configuration_no_public_ip ( #5359 )
2024-10-14 11:17:36 -04:00
Daniel Barranquero
dfc8e3e38f
feat(autoscaling): add new check autoscaling_group_using_ec2_launch_template ( #5346 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-14 10:55:19 -04:00
Sergio Garcia
aef4a68c46
feat(bedrock): add checks for guardrails configuration and log encryption ( #5385 )
2024-10-14 10:49:58 -04:00
Pablo Lara
c0a9bd14aa
feat: integrate Sheet component with ScanDetail view via getScan
2024-10-13 08:56:03 +02:00
Pablo Lara
0585428029
feat: getScan detail view first iteration
2024-10-12 14:19:18 +02:00
Pablo Lara
bfb591977e
feat: there is no DELETE method for scans for now
2024-10-12 07:43:27 +02:00
Sergio Garcia
3c929bd68f
feat(aws): add checks for Bedrock logging configuration and CloudTrail LLM Jacking detection ( #5314 )
2024-10-11 15:01:45 -04:00
Jonny
444d820f98
chore(lambda): update obsolete lambda runtime ( #5379 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-11 12:05:04 -04:00
Hugo Pereira Brito
304bb27502
feat(waf): change WAF Classic web_acls from list to dict ( #5380 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-11 11:05:37 -04:00
Mario Rodriguez Lopez
a6db526eec
feat(elasticbeanstalk): add new check elasticbeanstalk_enhanced_health_reporting_enabled ( #5348 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-11 10:27:48 -04:00
Sergio Garcia
3ace44979a
chore(aws): add more cases to public IAM resource policies ( #5336 )
2024-10-11 10:27:23 -04:00
Pablo Lara
1fff7ef1d3
feat: add PATCH method for scans
2024-10-11 16:18:15 +02:00
Víctor Fernández Poyatos
351132fb5b
feat(ProviderSecret): PRWLR-4102 Implement /providers/secrets CRUD ( #53 )
...
* feat(Credential): PRWLR-4102 add model definition
* feat(Credential): PRWLR-4102 add serializers, views, urls and decorator
* feat(ProviderSecret): PRWLR-4102 rework credentials into provider secrets
* feat(ProviderSecret): PRWLR-4102 rework urls, views, serializers
* feat(Provider, Scan): PRWLR-4102 refactor modules to adapt connection test and scans to secrets
* feat(ProviderSecret): PRWLR-4102 add GCPProviderSecret serializer
* feat(Provider): PRWLR-4102 validate provider_id when testing connection
* chore(Utils): PRWLR-4987 refactor prowler provider functions
* test(Utils): PRWLR-4102 add unit tests
* test(Scan, Provider): PRWLR-4102 fix unit tests
* chore: PRWLR-4102 add docstrings and update prowler version and API spec
* chore(Provider, Scan): PRWLR-4102 update fixtures
* test(ProviderSecret): PRWLR-4102 add unit tests
* chore: PRWLR-4102 optimize imports
2024-10-11 15:49:45 +02:00
Pablo Lara
f29e87f45b
feat: Scan on demand can be executed now from the UI
2024-10-11 15:33:03 +02:00
Prowler Bot
493d6a9210
chore(regions_update): Changes in regions for AWS services ( #5377 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-11 09:29:26 -04:00
dependabot[bot]
3762d70ba3
chore(deps): bump trufflesecurity/trufflehog from 3.82.7 to 3.82.8 ( #5371 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-11 09:28:43 -04:00
Pedro Martín
03a26ec507
feat(gcp): add static credentials for gcp provider ( #5364 )
2024-10-11 11:01:37 +02:00
Pablo Lara
69a1468c18
Wrap CustomButton component with React.forwardRef
2024-10-11 06:49:14 +02:00
Mario Rodriguez Lopez
c3e3381c63
feat(elasticbeanstalk): add new check elasticbeanstalk_cloudwatch_enabled ( #5335 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-10 15:32:31 -04:00
Mario Rodriguez Lopez
f8a8266c9d
feat(elasticbeanstalk): add new check elasticbeanstalk_managed_platform_updates_enabled ( #5324 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-10 15:31:11 -04:00
Pepe Fagoaga
d9c2933dc5
feat(test_connection): Add optional AWS Account ID validation ( #5361 )
2024-10-10 12:45:16 -04:00
Pepe Fagoaga
cad99c5e0f
feat(aws): Add static credentials authentication ( #5360 )
2024-10-10 11:47:05 -04:00
johannes-engler-mw
9f2de7d2f9
feat(containerregistry): add new check containerregistry_not_publicly_accessible ( #5291 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2024-10-10 11:39:16 -04:00
Pablo Lara
0a8c352194
chore: rename file for scan actions
2024-10-10 16:47:05 +02:00
Pablo Lara
ab29373537
chore: tweak styles snippet id component
2024-10-10 16:39:30 +02:00
Pablo Lara
b304f11b18
chore: tweak styles for entity info short component
2024-10-10 16:37:18 +02:00
Pablo Lara
4cf7a3244f
chore: replace icon for check connection component
2024-10-10 15:43:41 +02:00
Pablo Lara
bd46196fd0
chore: replace icon for spnippet id
2024-10-10 15:34:10 +02:00
Pablo Lara
d79e1d6c94
chore: add table for schedule scans
2024-10-10 15:24:50 +02:00
Pablo Lara
5b51653d78
chore: retrieve values for all scans in getScans
2024-10-10 14:02:36 +02:00
Pablo Lara
5246d84599
chore: retrieve values for all scans in getScans
2024-10-10 14:02:21 +02:00
Pablo Lara
9409ea75e5
chore: table for launch scan is added to scan page
2024-10-10 09:17:31 +02:00
Pablo Lara
970cb97f73
chore: table for launch scan is added to scan page
2024-10-10 08:52:36 +02:00
Daniel Barranquero
4181ca56be
feat(autoscaling): add new check autoscaling_group_elb_health_check_enabled ( #5330 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-09 14:56:18 -04:00
Daniel Barranquero
d45750b042
feat(redshift): add new check redshift_cluster_enhanced_vpc_routing ( #5281 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-09 12:40:36 -04:00
Mario Rodriguez Lopez
16191a7b15
feat(elasticbeanstalk): Add new service ElasticBeanstalk ( #5322 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-09 09:29:19 -04:00
Rubén De la Torre Vico
0c149461b3
chore(sns): manage ResourceNotFoundException and add paralelism ( #5345 )
2024-10-09 08:56:39 -04:00
Pablo Lara
a1585142b7
chore: refactor custom filters to be able to have two in the same page
2024-10-09 13:56:56 +02:00
Pedro Martín
3ee39cff2a
feat(scan): execute all checks if no checks are provided ( #5307 )
2024-10-09 11:46:38 +02:00
Pedro Martín
41ba118cc4
feat(scan): add scan duration ( #5305 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: Hugo Pereira Brito <101209179+HugoPBrito@users.noreply.github.com >
Co-authored-by: Sergio <sergio@prowler.com >
Co-authored-by: Prowler Bot <bot@prowler.com >
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
Co-authored-by: Daniel Barranquero <74871504+danibarranqueroo@users.noreply.github.com >
2024-10-09 11:12:39 +02:00
Pablo Lara
ba106ac8f3
Merge pull request #71 from prowler-cloud/PRWLR-4777-Create-Scan-page-integration-scan-endpoint-2
...
Small style tweaks
2024-10-09 10:13:51 +02:00
Pablo Lara
558d83c957
chore: style tweaks
2024-10-09 10:11:48 +02:00
Sergio Garcia
e0587fe0cf
fix(Dockerfile): install git dependency ( #5339 )
2024-10-09 08:58:55 +02:00
Pablo Lara
7b38950f3c
Merge pull request #70 from prowler-cloud/PRWLR-4777-Create-Scan-page-integration-scan-endpoint
...
Refactor common components and fix typo errors
2024-10-09 08:18:48 +02:00
Pablo Lara
67333c00b9
chore: add NextUI theme colors in Tailwind config
2024-10-09 08:15:57 +02:00
Pablo Lara
7a6ab5b7c7
refactor: extract common components to reduce code duplication, fix typo
2024-10-09 07:50:56 +02:00
Pablo Lara
a149458593
chore: rename custom components
2024-10-09 06:47:10 +02:00
Pablo Lara
fe27a32dcb
chore: change color action
2024-10-09 06:42:38 +02:00
dependabot[bot]
a6095f7aa1
chore(deps): bump django from 5.0.8 to 5.0.9
...
Bumps [django](https://github.com/django/django ) from 5.0.8 to 5.0.9.
- [Commits](https://github.com/django/django/compare/5.0.8...5.0.9 )
---
updated-dependencies:
- dependency-name: django
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-10-08 21:35:13 +00:00
Daniel Barranquero
50481665ce
feat(redshift): add new check redshift_cluster_in_transit_encryption_enabled ( #5271 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-08 14:15:32 -04:00
Prowler Bot
a49c744e08
chore(regions_update): Changes in regions for AWS services ( #5323 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-08 14:13:17 -04:00
Rubén De la Torre Vico
aa32634105
chore(guardduty): mock failing tests using moto ( #5334 )
2024-10-08 13:27:37 -04:00
Rubén De la Torre Vico
b27898de1d
chore(ecs): mock all tests using moto ( #5326 )
2024-10-08 12:11:33 -04:00
Sergio Garcia
b703357027
chore(secrets): use master branch of Yelp/detect-secrets ( #5298 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-10-08 09:55:46 -04:00
Víctor Fernández Poyatos
8791b7e3f1
feat(Scan, Finding): PRWLR-4987 Adjust findings delta based on previous findings ( #52 )
...
* feat(Finding): PRWLR-4987 add uid field to Findings
* feat(Scan): PRWLR-4987 implement logic to calculate Finding delta value
* test(Scan): PRWLR-4987 add unit tests for _create_finding_delta
* chore(Spec): PRWLR-4987 update API spec
2024-10-08 14:43:18 +02:00
Rubén De la Torre Vico
27cd9b22df
feat(guardduty): add new check guardduty_lambda_protection_enabled ( #5299 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-08 08:20:23 -04:00
Pepe Fagoaga
5bf85366e0
chore(secrets): Add TelegramBotToken detector ( #5321 )
2024-10-08 08:09:26 -04:00
Pablo Lara
e843ef6ffc
Merge pull request #68 from prowler-cloud/PRWLR-4823-remove-menu-items
...
Remove menu items
2024-10-08 12:07:55 +02:00
Pablo Lara
b3c2f3a3fc
chore: tsx tweaks
2024-10-08 12:05:29 +02:00
Pablo Lara
3d533b56ef
chore: rename sidebar component
2024-10-08 11:24:31 +02:00
Pablo Lara
b43832fa8f
chore: menu tweaks
2024-10-08 11:23:52 +02:00
dependabot[bot]
30bc971f4b
chore(deps): bump trufflesecurity/trufflehog from 3.82.6 to 3.82.7 ( #5315 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-08 10:44:56 +02:00
Pablo Lara
a5332b31f1
Merge pull request #67 from prowler-cloud/PRWLR-4823-remove-menu-items
...
Remove menu items
2024-10-08 10:02:58 +02:00
Pablo Lara
fa604af6ea
chore: styling tweaks for custom box
2024-10-08 10:01:43 +02:00
Pablo Lara
dbb0d506af
chore: menu item tweaks
2024-10-08 09:58:44 +02:00
Pablo Lara
785bdb5bb3
Merge pull request #65 from prowler-cloud/PRWLR-4883-Integrate-authentication-endpoint-OSS
...
Integrate authentication endpoint oss
2024-10-08 09:30:44 +02:00
Pablo Lara
343754061a
Merge pull request #66 from prowler-cloud/PRWLR-4883-Integrate-authentication-endpoint-OSS-bg-2
...
Styling signIn and signUp pages
2024-10-08 09:29:18 +02:00
Pablo Lara
7572136cc8
feat: sign-up and sign-in pages are styled and ready to be merged
2024-10-08 08:46:35 +02:00
Sergio Garcia
3950d7eba8
fix(threat detection): ignore AWS services events ( #5276 )
2024-10-07 14:25:09 -04:00
Rubén De la Torre Vico
2f8a3d2ef8
feat(guardduty): add new check guardduty_ec2_malware_protection_enabled ( #5297 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-07 13:03:36 -04:00
Pablo Lara
6b7fe81cf8
chore: tweak styles auth pages
2024-10-07 17:30:31 +02:00
Prowler Bot
3b64bbd3a8
chore(regions_update): Changes in regions for AWS services ( #5302 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-07 10:58:40 -04:00
Hugo Pereira Brito
09d099891a
feat(wafv2): change web_acls from list to dict ( #5308 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-07 10:23:58 -04:00
Pablo Lara
f5e53e814b
chore: tweak styles auth pages
2024-10-07 07:07:26 +02:00
Pablo Lara
b8b05b923f
chore: tweak styles for Prowler logo in signIn page
2024-10-07 06:41:13 +02:00
Pablo Lara
22bacfdcb3
feat(sign-up/sign-in): remove unused component
2024-10-06 13:23:59 +02:00
Pablo Lara
d138c4eeb8
feat(sign-up/sign-in): styling the the auth page
2024-10-06 13:20:45 +02:00
Pablo Lara
f0f4e85f06
feat(sign-up): integrate sign-up functionality in the application
2024-10-05 19:08:28 +02:00
Pablo Lara
e2261af59f
feat(auth): refresh access token on-demand when receiving 401 error
2024-10-05 14:43:02 +02:00
Pablo Lara
ff74edcc04
feat(auth): refresh access token on-demand when receiving 401 error
2024-10-05 14:29:41 +02:00
Pablo Lara
735f830251
feat: add function getUserByMe
2024-10-05 14:02:22 +02:00
Pablo Lara
abcf37ea92
feat: Reduce session cookie size drastically
2024-10-05 06:51:05 +02:00
Mario Rodriguez Lopez
a6b10a8611
feat(efs): add new check efs_access_point_enforce_user_identity ( #5285 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-04 15:16:10 -04:00
Lefteris
c239ede3f9
feat(glue): add check glue_ml_transform_encrypted_at_rest ( #5272 )
...
Co-authored-by: Lefteris Gilmaz <lefterisgilmaz@Lefteriss-MacBook-Pro.local >
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-04 14:13:11 -04:00
Hugo Pereira Brito
66f2754017
feat(networkfirewall): add new check networkfirewall_policy_default_action_full_packets ( #5284 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-04 14:00:25 -04:00
Hugo Pereira Brito
9138ecdce9
feat(kinesis): add new check kinesis_stream_encrypted_at_rest ( #5292 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-04 13:59:49 -04:00
Rubén De la Torre Vico
2b66368cf2
feat(guardduty): add new check guardduty_eks_audit_log_enabled ( #5293 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-04 13:43:04 -04:00
Mario Rodriguez Lopez
aa3425a7de
feat(efs): add new check efs_access_point_enforce_root_directory ( #5277 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-04 13:12:47 -04:00
Pablo Lara
8da95c7102
chore: The session will expire in 24 hours as the refreshToken coming from the API
2024-10-04 18:48:51 +02:00
Mario Rodriguez Lopez
a31b15c26c
feat(efs): add new check efs_mount_target_not_publicly_accesible ( #5275 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-04 11:41:51 -04:00
Hugo Pereira Brito
f2301d5ed6
feat(networkfirewall): add new check networkfirewall_policy_default_action_fragmented_packets ( #5244 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-04 11:41:26 -04:00
Rubén De la Torre Vico
df10253056
chore(cloudwatch): Improve checks related with function check_cloudwatch_log_metric_filter ( #5286 )
2024-10-04 11:18:46 -04:00
Sergio Garcia
d5acdc766a
chore(ocsf): adapt mapping for version 1.3.0 ( #5287 )
2024-10-04 10:59:51 -04:00
Pablo Lara
72d875aa4f
chore: WIP
2024-10-04 16:08:57 +02:00
Víctor Fernández Poyatos
8130880f2d
chore(Tenant, Provider, Scan, Task, Resource): PRWLR-4966 Update default ordering in viewsets ( #51 )
...
* chore(Tenant, Provider, Scan, Task, Resource): PRWLR-4966 set default ordering to -inserted_at
* chore: PRWLR-4966 update API schema
2024-10-04 14:33:18 +02:00
Víctor Fernández Poyatos
d98b716dfc
chore(Filters): PRWLR-4948 Refactor filter module to reduce complexity and improve docs ( #50 )
...
* chore(Django-filter): PRWLR-4948 bump django-filter version to 24.3
* fix(Middleware): PRWLR-4948 fix logging middleware when auth is not present in request
* fix(Task): PRWLR-4948 fix serializer state values
* chore(Filters): PRWLR-4948 use ChoiceFilter instead of implementing method for basic filters
* chore(Filters): PRWLR-4948 refactor complex filters to reduce complexity
2024-10-04 14:13:04 +02:00
Víctor Fernández Poyatos
6bd8a17a5f
fix(Task): PRWLR-4970 Fix Celery task issues when status is pending and race conditions ( #49 )
...
* fix(Task): PRWLR-4970 add TaskResult entry to database when task reaches broker
* fix(Task, Scan): PRWLR-4970 remove race conditions using atomic transactions
* chore(Django): PRWLR-4970 bump Django version to 5.1.1
2024-10-04 11:54:15 +02:00
Rubén De la Torre Vico
e389e0136f
chore(cloudwatch): add tags to missing checks report ( #5261 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-03 18:04:43 -04:00
Rubén De la Torre Vico
8bb3bd0dcb
chore(iam): add tags to missing checks report ( #5280 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-03 13:47:10 -04:00
Hugo Pereira Brito
4d4bf3fa11
feat(networkfirewall): add new check networkfirewall_multi_az ( #5247 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-03 13:46:44 -04:00
Víctor Fernández Poyatos
ded28baa2f
feat(Scan, Resource, Finding): PRWLR-4015 Implement on demand scans and findings/resources in database ( #48 )
...
* feat(Users): PRWLR-4718 make user email the default login username
* feat(Token): PRWLR-4718 add serializers, views and urls for access and refresh tokens
* feat(Token): PRWLR-4718 add first membership tenant in token if not present in json body
* feat(Users): PRWLR-4718 add company_name to model
* feat(Users): PRWLR-4718 create tenant and membership when creating new user
* fix(BaseView): PRWLR-4718 add tenant_id to serializer context
* fix(Tests): PRWLR-4718 use authorization with unit tests
* fix(Views): PRWLR-4718 fix tenant retrieval from request
* fix(Tests): PRWLR-4718 fix tests
* fix(Fixtures): PRWLR-4718 fix tenant memberships ordering
* chore(Tokens): PRWLR-4718 update token url
* chore(Spec): PRWLR-4718 update API spec
* feat(Tokens): PRWLR-4718 enable token refresh blacklisting
* feat(Tokens): PRWLR-4718 implement RS256 algorithm and dev valid keys
* chore(env): PRWLR-4718 update .env.example
* chore(Deps): PRWLR-4015 update prowler dep
* fix(Resources, Findings): PRWLR-4015 fix permission issues on models and migrations
* feat(Scans, Tasks, Resources, Findings): PRWLR-4015 perform whole flow when executing scans
* fix(Settings): PRWLR-4015 fix devel JWT settings
* chore(Scans, Tasks): PRWLR-4015 improve docs and responses format
* test(Scan, Provider): PRWLR-4015 fix unit tests
* chore(Environment): PRWLR-4015 fix .env.example values
* test(Scan): PRWLR-4015 add unit tests for scan task
* chore(Task): PRWLR-4015 give proper format to task result on scan perform
* feat(Provider, Scan): PRWLR-4015 add all provider types to connection check and scan
* fix(Logging): PRWLR-4015 fix API logger middleware to include tenant and user IDs
2024-10-03 18:36:42 +02:00
Pablo Lara
5c0ee0cfb3
chore: remove dataProviders json file
2024-10-03 18:21:52 +02:00
Pablo Lara
c7d6484eb8
chore: WIP
2024-10-03 18:20:28 +02:00
Daniel Barranquero
e99c58405c
feat(redshift): add new check redshift_cluster_non_default_database_name ( #5283 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-03 11:28:54 -04:00
Pablo Lara
42ebf91a67
chore: add the new colors for the dark mode
2024-10-03 06:22:35 +02:00
Pablo Lara
d8c9720723
fix: order by default using sorting param
2024-10-03 06:08:05 +02:00
Daniel Barranquero
2177704b4b
feat(redshift): add new check redshift_cluster_encrypted_at_rest ( #5262 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-02 17:06:19 -04:00
Mario Rodriguez Lopez
2ffe7f3ef7
feat(ecs): add new check ecs_service_fargate_latest_platform_version ( #5258 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-02 16:50:20 -04:00
dependabot[bot]
158263a8bf
chore(deps-dev): bump moto from 5.0.15 to 5.0.16 ( #5256 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-02 15:40:34 -04:00
Daniel Barranquero
469986dd28
feat(redshift): add new check redshift_cluster_non_default_username ( #5268 )
2024-10-02 13:54:12 -04:00
Hugo Pereira Brito
ff101087bf
feat(networkfirewall): add new check networkfirewall_logging_enabled ( #5145 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-02 12:09:13 -04:00
dependabot[bot]
b2151e2e9c
chore(deps): bump boto3 from 1.35.28 to 1.35.29 ( #5257 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-02 11:27:39 -04:00
Pablo Lara
8e7dfcaa76
WIP
2024-10-02 17:22:34 +02:00
Sergio Garcia
2c4244b1fb
chore(version): update Prowler version ( #5251 )
2024-10-02 11:14:26 -04:00
Hugo Pereira Brito
260cdf575a
feat(kinesis): add new service Kinesis ( #5228 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-10-02 10:59:59 -04:00
Michael St.Onge
ab4190c215
chore(contrib): update aws-multi-account-securityhub deployment ( #5263 )
2024-10-02 10:58:02 -04:00
Mario Rodriguez Lopez
7f97b0a57f
feat(ecs): Ensure ECS clusters use Container Insights ( #5241 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-02 10:42:52 -04:00
Daniel Barranquero
2c2dd82d0c
feat(dynamodb): add new check dynamodb_table_autoscaling_enabled ( #5129 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-10-02 10:42:36 -04:00
Pablo Lara
a72b33597d
WIP
2024-10-02 16:09:26 +02:00
Mario Rodriguez Lopez
2511df1732
fix(ecs): Adjust code to the new ARN formats in the ECS service ( #5259 )
2024-10-02 09:40:32 -04:00
Rubén De la Torre Vico
f955dd76d9
test(aws): fix failing tests for ecs_task_definitions_logging_enabled and ssm_managed_compliant_patching ( #5267 )
2024-10-02 09:35:27 -04:00
Prowler Bot
a08cc769c8
chore(regions_update): Changes in regions for AWS services ( #5269 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-02 08:50:30 -04:00
Pablo Lara
6e37d8d850
chore: update all providers API requests
2024-10-02 10:00:54 +02:00
Pablo Lara
ce51108f7f
fix: apply password match validation only on sign-up form
2024-10-02 06:37:29 +02:00
Pablo Lara
9e56a4a10d
chore: add id attibute to the customInput component to make unique fields
2024-10-02 06:25:35 +02:00
Prowler Bot
77ac5e3b91
chore(regions_update): Changes in regions for AWS services ( #5260 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-10-01 14:10:38 -04:00
dependabot[bot]
2da8f2b1eb
chore(deps-dev): bump mkdocs-material from 9.5.38 to 9.5.39 ( #5255 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-10-01 14:10:17 -04:00
Pablo Lara
76b1c83add
chore: tweaks authFormSchema using zod validation for client side
2024-10-01 14:29:58 +02:00
Pablo Lara
650b95c4f1
chore: add confirmPassword input in sign-up page
2024-10-01 14:15:05 +02:00
Pablo Lara
ceebfc9aca
chore: remove unused dependency
2024-10-01 14:14:26 +02:00
Pablo Lara
2e443db362
chore: comanyName is now optional and added confirmPassword field
2024-10-01 14:13:49 +02:00
Pablo Lara
e15690781f
Merge pull request #64 from prowler-cloud/PRWLR-4917-Improving-Filtering-Impacts-the-whole-app-followUp
...
Codebase improvements: Tailwind formatting, accessibility fixes, and search optimization
2024-10-01 08:16:54 +02:00
Pablo Lara
35f7c90c19
chore: rename for consistency custom-button component
2024-10-01 06:02:22 +02:00
Pablo Lara
717f9765e1
chore: run prettier-plugin-tailwindcss
2024-10-01 05:55:20 +02:00
Pablo Lara
607cd5d1e0
feat: install, configure and run prettier-plugin-tailwindcss
2024-10-01 05:44:24 +02:00
Pablo Lara
4e5bb81906
chore: Style tweaks for filters
2024-10-01 05:30:47 +02:00
Pablo Lara
24163b2644
chore: Style tweaks for filters
2024-10-01 04:59:07 +02:00
Sergio Garcia
38e024216c
chore(ec2): enhance security group with any open port check ( #5215 )
2024-09-30 14:53:04 -04:00
Rubén De la Torre Vico
8e4847ec89
fix(rds): add comprobations before list tags ( #5249 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-30 13:34:22 -04:00
Sergio Garcia
c6d34e8089
chore(README): update summary table ( #5248 )
2024-09-30 12:56:42 -04:00
Hugo Pereira Brito
880523076d
feat(networkfirewall): add new check networkfirewall_policy_rule_group_associated ( #5225 )
2024-09-30 12:04:32 -04:00
Sergio Garcia
3d2f1a3aa7
fix(aws): handle none type attributes ( #5216 )
2024-09-30 18:04:14 +02:00
Rubén De la Torre Vico
c9ff96144d
chore(ssm): add tags to ssm_managed_compliant_patching ( #5245 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-30 12:00:43 -04:00
johannes-engler-mw
234f8c2958
feat(azure containerregistry): gather service infos and checks disabled admin user ( #5191 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-30 11:52:48 -04:00
Víctor Fernández Poyatos
54bb034cac
feat(Tokens): PRWLR-4718 implement user authorization with JWT ( #47 )
...
* feat(Users): PRWLR-4718 make user email the default login username
* feat(Token): PRWLR-4718 add serializers, views and urls for access and refresh tokens
* feat(Token): PRWLR-4718 add first membership tenant in token if not present in json body
* feat(Users): PRWLR-4718 add company_name to model
* feat(Users): PRWLR-4718 create tenant and membership when creating new user
* fix(BaseView): PRWLR-4718 add tenant_id to serializer context
* fix(Tests): PRWLR-4718 use authorization with unit tests
* fix(Views): PRWLR-4718 fix tenant retrieval from request
* fix(Tests): PRWLR-4718 fix tests
* fix(Fixtures): PRWLR-4718 fix tenant memberships ordering
* chore(Tokens): PRWLR-4718 update token url
* chore(Spec): PRWLR-4718 update API spec
* feat(Tokens): PRWLR-4718 enable token refresh blacklisting
* feat(Tokens): PRWLR-4718 implement RS256 algorithm and dev valid keys
* fix(Environment): PRWLR-4718 fix jwt keys env vars
* fix(Environment): PRWLR-4718 fix jwt keys env vars (testing)
* chore(Settings): PRWLR-4718 remove drf-spectacular unused settings
* fix(Environment): PRWLR-4718 remove jwt signature keys from dev and testing modules
2024-09-30 17:45:09 +02:00
Pablo Lara
7c2f7d7eeb
chore: Fix issue with invalid keys being passed to selectedKeys
2024-09-30 17:37:09 +02:00
Pablo Lara
fcd1aa5d76
chore: impot lodash correctly
2024-09-30 17:25:08 +02:00
Pablo Lara
1f5ee1ee3f
chore: tweak styles
2024-09-30 17:23:52 +02:00
Pablo Lara
bbbcc4a185
chore: Add aria-labels to fix errors accessibility
2024-09-30 17:03:15 +02:00
Sergio Garcia
da87c0d81e
fix(tests): patch head_bucket function correctly ( #5246 )
2024-09-30 11:00:30 -04:00
dependabot[bot]
7732ec7d34
chore(deps-dev): bump safety from 3.2.7 to 3.2.8 ( #5238 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-30 10:54:36 -04:00
Pablo Lara
f8c5f4f1cc
chore: Add aria-label to buttons for improved accessibility
2024-09-30 16:54:33 +02:00
Pablo Lara
78f8badddd
Merge pull request #63 from prowler-cloud/PRWLR-4917-Improving-Filtering-Impacts-the-whole-app
...
Big Refactor: Integrated React Hook Form, Improved UI Consistency and added new features
2024-09-30 16:32:36 +02:00
Pablo Lara
5223cf3763
chore: rename component properly
2024-09-30 16:31:15 +02:00
Pablo Lara
39b7fca11f
chore: rename component properly
2024-09-30 16:30:38 +02:00
Pablo Lara
904a4a61e9
chore: rename component properly
2024-09-30 16:16:24 +02:00
Pablo Lara
f146946319
feat: big refactor for filters and tons of components
2024-09-30 16:15:43 +02:00
Rubén De la Torre Vico
a1b9b2171f
feat(securityhub): add tags securityhub_enabled ( #5231 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-30 10:13:41 -04:00
Mario Rodriguez Lopez
30e3fd9e46
feat(ecs): Ensure ECS containers have a logging configuration specified ( #5234 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-30 09:43:20 -04:00
dependabot[bot]
3db541a42a
chore(deps): bump botocore from 1.35.28 to 1.35.29 ( #5239 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-30 09:38:12 -04:00
Rubén De la Torre Vico
d5abe16180
feat(wafv2): add tags to wafv2_webacl_logging_enabled ( #5243 )
2024-09-30 09:37:16 -04:00
dependabot[bot]
564b18c388
chore(deps): bump azure-storage-blob from 12.23.0 to 12.23.1 ( #5240 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-30 08:30:28 -04:00
Pablo Lara
db9faa2f4b
chore: WIP
2024-09-30 09:43:23 +02:00
Pablo Lara
d9ec74b149
chore: WIP
2024-09-30 06:21:56 +02:00
Pablo Lara
ba1f8c9a3a
chore: handle lib folder dependencies with nextui
2024-09-28 06:13:28 +02:00
Pablo Lara
f496896884
feat: change render order by default, rename components, simplify structure
2024-09-28 05:29:04 +02:00
Rubén De la Torre Vico
13e40eb03e
feat(aws): add tags to Global Accelerator ( #5233 )
2024-09-27 12:37:19 -04:00
Rubén De la Torre Vico
b402ced402
docs: change installation methods ( #5192 )
2024-09-27 12:15:14 -04:00
dependabot[bot]
6bbb9d04a6
chore(deps): bump boto3 from 1.35.26 to 1.35.28 ( #5232 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-27 12:13:56 -04:00
dependabot[bot]
6616657c91
chore(deps): bump botocore from 1.35.27 to 1.35.28 ( #5220 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-27 11:30:21 -04:00
Amogh Bantwal
853b833cfb
feat(aws): Add new check opensearch_service_domains_access_control_enabled ( #5203 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-27 10:13:43 -04:00
Pablo Lara
1ea8addb04
chore: remove unused console log
2024-09-27 15:53:16 +02:00
Rubén De la Torre Vico
c047b29140
feat(rds): add missing tags to RDS checks ( #5230 )
2024-09-27 09:34:25 -04:00
Pablo Lara
f7df63e2af
feat: add new functionality for adding provider and remove the old one
2024-09-27 15:33:36 +02:00
Prowler Bot
c4a39662ae
chore(regions_update): Changes in regions for AWS services ( #5224 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-27 12:30:05 +02:00
Pablo Lara
2807fc2b8e
chore: replace the new field date value coming from the API
2024-09-27 11:15:02 +02:00
Pablo Lara
fbb5ede272
chore: add types in the proper directory
2024-09-27 10:45:12 +02:00
Pablo Lara
8e1c8304d8
feat: fix TS errors in customButton component
2024-09-27 10:42:16 +02:00
Pablo Lara
dbfc11e822
chore: tweak filter controls
2024-09-27 10:20:38 +02:00
Pablo Lara
0235f37faa
chore: tweak styles for button with icons
2024-09-27 10:04:41 +02:00
Pablo Lara
ef7272cf80
chore: edit and delete provider form have been refactored using custom buttons
2024-09-27 09:42:48 +02:00
dependabot[bot]
66e804f212
chore(deps): bump trufflesecurity/trufflehog from 3.82.5 to 3.82.6 ( #5222 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-27 08:42:07 +02:00
Pablo Lara
840df1dab6
feat: hide scrollbar when needed
2024-09-27 07:47:17 +02:00
Mario Rodriguez Lopez
9d4fa55c13
feat(ecs): Ensure ECS task definitions host's process namespace is not shared ( #5146 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-26 18:24:21 -04:00
Mario Rodriguez Lopez
ff05ce4da1
feat(ecs): Ensure ECS containers have read-only access to root filesystems ( #5168 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-26 14:37:24 -04:00
Mario Rodriguez Lopez
0474c7995c
feat(ecs): Ensure ECS containers run as non-privileged ( #5214 )
2024-09-26 14:05:11 -04:00
Mario Rodriguez Lopez
1a679f371f
feat(ecr): Ensure ECR repositories have tag immutability configured ( #5144 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-26 13:51:57 -04:00
Rubén De la Torre Vico
05f7170add
feat(dms): add tags to DMS checks ( #5209 )
2024-09-26 13:33:28 -04:00
Rubén De la Torre Vico
19acb873af
feat(glue): add tags to Glue checks ( #5213 )
2024-09-26 13:11:44 -04:00
Daniel Barranquero
0b566f9666
feat(dynamodb): add new check dynamodb_table_deletion_protection_enabled ( #5148 )
2024-09-26 11:19:57 -04:00
Rubén De la Torre Vico
67bf89537a
chore(ec2): add tags to report of EC2 launch templates ( #5210 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-26 10:50:02 -04:00
Daniel Barranquero
d0681a9e20
fix(aws): change protected_by_backup_plan checks ( #5204 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-26 10:33:12 -04:00
Rubén De la Torre Vico
31bff99b3d
feat(codebuild): add tags support to projects ( #5207 )
2024-09-26 10:14:02 -04:00
Rubén De la Torre Vico
48c7e65a39
chore(autoscaling): deprecate check autoscaling_find_secrets_ec2_launch_configuration ( #5205 )
2024-09-26 10:11:54 -04:00
Pablo Lara
1f75d70d4e
fix: fix the providerId, the value coming from the API changed
2024-09-26 16:05:17 +02:00
Pablo Lara
ede597d02d
chore: add new icons
2024-09-26 16:03:13 +02:00
Pablo Lara
8db20eb2ba
chore: add new colors
2024-09-26 16:02:52 +02:00
Pablo Lara
a70fcf488d
chore: add new colors
2024-09-26 16:02:13 +02:00
Pablo Lara
c544a069a2
feat: create and integrate custom button component
2024-09-26 16:01:42 +02:00
Pablo Lara
4b74a8a008
feat: add a header to use basic auth
2024-09-26 16:01:16 +02:00
dependabot[bot]
1b407639f0
chore(deps): bump azure-mgmt-network from 26.0.0 to 27.0.0 ( #5201 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-26 15:36:42 +02:00
Prowler Bot
4d7d5718d5
chore(regions_update): Changes in regions for AWS services ( #5208 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-26 08:20:13 -04:00
dependabot[bot]
7955048e79
chore(deps-dev): bump mkdocs-material from 9.5.36 to 9.5.38 ( #5206 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-26 10:51:29 +02:00
dependabot[bot]
8e0b715f12
chore(deps): bump trufflesecurity/trufflehog from 3.82.3 to 3.82.5 ( #5202 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-26 10:07:17 +02:00
dependabot[bot]
1d81261d97
chore(deps): bump botocore from 1.35.26 to 1.35.27 ( #5199 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-26 10:06:40 +02:00
Mario Rodriguez Lopez
114a3088a4
feat(ecs): Ensure public IP addresses are not assigned automatically ( #5128 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-25 16:24:39 -04:00
Rubén De la Torre Vico
bc8f3eba4d
feat(backup): add tags to backup vaults and backup plans ( #5194 )
2024-09-25 11:02:53 -04:00
Hugo Pereira Brito
8e087196c9
feat(s3): Add new check s3_bucket_cross_account_access ( #5082 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-25 10:01:52 -04:00
Amogh Bantwal
744e7ff5ac
feat(threat-detection): Use IAM Identity for Cloudtrail Threat Detection instead of IP ( #5166 )
2024-09-25 09:15:47 -04:00
Prowler Bot
90b84b57d3
chore(regions_update): Changes in regions for AWS services ( #5190 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-25 09:07:42 -04:00
Sergio Garcia
0a2b7cf152
chore(aws): improve IAM Resource Policy public logic ( #5067 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2024-09-25 08:33:41 -04:00
Pedro Martín
ebbccd04f1
refactor(execute_check): refactor execute method ( #4975 )
2024-09-25 14:19:42 +02:00
Víctor Fernández Poyatos
4c83351b26
feat(Tenants, Memberships): PRWLR-4719 Add memberships endpoints and security changes ( #44 )
...
* feat(SimpleJWT): PRWLR-4717 add djangorestframework-simplejwt dep
* feat(SimpleJWT): PRWLR-4717 add basic configuration and env variables
* feat(Users): PRWLR-4717 add model and security constraints
* feat(Users): PRWLR-4717 add serializers
* feat(Users): PRWLR-4717 add views
* test(Conftest): PRWLR-4717 add user and authenticated client fixtures
* fix(Unit tests): PRWLR-4717 add automated authentication to all unit tests
* fix(Authentication): PRWLR-4717 add authentication class and update tests
* test(Users): PRWLR-4717 add unit tests
* test(Users): PRWLR-4717 add integration tests
* chore(Schema): PRWLR-4717 update API schema
* fix(User): PRWLR-4717 fix password validation
* feat(Validators): PRWLR-4717 add MaxLength password validator
* fix(User): PRWLR-4717 update User model to delete admin fields
* chore(Serializers): PRWLR-4717 add docstrings and update serializers
* chore(Fixtures): PRWLR-4717 add dev user
* feat(Memberships): PRWLR-4719 add membership.Roles postgres enums
* feat(Memberships): PRWLR-4719 add model
* feat(Tenants): PRWLR-4719 add owner membership when creating a new one
* chore(Users): PRWLR-4717 raise DRF NotFound instead of returning response
* chore(Deps): PRWLR-4719 add drf-nested-routers
* feat(Memberships): PRWLR-4719 add serializers, urls and views
* feat(Tenants): PRWLR-4719 add RLS based on memberships
* chore(Views): PRWLR-4719 unify tenant related views dispatch methods
* test(Tenants): PRWLR-4719 add membership to test user when creating tenants
* test(Users): PRWLR-4719 add name field to model
* chore(Deps): PRWLR-4719 add drf-nested-routers
* feat(Memberships): PRWLR-4719 separate membership endpoints
* feat(Memberships): PRWLR-4719 add filters
* test(Memberships): PRWLR-4719 add unit tests
* test(Tenants): PRWLR-4719 add membership unit tests
* chore(API): PRWLR-4719 update spec
* chore(API): PRWLR-4719 update Django dev fixtures
* test(Memberships): PRWLR-4719 add more unit tests
* chore(Memberships): PRWLR-4719 move /memberships to /users/me/
* feat(Users, Tenants, Memberships): PRWLR-4719 update responses and routes
* feat(Memberships): PRWLR-4719 adjust tenant membership view results under membership role
* chore(Scans): PRWLR-4719 rename django fixture
2024-09-25 13:12:15 +02:00
dependabot[bot]
2b431fc79f
chore(deps-dev): bump pylint from 3.3.0 to 3.3.1 ( #5187 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-25 12:19:02 +02:00
dependabot[bot]
fe7c3e7548
chore(deps): bump google-api-python-client from 2.146.0 to 2.147.0 ( #5185 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-25 10:34:04 +02:00
dependabot[bot]
0e5f929044
chore(deps): bump boto3 from 1.35.24 to 1.35.26 ( #5189 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-25 09:39:06 +02:00
Pedro Martín
47a6e28d71
refactor(output_options): remove output options from provider ( #5149 )
2024-09-25 09:38:21 +02:00
Jude Bae(Bae cheongho)
de5742433b
feat(compliance): add KISA ISMS-P compliance framework ( #5086 )
...
Co-authored-by: MZC01-JUDE <mzc01-jude@MZC01-JUDE-2.local >
2024-09-25 09:06:05 +02:00
dependabot[bot]
3fcccd0bcd
chore(deps): bump botocore from 1.35.25 to 1.35.26 ( #5184 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-25 08:42:35 +02:00
dependabot[bot]
00938cadb1
chore(deps): bump trufflesecurity/trufflehog from 3.82.2 to 3.82.3 ( #5183 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-25 08:42:06 +02:00
Pablo Lara
e67f4e5f29
feat: WIP
2024-09-25 06:56:34 +02:00
Daniel Barranquero
9fb26643ba
feat(dynamodb): add new check dynamodb_accelerator_cluster_in_transit_encryption_enabled ( #5173 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-24 16:32:37 -04:00
Daniel Barranquero
e4890f9d9d
feat(dynamodb): add new check dynamodb_table_protected_by_backup_plan ( #5175 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-24 12:45:12 -04:00
Hugo Pereira Brito
980b9b4770
feat(networkfirewall): change network_firewalls from list to dict ( #5169 )
2024-09-24 12:43:19 -04:00
Sergio Garcia
348cea67c0
fix(aws): always use audited partition ( #5174 )
2024-09-24 11:38:11 -04:00
Sergio Garcia
f4d89066d9
feat(aws): add new check organizations_opt_out_ai_services_policy ( #5152 )
2024-09-24 11:37:03 -04:00
dependabot[bot]
b26dc899be
chore(deps-dev): bump moto from 5.0.14 to 5.0.15 ( #5158 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-24 09:04:52 -04:00
Sergio Garcia
25327d618d
chore(aws): handle NotAction cases in IAM policies ( #5035 )
2024-09-24 08:36:11 -04:00
Sergio Garcia
3951295c0c
chore(organizations): improve AWS Organizations service ( #5151 )
2024-09-24 08:28:21 -04:00
Prowler Bot
ff9c3b52d6
chore(regions_update): Changes in regions for AWS services ( #5167 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-24 08:17:19 -04:00
dependabot[bot]
af8c18eb4e
chore(deps-dev): bump bandit from 1.7.9 to 1.7.10 ( #5157 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-24 08:16:27 -04:00
Pablo Lara
087ffcbb95
Merge pull request #62 from prowler-cloud/PRWLR-4041-Providers-Page-Manage-Providers-Modal-Delete-Providers-Modal
...
Providers page manage providers modal
2024-09-24 13:12:11 +02:00
dependabot[bot]
6fbfcc7f5f
chore(deps): bump botocore from 1.35.24 to 1.35.25 ( #5155 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-24 12:33:29 +02:00
Pablo Lara
b860e35408
feat: fuctionality tweaks handling errors
2024-09-24 11:43:51 +02:00
dependabot[bot]
7c7132f9c4
chore(deps-dev): bump mkdocs-material from 9.5.35 to 9.5.36 ( #5156 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-24 11:04:06 +02:00
dependabot[bot]
62e30f929c
chore(deps): bump boto3 from 1.35.23 to 1.35.24 ( #5154 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-24 10:06:27 +02:00
Pepe Fagoaga
ddaafd5876
chore(bot): Use bot Token ( #5163 )
2024-09-24 10:06:00 +02:00
Pablo Lara
94eba806e3
feat: big refactor for CustomInput component
2024-09-24 08:40:48 +02:00
Pablo Lara
fa77455c3e
feat: edit provider has client validation now
2024-09-24 08:09:02 +02:00
Mario Rodriguez Lopez
1f43e6eff9
feat(inspector2): Add more tests to inspector2_is_enabled check ( #5150 )
2024-09-23 15:06:34 -04:00
Daniel Barranquero
aa118c05c5
feat(rds): add new check rds_cluster_non_default_port ( #5113 )
2024-09-23 15:05:56 -04:00
Hugo Pereira Brito
cca17b9378
feat(cloudfront): add new check cloudfront_distributions_s3_origin_non_existing_bucket ( #4996 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-23 12:43:03 -04:00
Víctor Fernández Poyatos
4a881fd2fd
chore: delete LICENSE ( #46 )
2024-09-23 17:27:00 +02:00
Pedro Martín
14ed19e3a8
fix(iam): fill resource id with inline policy entity ( #5120 )
2024-09-23 10:54:38 -04:00
dependabot[bot]
8caf8f794c
chore(deps): bump azure-mgmt-cosmosdb from 9.5.1 to 9.6.0 ( #5111 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-23 09:38:15 -04:00
dependabot[bot]
cba9ad61e4
chore(deps): bump msgraph-sdk from 1.7.0 to 1.8.0 ( #5110 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-23 08:48:42 -04:00
dependabot[bot]
e64a0eff0f
chore(deps): bump botocore from 1.35.23 to 1.35.24 ( #5140 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-23 08:01:40 -04:00
Pablo Lara
4f7d6a8402
Merge branch 'main' into PRWLR-4041-Providers-Page-Manage-Providers-Modal-Delete-Providers-Modal
2024-09-23 13:39:30 +02:00
Jon Young
4ca95b08e2
feat(Findings): Partitioned database tables ( #45 )
...
* feat(Findings): initial findings model
* fix(Findings): add view, serializers, migration for enums
* fix(Findings): incomplete jsonb_to_tsvector wrapper
will not run as written
* fix(Findings): use Severity and Status enums from prowler SDK
* tests(Findings): add failing view tests
* fix(Finding): add resource relationship
not returning correct data from serializer, missing links
* fix(FindingSerializer): get Scan & Resource relationships to show up
* fix(FindingFilter): add more filter fields
* fix(FindingFilter): filter on provider id
* fix(FindingSerializer): return Resource in relationship
not ResourceFindingMapping
* fix(FindingModel): update migration
* fix(FindingFilter): full text search on findings
* fix(Resources): include Findings in ResourceSerializer
* fix(FindingFilter): expand text search columns
* fix(DbUtils): docstring, not comment
* fix(BaseViews): remove TODO
comment not applicable right now
* fix(Fixtures): add more findings to fixture file
and change on_delete behavior for resource_finding_mapping
* fix(Resources): rename index to match others
* fix(Findings): update Findigns RLS to allow for full CRUD
eventually we'll let users enter a manual finding
which implies INSERT, UPDATE, DELETE
* fix(Findings): use TextChoices directly for Status enum
* fix(FindingSerializer): build a set instead of a list
* consistency in fixtures
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
* fix(API): update v1 spec for findings
* feat(Findings): store findings in a partitioned table
* fix(Settings): change unit of partition max age
to match unit when creating
* docs(Partitions): document how to manage partitions via manage.py
* fix(Findings): add tag for spec/docs
* fix(Findings): clean up migrations
* fix(Findings): convert scan_id and inserted_at filters into finding.id filters
* fix(Findings): add default filter for today
and set default sort order
* fix(Findings): add default filter for today
and set default sort order
* fix(Findings): update fixtures so datetime matches id
* fix(Findings): partition the ResourceFindingMapping table to match Findings
* docs(Partitions): document postgres config values more
* docs(UUIDUtils): do not use raw query strigns (typo)
* docs(Partitions): change unit in comment description
* fix(Findings): change resource_name & tags to be Finding
* docs(Partitions): change unit in partitions settings docstring
* fix(Findings): remove conflicting logic & filters
* chore: apply suggested changes
* chore: optimize imports
---------
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2024-09-23 11:39:03 +02:00
dependabot[bot]
23c65b8fde
chore(deps): bump pandas from 2.2.2 to 2.2.3 ( #5139 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-23 10:33:38 +02:00
dependabot[bot]
a7c93f3237
chore(deps-dev): bump pylint from 3.2.7 to 3.3.0 ( #5138 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-23 09:41:04 +02:00
dependabot[bot]
7b9402f3d0
chore(deps): bump kubernetes from 30.1.0 to 31.0.0 ( #5137 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-23 08:29:49 +02:00
Pablo Lara
0d5be65879
Merge pull request #61 from prowler-cloud/PRWLR-4763-Confirmation-screen
...
Confirmation modal component
2024-09-23 08:25:39 +02:00
Pablo Lara
3b96d14f84
chore: rename getProviders action and add modal for editing provider info
2024-09-22 15:48:47 +02:00
Pablo Lara
1dfde958bf
chore: rename getProviders action and add modal for editing provider info
2024-09-22 15:48:03 +02:00
Pablo Lara
cb20f595ac
rename: rename table components
2024-09-21 22:15:04 +02:00
Pablo Lara
720256968e
feat: confirmation screen works as expected
2024-09-21 21:51:51 +02:00
Sergio Garcia
4badcca4f8
fix(gcp): add default project for org level checks ( #5003 )
2024-09-20 20:39:35 +02:00
Hugo Pereira Brito
c6daa60f26
feat(elasticache): add check elasticache_redis_cluster_auth_enabled ( #4830 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-20 12:18:08 -04:00
Pablo Lara
7fb6250029
chore: WIP
2024-09-20 18:16:37 +02:00
Harshit Raj Singh
f9aa2bb8be
fix(lightsail): Remove second call to is_resource_filtered ( #5044 )
2024-09-20 11:39:03 -04:00
Rubén De la Torre Vico
66ac395705
chore(README): update checks summary table ( #5119 )
2024-09-20 11:27:19 -04:00
Sergio Garcia
16a251254e
fix(gcp): solve errors in GCP services ( #5016 )
2024-09-20 11:06:57 -04:00
Sergio Garcia
751958907c
fix(vpc): check all routes tables in subnet ( #5081 )
2024-09-20 10:13:16 -04:00
Sergio Garcia
60012ab19d
chore(deps): update docs dependencies ( #5098 )
2024-09-20 10:13:09 -04:00
dependabot[bot]
65d7ba020b
chore(deps): bump boto3 from 1.35.21 to 1.35.23 ( #5115 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-20 09:13:09 -04:00
Sergio Garcia
9456c6198a
chore(ssm): add trusted accounts variable to ssm check ( #5005 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2024-09-20 09:12:48 -04:00
Sergio Garcia
45ce1a0650
fix(asff): include status extended in ASFF output ( #5097 )
2024-09-20 09:08:13 -04:00
dependabot[bot]
4c5db5295c
chore(deps): bump botocore from 1.35.22 to 1.35.23 ( #5109 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-20 14:18:55 +02:00
dependabot[bot]
a2ad0cdf30
chore(deps): bump azure-identity from 1.17.1 to 1.18.0 ( #5108 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-20 13:29:43 +02:00
dependabot[bot]
0c70a64e84
chore(deps): bump slack-sdk from 3.33.0 to 3.33.1 ( #5107 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-20 11:57:41 +02:00
Mario Rodriguez Lopez
73c96f8346
feat(sagemaker): Ensure SageMaker Endpoint Production Variants have Initial Instance Count greater than one ( #5045 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-19 15:16:56 -04:00
Amogh Bantwal
0974c5f333
feat(slack): add more information about critical findings ( #5042 )
2024-09-19 14:02:09 -04:00
Hugo Pereira Brito
7db0746416
feat(guardduty): add new check guardduty_rds_protection_enabled ( #5100 )
2024-09-19 13:52:17 -04:00
dependabot[bot]
8f0bf5e896
chore(deps-dev): bump pytest-env from 1.1.4 to 1.1.5 ( #5090 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-19 12:29:43 -04:00
Pedro Martín
57abe1c839
fix(accessanalyzer): refactor accessanalyzer enabled fixer test ( #5026 )
2024-09-19 11:09:03 -04:00
Pablo Lara
3cac32ac78
Merge pull request #60 from prowler-cloud/ack/fix-dockerfile
...
Ack/fix dockerfile
2024-09-19 17:08:13 +02:00
Drew Kerrigan
a5fb1205af
fix(): put line ending back
2024-09-19 10:56:34 -04:00
Drew Kerrigan
41e7dce861
fix(): cleanup comment
2024-09-19 10:55:56 -04:00
Drew Kerrigan
10f68a4630
fix(): ignore local .env file
2024-09-19 10:54:38 -04:00
Drew Kerrigan
94090f6997
fix(): add missing copy commands
2024-09-19 10:54:19 -04:00
Daniel Barranquero
43183962ad
feat(aws): Add new check to ensure RDS instances are not using default database engine ports ( #4973 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-19 10:14:46 -04:00
Daniel Barranquero
87948b458e
feat(guardduty): add new check guardduty_s3_protection_enabled ( #5087 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-19 10:10:39 -04:00
dependabot[bot]
ab5c3eb4f8
chore(deps): bump botocore from 1.35.21 to 1.35.22 ( #5089 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-19 09:30:24 -04:00
Rubén De la Torre Vico
320a2a2c77
feat(awslambda): add new check awslambda_function_vpc_multi_az ( #4816 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-19 09:30:04 -04:00
Sergio Garcia
dbc8e140e3
chore(docs): change ResourceType link of Security Hub ( #5063 )
2024-09-19 07:25:41 -04:00
Pablo Lara
f50f1680df
Merge pull request #57 from prowler-cloud/dependabot/npm_and_yarn/next-14.2.12
...
chore(deps): bump next from 14.2.7 to 14.2.12
2024-09-19 13:01:34 +02:00
Pablo Lara
fd1832243e
Merge pull request #59 from prowler-cloud/PRWLR-4823-add-menu-items
...
chore: add new items to the menu
2024-09-19 12:51:48 +02:00
Pablo Lara
52e8ba702d
chore: add new items to the menu
2024-09-19 12:43:02 +02:00
Pablo Lara
ed9bbd30a3
chore: add new items to the menu
2024-09-19 12:41:24 +02:00
Pablo Lara
035d06bbfe
Merge pull request #58 from prowler-cloud/fix/build-errors
...
fix: fix build errors
2024-09-19 09:11:40 +02:00
Pablo Lara
39c6fa9e55
fix: fix build errors
2024-09-19 09:08:22 +02:00
Hugo Pereira Brito
21ac395d4c
fix(elasticache): get correct automatic failover attribute ( #5084 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-18 18:29:43 -04:00
Mario Rodriguez Lopez
8a8c2b5097
feat(ecs): add new check ecs_task_definitions_host_networking_mode_users ( #5088 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-18 18:28:31 -04:00
dependabot[bot]
3bea772c6b
chore(deps): bump slack-sdk from 3.32.0 to 3.33.0 ( #5069 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-18 18:28:20 -04:00
Lefteris
34679c98d6
feat(dms): new check dms_endpoint_ssl_enabled ( #4968 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2024-09-18 17:46:56 -04:00
dependabot[bot]
2b41445d57
chore(deps): bump boto3 from 1.35.19 to 1.35.21 ( #5085 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-18 17:21:02 -04:00
dependabot[bot]
796c87bc93
chore(deps): bump google-api-python-client from 2.145.0 to 2.146.0 ( #5070 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-18 16:32:09 -04:00
dependabot[bot]
a83e08aa9e
chore(deps-dev): bump vulture from 2.11 to 2.12 ( #5071 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-18 13:59:25 -04:00
Jon Young
489ac20141
feat(Findings): add the /findings endpoint ( #38 )
...
* feat(Findings): initial findings model
* fix(Findings): add view, serializers, migration for enums
* fix(Findings): incomplete jsonb_to_tsvector wrapper
will not run as written
* fix(Findings): use Severity and Status enums from prowler SDK
* tests(Findings): add failing view tests
* fix(Finding): add resource relationship
not returning correct data from serializer, missing links
* fix(FindingSerializer): get Scan & Resource relationships to show up
* fix(FindingFilter): add more filter fields
* fix(FindingFilter): filter on provider id
* fix(FindingSerializer): return Resource in relationship
not ResourceFindingMapping
* fix(FindingModel): update migration
* fix(FindingFilter): full text search on findings
* fix(Resources): include Findings in ResourceSerializer
* fix(FindingFilter): expand text search columns
* fix(DbUtils): docstring, not comment
* fix(BaseViews): remove TODO
comment not applicable right now
* fix(Fixtures): add more findings to fixture file
and change on_delete behavior for resource_finding_mapping
* fix(Resources): rename index to match others
* fix(Findings): update Findigns RLS to allow for full CRUD
eventually we'll let users enter a manual finding
which implies INSERT, UPDATE, DELETE
* fix(Findings): use TextChoices directly for Status enum
* fix(FindingSerializer): build a set instead of a list
* consistency in fixtures
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
* fix(API): update v1 spec for findings
---------
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2024-09-18 19:28:03 +02:00
Hugo Pereira Brito
ae794c7c32
feat(cloudfront): Ensure Cloudfront distributions have origin failover configured ( #4868 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-18 13:26:35 -04:00
dependabot[bot]
edc78bfd6b
chore(deps): bump botocore from 1.35.20 to 1.35.21 ( #5073 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-18 13:18:17 -04:00
dependabot[bot]
9263adeb78
chore(deps): bump azure-storage-blob from 12.22.0 to 12.23.0 ( #5072 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-18 12:19:46 -04:00
Prowler Bot
bfdc87723b
chore(regions_update): Changes in regions for AWS services ( #5080 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-18 11:33:01 -04:00
Rubén De la Torre Vico
8d23e81b1c
feat(elb): add new check elb_connection_draining_enabled ( #5014 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-18 10:49:33 -04:00
Daniel Barranquero
f0cd924016
feat(neptune): add new check neptune_cluster_copy_tags_to_snapshots ( #5062 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-18 09:23:44 -04:00
Víctor Fernández Poyatos
9ffde34198
feat(Users): #PRWLR-4717 add /users endpoints and basic auth ( #43 )
...
* feat(SimpleJWT): PRWLR-4717 add djangorestframework-simplejwt dep
* feat(SimpleJWT): PRWLR-4717 add basic configuration and env variables
* feat(Users): PRWLR-4717 add model and security constraints
* feat(Users): PRWLR-4717 add serializers
* feat(Users): PRWLR-4717 add views
* test(Conftest): PRWLR-4717 add user and authenticated client fixtures
* fix(Unit tests): PRWLR-4717 add automated authentication to all unit tests
* fix(Authentication): PRWLR-4717 add authentication class and update tests
* test(Users): PRWLR-4717 add unit tests
* test(Users): PRWLR-4717 add integration tests
* chore(Schema): PRWLR-4717 update API schema
* fix(User): PRWLR-4717 fix password validation
* feat(Validators): PRWLR-4717 add MaxLength password validator
* fix(User): PRWLR-4717 update User model to delete admin fields
* chore(Serializers): PRWLR-4717 add docstrings and update serializers
* chore(Fixtures): PRWLR-4717 add dev user
* chore(Users): PRWLR-4717 raise DRF NotFound instead of returning response
2024-09-18 10:19:44 +02:00
dependabot[bot]
0100b805ee
chore(deps): bump next from 14.2.7 to 14.2.12
...
Bumps [next](https://github.com/vercel/next.js ) from 14.2.7 to 14.2.12.
- [Release notes](https://github.com/vercel/next.js/releases )
- [Changelog](https://github.com/vercel/next.js/blob/canary/release.js )
- [Commits](https://github.com/vercel/next.js/compare/v14.2.7...v14.2.12 )
---
updated-dependencies:
- dependency-name: next
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-09-18 06:34:03 +00:00
Mario Rodriguez Lopez
c425e8249b
fix(inspector2): Ensure Inspector2 is enabled for ECR, EC2, Lambda and Lambda Code ( #5061 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-17 14:01:19 -04:00
Daniel Barranquero
1ece8bbcd6
feat(neptune): add new check neptune_cluster_snapshot_encrypted ( #5058 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-17 13:16:43 -04:00
Daniel Barranquero
5fb2d7c3ce
feat(neptune): add new check neptune_cluster_integration_cloudwatch_logs ( #5048 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-17 12:20:25 -04:00
Prowler Bot
64aebe84fe
chore(regions_update): Changes in regions for AWS services ( #5059 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-17 11:52:41 -04:00
Rubén De la Torre Vico
de831b0abe
chore(AWS): match all AWS resource types with SecurityHub supported types in metadata ( #4882 )
...
Co-authored-by: Sergio <sergio@prowler.com >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-17 11:40:45 -04:00
dependabot[bot]
68af4f6c73
chore(deps): bump botocore from 1.35.19 to 1.35.20 ( #5053 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-17 11:39:24 -04:00
dependabot[bot]
52981b54b9
chore(deps): bump trufflesecurity/trufflehog from 3.82.1 to 3.82.2 ( #5052 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-17 08:36:42 -04:00
dependabot[bot]
a366594714
chore(deps): bump boto3 from 1.35.16 to 1.35.19 ( #5049 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-16 15:16:44 -04:00
Hugo Pereira Brito
1fb36f316b
fix(cloudfront): duplicated link in cloudfront_distributions_https_sni_enabled check ( #5047 )
2024-09-16 15:16:26 -04:00
dependabot[bot]
30ffa8f00b
chore(deps): bump azure-mgmt-containerservice from 31.0.0 to 32.0.0 ( #5036 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-16 13:45:01 -04:00
Prowler Bot
5855918ade
chore(regions_update): Changes in regions for AWS services ( #5041 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-16 13:44:47 -04:00
dependabot[bot]
f9005c875f
chore(deps): bump botocore from 1.35.18 to 1.35.19 ( #5037 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-16 12:52:59 -04:00
Mario Rodriguez Lopez
91bf99ca45
feat(ec2): Ensure EC2 launch templates do not assign public IPs ( #4852 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-16 12:52:40 -04:00
dependabot[bot]
8176063fef
chore(deps): bump dash from 2.18.0 to 2.18.1 ( #5024 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-16 11:25:08 -04:00
Mario Rodriguez Lopez
3373822240
feat(ec2): EBS Volumes Should Be Covered by a Backup Plan ( #5028 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-16 11:23:23 -04:00
Hugo Pereira Brito
7e16702b2f
feat(cloudfront): add cloudfront_distributions_origin_traffic_encrypted check to ensure traffic encryption to custom origins ( #4958 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-16 09:12:37 -04:00
Daniel Barranquero
f54b64f1f8
feat(rds): add new check rds_instance_inside_vpc ( #5029 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-16 08:56:39 -04:00
dependabot[bot]
2c337ab3f6
chore(deps-dev): bump mkdocs-git-revision-date-localized-plugin from 1.2.8 to 1.2.9 ( #5023 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-13 14:44:33 -04:00
dependabot[bot]
5279d937d7
chore(deps): bump botocore from 1.35.17 to 1.35.18 ( #5021 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-13 11:24:55 -04:00
Hugo Pereira Brito
48c31a1616
feat(cloudfront): Add new cloudfront_distributions_s3_origin_access_control check to ensure OAC is configured in distributions ( #4939 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-13 10:51:49 -04:00
Rubén De la Torre Vico
917a2ad0fe
docs(check): change where extract ResourceTypes ( #5030 )
2024-09-13 10:51:09 -04:00
Rubén De la Torre Vico
8cfc4c56cf
docs(dev-guide): refer poetry docs for installation ( #5031 )
2024-09-13 10:45:57 -04:00
Prowler Bot
99e9e42a17
chore(regions_update): Changes in regions for AWS services ( #5027 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-13 10:38:08 -04:00
Jon Young
6a341b88f0
fix(Providers, Resources, Scans): rename provider_id and filter on more provider fields ( #42 )
...
* fix(Providers, Resources, Scans): filter on more provider fields
* Apply suggestions from code review
more python-y
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
---------
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2024-09-13 16:09:09 +02:00
dependabot[bot]
13c95ba131
chore(deps): bump trufflesecurity/trufflehog from 3.81.10 to 3.82.1 ( #5025 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-13 08:59:06 -04:00
LefterisXefteris
600a8c7804
chore(aws): add mixed regions test for s3_access_point_public_access_block ( #4877 )
...
Co-authored-by: Lefteris Gilmaz <lefterisgilmaz@Lefteriss-MacBook-Pro.local >
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-12 15:58:39 -04:00
Hugo Pereira Brito
64fb52fc5e
feat(cloudfront): add new check cloudfront_distributions_custom_ssl_certificate ( #4959 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-12 15:00:48 -04:00
Mario Rodriguez Lopez
92b6e7230d
feat(ec2): Amazon EC2 Instances Should Not Use Multiple ENIs ( #4935 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-12 14:29:36 -04:00
Hugo Pereira Brito
cc8bc781c1
feat(elasticache): Ensure Redis replication groups have automatic failover enabled ( #4853 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-12 12:23:15 -04:00
Hugo Pereira Brito
edbe463d73
feat(cloudfront): Add new check cloudfront_distributions_default_root_object ( #4938 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-12 10:58:24 -04:00
Sergio Garcia
8ace8c01cf
chore(refactor): make Provider generation global ( #4961 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2024-09-12 16:56:58 +02:00
Hugo Pereira Brito
8f37252676
feat(cloudfront): Ensure distributions use SNI to serve HTTPS requests ( #4888 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-12 09:28:26 -04:00
Víctor Fernández Poyatos
1cef6f0db7
feat(Tasks): PRWLR-4826 add task_args to serializer ( #41 )
2024-09-12 09:07:08 -04:00
Mario Rodriguez Lopez
c0c59968bf
feat(ec2): Ensure both VPN tunnels for an AWS Site-to-Site VPN connection are UP ( #4948 )
2024-09-12 08:26:35 -04:00
dependabot[bot]
9f5a909be3
chore(deps): bump msgraph-sdk from 1.6.0 to 1.7.0 ( #5013 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-12 14:10:50 +02:00
dependabot[bot]
90975bdadc
chore(deps): bump pytz from 2024.1 to 2024.2 ( #5012 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-12 11:32:58 +02:00
dependabot[bot]
7d1fad9eb7
chore(deps): bump botocore from 1.35.16 to 1.35.17 ( #5011 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-12 10:50:07 +02:00
dependabot[bot]
983c79ad3b
chore(deps): bump boto3 from 1.35.15 to 1.35.16 ( #5010 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-12 09:16:53 +02:00
Mario Rodriguez Lopez
96e73fcb63
feat(ec2): Amazon EC2 Paravirtual Instance Types Should Not Be Used ( #4922 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-11 15:56:20 -04:00
Pedro Martín
70a3736073
fix(awslamba): add audit config to lambda_client in tests ( #4999 )
2024-09-11 12:15:22 -04:00
Jon Young
f7645e8f25
feat(Resources): add the /resources endpoint ( #34 )
...
* fix(Resources): add basic Resource MVC
* fix(Resources): implement many-to-many tags via through table
* fix(Resources): tsvector & migration
migration needs work, need to create a custom
django migration field to build the GENERATED ALWAYS
column.
Without it, django will complain about the ts column
not exisiting when we try to create an index.
* test(Resources): add tests for /resources views
* fix(Resources): get basic test cases to pass
need to work on tsvector column
and filtering by provider columns like alias, name
* fix(Resources): provide way to get tags as dict
not a list of ResourceTag models
* fix(Resources): annotate with return type
* fix(Resources): rename search field to not conflict with filters
* fix(Resources): filter by provider.id
* fix(Resources): remove filter and sort by provider
must use provider_id first
* fix(Resources): test adding, clearing tags
* fix(Scans): filter by provider_id
* fix(Resources): remove FIXME comments
* fix(Resources): filter and search on tags
* fix(Resources): full text search
* fix(Resources): full text search to include both resources and tags
and get rid of the distinct() query
* fix(Resources): document text search a bit more
* fix(Resources): remove TODO comments
* fix(Resources): move Resource migrations into 0001_initital
* fix(Config): revert to match main
* fix(Resources): use Django's default query builder for full text search
* Apply suggestions from code review
Mostly formatting changes
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
* fix(Resources): just use text search
instead of guessing at allowed split characters for each provider
* fix(Resources): remove unused tests
these cases are covered in parameterized lists
* fix(Resources): set a read-only RLS policy
* fix(Resources): rename add_tags to be upsert_or_delete_tags
* fix(Resources): include primary key on through table
django query builder doesn't like tables without primary keys
* fix(Resources): default xx_at filters to date
instead of date time
* docs(Resources): describe what a Resource is
in API docs
* chore(Resources): rename file to match others
---------
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2024-09-11 18:04:34 +02:00
Pedro Martín
1e8e8ba65c
fix(iam-gcp): add getters in iam_service for gcp ( #4998 )
2024-09-11 11:01:58 -04:00
Pablo Lara
0adb8c142b
Merge pull request #56 from prowler-cloud/PRWLR-4776-Implementing-check-connection-real-CASE
...
Starting implementing check connection and style tweaks for the Provider's table
2024-09-11 16:54:24 +02:00
dependabot[bot]
359a1f2c8e
chore(deps): bump botocore from 1.35.15 to 1.35.16 ( #4989 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-11 10:53:18 -04:00
Pablo Lara
e7eb57375e
feat: the search debounce is working now as expected
2024-09-11 16:49:43 +02:00
Mario Rodriguez Lopez
2e4f8cbfc7
feat(ec2): Ensure not default Network Access Control Lists are used ( #4917 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-11 09:55:18 -04:00
Prowler Bot
482aee0d9d
chore(regions_update): Changes in regions for AWS services ( #4995 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-11 09:52:28 -04:00
Daniel Barranquero
0ae3374e81
feat(aws): Add new check to ensure Aurora MySQL DB Clusters publish audit logs to CloudWatch logs ( #4916 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-11 09:10:49 -04:00
Mario Rodriguez Lopez
ddc088859e
feat(vpc): Ensure Amazon EC2 Is Configured to Use VPC Endpoints Created for the Amazon EC2 Service ( #4872 )
2024-09-11 09:08:25 -04:00
Pablo Lara
d264a16065
Merge branch 'main' into PRWLR-4776-Implementing-check-connection-real-CASE
2024-09-11 15:04:23 +02:00
Pablo Lara
67f572285b
refactor: tweaks styles for providers table
2024-09-11 15:03:51 +02:00
dependabot[bot]
5e3da2d687
chore(deps): bump google-api-python-client from 2.144.0 to 2.145.0 ( #4990 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-11 13:28:13 +02:00
Pedro Martín
1af7f658a8
refactor(azure): remove validate_arguments for CLI ( #4985 )
2024-09-11 13:13:06 +02:00
Pablo Lara
d5d76e248f
Merge pull request #55 from prowler-cloud/update/env-varNames
...
update: update env var names
2024-09-11 09:06:42 +02:00
Pablo Lara
67fcc8ac67
update: update env var names
2024-09-11 09:05:37 +02:00
Pablo Lara
ceca5dd0c4
update: update env var names
2024-09-11 09:03:12 +02:00
dependabot[bot]
1298620da8
chore(deps-dev): bump pytest from 8.3.2 to 8.3.3 ( #4991 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-11 08:59:46 +02:00
Hugo Pereira Brito
75c48cfaa3
refactor(cloudfront): replace origins dictionary with custom Origin class ( #4981 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-10 16:04:57 -04:00
Sergio Garcia
3406a07ae5
fix(audit): solve resources audit ( #4983 )
2024-09-10 15:41:59 -04:00
Sergio Garcia
cc9e1c5af8
chore(dependencies): update boto3 and botocore packages ( #4976 )
2024-09-10 15:36:23 -04:00
Sergio Garcia
0343f01cca
chore(README): update summary table ( #4984 )
2024-09-10 21:17:33 +02:00
dependabot[bot]
cad7985c28
chore(deps-dev): bump moto from 5.0.13 to 5.0.14 ( #4965 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-10 14:36:21 -04:00
Pedro Martín
71030f6f42
fix(main): logic for resource_tag and resource_arn usage ( #4979 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-09-10 14:07:07 -04:00
Daniel Barranquero
6883467d2f
feat(aws): Add new check to ensure RDS DB clusters are encrypted at rest ( #4931 )
2024-09-10 13:40:08 -04:00
Sergio Garcia
2c6944176f
fix(rds): handle new rds arn template function syntax ( #4980 )
2024-09-10 13:24:19 -04:00
dependabot[bot]
2420aedde9
chore(deps): bump cryptography from 43.0.0 to 43.0.1 ( #40 )
...
Bumps [cryptography](https://github.com/pyca/cryptography ) from 43.0.0 to 43.0.1.
- [Changelog](https://github.com/pyca/cryptography/blob/main/CHANGELOG.rst )
- [Commits](https://github.com/pyca/cryptography/compare/43.0.0...43.0.1 )
---
updated-dependencies:
- dependency-name: cryptography
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-10 18:19:21 +02:00
Daniel Barranquero
1ef15f0b24
feat(aws): Add new check to ensure RDS event notification subscriptions are configured for critical database parameter group events ( #4907 )
2024-09-10 11:10:57 -04:00
dependabot[bot]
f5b0583df5
chore(deps-dev): bump pytest-env from 1.1.3 to 1.1.4 ( #4966 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-10 10:17:36 -04:00
Daniel Barranquero
db225e9d2a
feat(aws): Add new RDS check to ensure db instances are protected by a backup plan ( #4879 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-09-10 10:14:40 -04:00
Daniel Barranquero
c9ae9df87f
feat(aws): Add new check to ensure RDS event notification subscriptions are configured for critical database instance events ( #4891 )
2024-09-10 09:26:15 -04:00
Daniel Barranquero
159a090c02
feat(aws): Add new check to ensure RDS event notification subscriptions are configured for critical cluster events ( #4887 )
2024-09-10 09:25:42 -04:00
Daniel Barranquero
605c6770e5
fix(rds): Modify RDS Event Notification Subscriptions for Security Groups Events check ( #4969 )
2024-09-10 09:13:46 -04:00
Pablo Lara
5163bcb72c
chore: add new component for provider ID
2024-09-10 14:13:08 +02:00
Pedro Martín
ae950484ed
fix(aws): make intersection to retrieve checks to execute ( #4970 )
2024-09-10 13:24:35 +02:00
Prowler Bot
c54b815b90
chore(regions_update): Changes in regions for AWS services ( #4971 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-10 12:55:06 +02:00
Pablo Lara
457c845af8
chore: WIP
2024-09-10 11:28:36 +02:00
Pedro Martín
7a937c7708
refactor(provider): move audit and fixer config inside the provider ( #4960 )
2024-09-10 09:48:11 +02:00
dependabot[bot]
d62e74853e
chore(deps-dev): bump mkdocs-git-revision-date-localized-plugin from 1.2.7 to 1.2.8 ( #4967 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-10 09:22:10 +02:00
Pablo Lara
3a87b30140
chore: change delay for debouncedSearchQuery function
2024-09-10 08:35:21 +02:00
Víctor Fernández Poyatos
73330ecb1a
chore/PRWLR-4775 update datetime default filter for date on inserted_at and updated_at API attributes ( #39 )
...
* chore(API): PRWLR-4775 change inserted and updated at filters to filter by date by default
* test(API): PRWLR-4775 replace datetime strings for date
* feat(API): PRWLR-4775 update started_at default behavior and unit tests
2024-09-09 16:52:32 -04:00
Mario Rodriguez Lopez
bab59bc86e
feat(EC2): Change service to adjust the data saved in template_data in LaunchTemplateVersion ( #4848 )
2024-09-09 12:32:39 -04:00
Pablo Lara
b605316560
Merge pull request #54 from prowler-cloud/revert-53-PRWLR-4788-Update-NextJS-version-to-the-latest
...
Revert "Update Nextjs to the latest version"
2024-09-09 18:27:40 +02:00
Pablo Lara
ed116b688f
Revert "Update Nextjs to the latest version"
2024-09-09 18:26:28 +02:00
Víctor Fernández Poyatos
c3346ff605
fix(Docker): #PRWLR-4781 fix docker environment issues and celery worker container connection ( #37 )
...
* build(Dockerfile): PRWLR-4781 remove versions from dockerfile deps
* fix(Docker): PRWLR-4781 fix celery worker container and apply dev fixtures by default
* build(docker-compose): PRWLR-4781 set default django settings to production in worker service
2024-09-09 09:52:06 -04:00
dependabot[bot]
39e8485fc1
chore(deps): bump slack-sdk from 3.31.0 to 3.32.0 ( #4955 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-09 11:10:40 +02:00
Pablo Lara
412d25db30
Merge pull request #53 from prowler-cloud/PRWLR-4788-Update-NextJS-version-to-the-latest
...
update: update Nextjs to the latest version
2024-09-09 09:28:36 +02:00
Pablo Lara
1ed670cf40
update: update Nextjs to the latest version
2024-09-09 09:22:06 +02:00
Prowler Bot
b9f46cafff
chore(regions_update): Changes in regions for AWS services ( #4956 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-09 09:15:40 +02:00
Víctor Fernández Poyatos
ec67fc12e0
feat/PRWLR-4177 Add /tasks endpoints and data model ( #35 )
...
* feat(Backend): PRWLR-4177 add Task model and migrations
* feat(Tasks): PRWLR-4177 add RLSTask class
* feat(API): PRWLR-4177 add Task serializers
* feat(Backend, DB): PRWLR-4177 refactor db variables and add policy on task runner tasks
* feat(API): PRWLR-4177 add Tasks filters and sort fields
* feat(API, Tasks): PRWLR-4177 add deletion tasks and revoke logic to /tasks
* test(Task): PRWLR-4177 add deletion tasks unit tests
* test(Views): PRWLR-4177 add Tasks views unit tests and update outdated ones
* chore(API): PRWLR-4177 improve drf-spectacular annotations
* chore(API): PRWLR-4177 add PROGRESS task state
* chore(API): PRWLR-4177 update spec
* chore(API): PRWLR-4177 remove force query parameter from DELETE /tasks
* feat(Backend): PRWLR-4177 add APITimeoutError and raise when TaskResult is not created
* feat(Backend): PRWLR-4177 add specific error class for task timeouts
2024-09-06 20:47:51 -04:00
Pablo Lara
09ef68e1c5
Merge pull request #52 from prowler-cloud/PRWLR-4626-Implement-newTable-Providers
...
Implement filters, search with the API
2024-09-06 16:47:00 +02:00
Pablo Lara
3cc9910f61
fix: prevent crash when there is no connection with the API
2024-09-06 16:45:01 +02:00
Pablo Lara
3d120b3505
chore: WIP
2024-09-06 16:42:12 +02:00
Jon Young
f5462c9b27
fix(Scans): rename 'type' to 'trigger'. ( #36 )
...
'type' is a reserved word in JSON:API schemas,
and python.
'trigger' more accurately describes the enum value.
2024-09-06 15:13:27 +02:00
Pedro Martín
48377ca865
feat(azure): add custom exception class ( #4871 )
2024-09-06 14:50:27 +02:00
Pedro Martín
4d902e02bb
fix(security-groups): remove RFC1918 from ec2_securitygroup_allow_wide_open_public_ipv4 ( #4951 )
2024-09-06 13:42:28 +02:00
Pedro Martín
e146491d4b
fix(aws): change check metadata ec2_securitygroup_allow_wide_open_public_ipv4 ( #4946 )
2024-09-06 12:31:19 +02:00
Pablo Lara
a30c6520d4
feat: clear all button only appears if there is changes on search params
2024-09-06 11:25:09 +02:00
Pablo Lara
5326ffbcc9
feat: add CustomRegionSelection for the filters
2024-09-06 11:10:14 +02:00
Pablo Lara
ff0ba89a3f
feat: clean all filters button is removing now the sort param
2024-09-06 10:25:57 +02:00
Pablo Lara
bc7c3bd74b
refactor: remove two components and create a new one, reducing code and improving efficiency
2024-09-06 10:20:59 +02:00
Pedro Martín
4eed5c7a99
refactor(check_metadata): move bulk_load_checks_metadata inside class ( #4934 )
2024-09-06 09:50:14 +02:00
dependabot[bot]
f169599a56
chore(deps): bump msgraph-sdk from 1.5.4 to 1.6.0 ( #4940 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2024-09-06 09:49:20 +02:00
Pablo Lara
a9ff875a3a
style: re-style action dropdown
2024-09-06 09:10:41 +02:00
dependabot[bot]
95768baa9e
chore(deps): bump google-api-python-client from 2.143.0 to 2.144.0 ( #4943 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-06 08:24:31 +02:00
Pablo Lara
4e8aae4f9e
feat: add new component for search input
2024-09-06 07:59:35 +02:00
Pablo Lara
1bc6ac06a4
feat: restore datepicker component when the filters are clean
2024-09-05 19:29:07 +02:00
Pablo Lara
122dddea9e
Merge pull request #51 from prowler-cloud/PRWLR-4626-Implement-filtering-Providers
...
Implement sort providers table.
2024-09-05 19:12:05 +02:00
Pablo Lara
97616213db
chore: main filters are working and tweaks styles
2024-09-05 19:05:36 +02:00
Pedro Martín
d8d348f609
feat(kubernetes): add custom exception class ( #4912 )
2024-09-05 16:52:34 +02:00
Pablo Lara
2e09667bab
fix: fix type for SearchParamsProps in all pages
2024-09-05 13:13:02 +02:00
Pablo Lara
bb32af93b2
feat: filters, search and sorting is working as expected
2024-09-05 13:12:20 +02:00
dependabot[bot]
bd336250ee
chore(deps): bump dash from 2.17.1 to 2.18.0 ( #4932 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-05 09:16:51 +02:00
Pedro Martín
a975e96a45
feat(compliance): add method list_compliance_requirements ( #4890 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-09-04 20:35:26 +02:00
Pablo Lara
ac93672752
chore: WIP
2024-09-04 17:10:26 +02:00
Pedro Martín
3933440a08
feat(secrets): improve detect secrets checks and add config ( #4915 )
2024-09-04 16:54:55 +02:00
Prowler Bot
36e7bf0912
chore(regions_update): Changes in regions for AWS services ( #4929 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-09-04 11:45:59 +02:00
dependabot[bot]
897e25dd3c
chore(deps): bump cryptography from 43.0.0 to 43.0.1 ( #4928 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-04 09:46:58 +02:00
Pablo Lara
a1021fbca7
chore: improve sorting
2024-09-04 09:00:18 +02:00
dependabot[bot]
f4a8059f9b
chore(deps): bump cryptography from 43.0.0 to 43.0.1 ( #4923 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-04 08:54:56 +02:00
dependabot[bot]
71d844c101
chore(deps): bump peter-evans/create-pull-request from 6 to 7 ( #4926 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-04 08:53:26 +02:00
Pablo Lara
45f398bf30
chore: add sorting to provider's table
2024-09-03 16:31:05 +02:00
Pedro Martín
c2b2754926
feat(gcp): add custom exceptions clas ( #4908 )
2024-09-03 15:56:49 +02:00
Pedro Martín
cfd4019281
fix(aws): raise ArgumentTypeError for parser ( #4921 )
2024-09-03 13:47:43 +02:00
Pablo Lara
81743c9c29
Merge pull request #50 from prowler-cloud/PRWLR-4627-Implement-zustand-for-global-state
...
Add Zustand for global state management
2024-09-03 07:45:54 +02:00
dependabot[bot]
989fce300d
chore(deps-dev): bump pylint from 3.2.6 to 3.2.7 ( #4920 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-09-03 07:21:52 +02:00
Pablo Lara
d8ae2bf455
feat: integrate Zustand for global state management and apply it to the sidebar
2024-09-02 14:12:42 +02:00
Pablo Lara
2d07186eb1
feat: integrate Zustand for global state management and apply it to the sidebar
2024-09-02 12:41:35 +02:00
Amogh Bantwal
70fdc2693e
feat(html): Add number of muted findings in HTML report #4703 ( #4895 )
2024-09-02 10:13:06 +02:00
Rubén De la Torre Vico
9797c11152
chore(prowler): change all methods from services from format double underscore to single underscore ( #4910 )
2024-09-02 10:07:21 +02:00
Pedro Martín
007c1febf7
fix(metadata): change description from documentdb_cluster_deletion_protection ( #4909 )
2024-09-02 09:59:29 +02:00
Pablo Lara
d1cd8848eb
Merge pull request #49 from prowler-cloud/PRWLR-4698-Following-up-authNext
...
Fix TS types on auth.ts
2024-09-02 07:43:58 +02:00
Pablo Lara
0acfb6040e
feat: fix TS types on auth.ts
2024-09-02 07:33:57 +02:00
Víctor Fernández Poyatos
24857eaa7f
feat/PRWLR-4002 add /scans endpoints (without SDK integration) ( #33 )
...
* feat(Backend): PRWLR-4992 add Scan db model
* feat(API): PRWLR-4002 add viewset and required tools for /scans endpoint
* feat(API): PRWLR-4002 improve /scans filters
* feat(API): PRWLR-4002 add relationships links
* feat(API): PRWLR-4002 implement POST /scan custom logic
* fix(API): PRWLR-4002 fix Scan.type keyword usage
* feat(API): PRWLR-4002 implement PATCH /scans
* feat(API): PRWLR-4002 refactor serializers for write operations
* fix(API): PRWLR-4002 fix providers on ScanSerializer
* test(API): PRWLR-4002 add unit tests for /scans
* feat(Backend, Test): PRWLR-4002 refactor routing and unit tests db connections
* build(CI): PRWLR-4002 update CI env vars for postgres
* fix(Tests): PRWLR-4002 fix close_db_connections fixture
* feat(Backend, API): PRWLR-4002 apply requested changes to Scan model and filters
* chore(Tests): PRWLR-4002 rename pytest fixtures
* feat(Backend): PRWLR-4002 remove unique constraint from Scan model
* fix(Backend, Tests): PRWLR-4002 fix db routing and migration mechanism for tests
* chore(deps): PRWLR-4002 add uuid6 to poetry deps
* chore(Backend): PRWLR-4002 refactor filter methods
* fix(Tests): PRWLR-4002 fix wrong postgres credentials for testing
* feat(API): PRWLR-4002 implement merging mechanism for Scans.scanner_args
* feat(API): PRWLR-4002 implement merging mechanism for Scans.scanner_args
* feat(Backend): PRWLR-4002 add indexes to Scan model
* feat(Backend): PRWLR-4002 remove id index from Scan model (redundant)
* feat(API): PRWLR-4002 add datetime fields to Scan serializer
2024-08-30 14:32:13 -04:00
Sophia Dao
c281f85742
Users Page - Add User Modal, Edit User Modal ( #45 )
...
* feat(users): Add in Add User modal, add in Label component
* feat(users): Make adjustments to Add User modal and Edit user modal
* feat(users): Populate data from mock API
* feat(users): Permissions - do not show team info to users, redirect users
2024-08-30 08:30:10 -05:00
Pepe Fagoaga
163027a49d
chore(aws): Remove token from log line ( #4903 )
2024-08-30 11:50:18 +02:00
Pablo Lara
aa44572be5
Merge pull request #47 from prowler-cloud/update/nextjs-latest
...
Update nextjs and react to the latest version
2024-08-30 10:48:01 +02:00
Pablo Lara
631885e364
feat: update nextjs and react to the latest version
2024-08-30 10:42:11 +02:00
Pepe Fagoaga
80c4802b36
chore(aws_mutelist): Add more Control Tower resources and tests ( #4900 )
2024-08-30 10:13:00 +02:00
dependabot[bot]
285eb45673
chore(deps): bump trufflesecurity/trufflehog from 3.81.9 to 3.81.10 ( #4898 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-30 09:44:12 +02:00
dependabot[bot]
5c2f2ee3b3
chore(deps-dev): bump safety from 3.2.6 to 3.2.7 ( #4899 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-30 09:43:58 +02:00
Pedro Martín
1f83e4fe7b
chore(pull-request): add check for backport ( #4901 )
2024-08-30 09:42:52 +02:00
dependabot[bot]
fed489f9d9
chore(deps): bump micromatch from 4.0.7 to 4.0.8 ( #46 )
...
Bumps [micromatch](https://github.com/micromatch/micromatch ) from 4.0.7 to 4.0.8.
- [Release notes](https://github.com/micromatch/micromatch/releases )
- [Changelog](https://github.com/micromatch/micromatch/blob/master/CHANGELOG.md )
- [Commits](https://github.com/micromatch/micromatch/compare/4.0.7...4.0.8 )
---
updated-dependencies:
- dependency-name: micromatch
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-29 19:06:07 -05:00
Pedro Martín
b29f99441a
feat(aws): add custom exceptions class ( #4847 )
2024-08-29 19:08:47 +02:00
Pedro Martín
82c065bff4
feat(compliance): rename Compliance class and add list_compliance ( #4883 )
2024-08-29 16:55:22 +02:00
Víctor Fernández Poyatos
8183207802
feat/PRWLR-4014 Implement SDK integration for POST /providers/{provider_id}/connection ( #30 )
...
* chore(deps): PRWLR-4014 include prowler library in python deps
* feat(Backend,API): PRWLR-4014 add AWS provider test_connection through celery tasks
* fix(Backend,API): PRWLR-4014 fix model handling in celery tasks
* test(Tasks): PRWLR-4014 add unit tests for celery tasks
* docs(API): PRWLR-4014 update endpoint tag
* feat(Backend): PRWLR-4014 add decorator for tenant dependant Celery tasks
* chore(Backend): PRWLR-4014 remove TODOs and improve docstrings
* feat(Backend): PRWLR-4014 replace timezone.now for datetime.now(timezone.utc)
* feat(Backend): PRWLR-4014 use SET LOCAL for api.tenant_id setting
* feat(Backend, Tasks): PRWLR-4014 refactor tasks module to abstract business logic
* fix(Backend): PRWLR-4014 use set_config for RLS config and set transaction at request dispatch level
* fix(Tasks): PRWLR-4014 fix tasks tenant decorator
2024-08-29 09:53:07 -04:00
Pedro Martín
168d44d14b
docs(fixers): improve docs about fixers ( #4889 )
2024-08-29 14:15:31 +02:00
Pablo Lara
7c76d4efa1
Merge pull request #42 from prowler-cloud/PRWLR-4393-Setup-NextAuth-client-session
...
Setup next auth -
2024-08-29 09:09:44 +02:00
dependabot[bot]
910a72140b
chore(deps): bump google-api-python-client from 2.142.0 to 2.143.0 ( #4884 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-29 07:56:38 +02:00
Pablo Lara
0a090b5694
chore: remove console logs
2024-08-28 12:29:08 +02:00
Pablo Lara
c0a20b0f5d
feat: the logOut button is working nicely now
2024-08-28 12:24:32 +02:00
Prowler Bot
d988877173
chore(regions_update): Changes in regions for AWS services ( #4880 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-08-28 11:45:12 +02:00
Toni de la Fuente
4fd673fd7c
chore(readme): Update Slack invite link ( #4875 )
2024-08-27 21:44:12 +02:00
Pablo Lara
b5a40d07cf
feat: Nextauth is working
2024-08-27 18:37:45 +02:00
Pablo Lara
1985b16824
feat: add nexthauth.d.ts to have the DefaultSession info available
2024-08-27 17:05:09 +02:00
Pepe Fagoaga
1bff2451e5
chore(release): Remove unused step ( #4874 )
2024-08-27 16:40:15 +02:00
Pepe Fagoaga
0921daf18b
chore: remove not used variable ( #4873 )
2024-08-27 16:31:13 +02:00
Pedro Martín
7ff80dbb8f
fix(rds): get the db_instances values ( #4866 )
2024-08-27 13:22:54 +02:00
dependabot[bot]
f487bda1fe
chore(deps): bump numpy from 2.0.1 to 2.0.2 ( #4869 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-27 08:05:57 +02:00
Pablo Lara
06d05ec860
Merge branch 'main' into PRWLR-4393-Setup-NextAuth-client-session
2024-08-26 15:46:03 +02:00
Pablo Lara
11af5e1429
Merge pull request #44 from prowler-cloud/PRWLR-4673-Main-menu-tweaks
...
feat: add new items to the main menu
2024-08-26 15:43:49 +02:00
Pablo Lara
440e95515a
feat: add new items to the main menu
2024-08-26 15:33:07 +02:00
Pepe Fagoaga
d61e999b8f
chore(check_metadata): Rename to CheckMetadata ( #4864 )
2024-08-26 15:25:19 +02:00
Rubén De la Torre Vico
bcb63d0b2d
feat(elb): add new check elb_is_in_multiple_az ( #4829 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-08-26 13:27:08 +02:00
Pepe Fagoaga
71f50422ad
chore(aws-region): Use Prowler Bot ( #4863 )
2024-08-26 11:04:02 +02:00
Rubén De la Torre Vico
2b49aa8e89
chore(readme): Update the number of AWS checks ( #4860 )
2024-08-26 10:09:54 +02:00
Pedro Martín
921b6b1e85
fix(aws): enchance check cloudformation_stack_outputs_find_secrets ( #4859 )
2024-08-26 10:08:19 +02:00
dependabot[bot]
fc155e8368
chore(deps): bump azure-mgmt-compute from 32.0.0 to 33.0.0 ( #4856 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-26 08:01:31 +02:00
Pablo Lara
4cf5d9cb43
chore: WIP
2024-08-23 23:00:41 +02:00
Sophia Dao
c910167ff6
Users Page - Table Row ( #43 )
...
* feat(users): Add in Users page and sidebar
* feat(users): Fix grammar, add in Users action
* feat(users): Add in more API info
* feat(users): Continue work on table, pass data through to table, style skeleton
* feat(users): Format Status column
* feat(users): Style table
* feat(users): Change data, update Users to User
2024-08-23 09:44:48 -05:00
Rubén De la Torre Vico
79f1cf89cf
feat(elb): add new check elb_cross_zone_load_balancing_enabled ( #4818 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-23 10:09:32 -04:00
Pedro Martín
496d4daf01
refactor(azure): refactor azure provider ( #4653 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-23 10:01:35 -04:00
Daniel Barranquero
559c0d4e0b
chore(aws): Change RDS instance type from list to dict ( #4851 )
2024-08-23 09:26:53 -04:00
Pedro Martín
2fda2388bb
refactor(aws): Refactor provider ( #4808 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-08-23 09:19:05 -04:00
Pepe Fagoaga
0f79312c33
chore(backport): Use Prowler-Bot PAT ( #4855 )
2024-08-23 09:18:24 -04:00
Daniel Barranquero
472aea6a91
feat(aws): Add new check to ensure RDS db clusters copy tags to snapshots ( #4846 )
2024-08-23 09:09:52 -04:00
Pedro Martín
0d18406f80
refactor(kubernetes): refactor provider ( #4805 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-23 14:22:03 +02:00
Pedro Martín
05da5d1796
refactor(gcp): refactor GCP provider ( #4790 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-08-23 07:37:02 -04:00
Sergio Garcia
fb449cede8
fix(aws): handle AWS key-only tags ( #4845 )
2024-08-23 13:02:59 +02:00
Pepe Fagoaga
61df2ce0c2
chore(regions_update): Changes in regions for AWS services. ( #4849 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-08-23 11:45:45 +02:00
Pedro Martín
b7e20344a8
docs(is_item_matched): update docstrings for method ( #4836 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-08-23 10:15:15 +02:00
Sergio Garcia
c2552ee508
fix: handle empty input regions ( #4841 )
2024-08-22 13:54:18 -04:00
Hugo Pereira Brito
57f1fa5bfa
feat(s3): add s3_bucket_lifecycle_enabled check ( #4801 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-22 12:24:59 -04:00
Pablo Lara
ed0d975e43
chore: WIP
2024-08-22 18:04:30 +02:00
Rubén De la Torre Vico
0b238243b1
feat(elbv2): add new check elbv2_is_in_multiple_az ( #4800 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-22 11:08:49 -04:00
Sergio Garcia
df405254c6
fix(aws): enhance resource arn filtering ( #4821 )
2024-08-22 16:48:25 +02:00
Daniel Barranquero
460acf2860
feat(aws): Add new RDS check to verify that db instances copy tags to snapshots ( #4806 )
2024-08-22 10:44:26 -04:00
Rubén De la Torre Vico
dec3e652c5
feat(IAM): add new check iam_group_administrator_access_policy ( #4831 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-22 10:14:45 -04:00
Mario Rodriguez Lopez
fc03188bfb
feat(ec2): Client VPN Endpoints Should Have Client Connection Logging Enabled ( #4804 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-08-22 09:57:33 -04:00
Mario Rodriguez Lopez
ff244138d9
feat(ec2): Ensure automatic acceptance of VPC attachment requests is disabled ( #4765 )
2024-08-22 08:26:01 -04:00
Sergio Garcia
903f9c576f
chore(test): improve iam_root_hardware_mfa_enabled tests ( #4833 )
2024-08-22 08:08:25 -04:00
Daniel Barranquero
0005f86a5f
feat(aws): Add new RDS check to ensure db clusters are configured for multiple availability zones ( #4781 )
2024-08-22 07:49:59 -04:00
Daniel Barranquero
a2144ad353
chore(rds): Revert changes on inherited instance checks ( #4827 )
2024-08-22 07:33:25 -04:00
Pepe Fagoaga
5f075b296d
chore(regions_update): Changes in regions for AWS services. ( #4826 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2024-08-22 13:21:45 +02:00
dependabot[bot]
0c7b960e08
chore(deps-dev): bump safety from 3.2.5 to 3.2.6 ( #4825 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-22 08:26:58 +02:00
dependabot[bot]
c65e91f834
chore(deps): bump tj-actions/changed-files from 44 to 45 ( #4822 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-22 08:25:43 +02:00
Pedro Martín
5876fea163
fix(outputs): refactor unroll_tags to use str as tags ( #4817 )
2024-08-21 12:40:46 -04:00
Víctor Fernández Poyatos
8f2bd45872
feat/PRWLR-4413 Add Postgres Enums for Django and update Provider.provider field ( #28 )
...
* feat(db): PRWLR-4413 add Provider Postgres Enum type for Django
* fix(Backend): PRWLR-4413 Fix initial migration for Providers
* feat(Backend): PRWLR-4413 add provider enum to Provider model
* fix(Backend, API): PRWLR-4413 fix ProviderEnum representation
* chore(Backend): PRWLR-4413 remove max_length constraint from provider enum
* chore(Backend): PRWLR-4413 refactor postgres enum creation to avoid boilerplate
* chore(Backend): PRWLR-4413 improve comments
2024-08-21 18:02:46 +02:00
Pablo Lara
063de00e45
chore: create
2024-08-21 14:33:53 +02:00
Pepe Fagoaga
a557d62d84
chore(regions_update): Changes in regions for AWS services. ( #4814 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-08-21 13:07:03 +02:00
Pablo Lara
4b18397e69
chore: add bcrypt dependency
2024-08-21 12:32:33 +02:00
Pablo Lara
52dd08883f
chore: add AuthForm component
2024-08-21 11:53:17 +02:00
dependabot[bot]
f25319f3f6
chore(deps): bump azure-mgmt-web from 7.3.0 to 7.3.1 ( #4813 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-21 11:11:54 +02:00
Víctor Fernández Poyatos
8a2cfea677
feat/PRWLR-4368 Remove TenantMiddleware and set tenant_id at view level ( #31 )
...
* feat(API): PRWLR-4368 remove TenantMiddleware in favour of transaction based setup
* feat(API): PRWLR-4368 override initial request method to perform atomic transactions on RLS viewsets
2024-08-21 10:10:01 +02:00
Pablo Lara
4e104194bc
Merge branch 'main' into PRWLR-4393-Setup-NextAuth-client-session
2024-08-21 09:20:11 +02:00
dependabot[bot]
1e02b05d2d
chore(deps): bump google-api-python-client from 2.141.0 to 2.142.0 ( #4812 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-21 08:33:53 +02:00
Rubén De la Torre Vico
78042063cb
feat(iam): add new check to ensure user does not have policies with admin access ( #4802 )
2024-08-20 11:08:51 -04:00
Pablo Lara
80d05c276f
chore: add basic routing for next auth
2024-08-20 16:23:02 +02:00
Mario Rodriguez Lopez
8129b174f1
feat(CodeBuild): Ensure source repository URLs do not contain sensitive credentials ( #4731 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-20 09:44:55 -04:00
Sophia Dao
f676ca9078
Compliance Page & Compliance Card ( #40 )
...
* feat(compliance): Add in initial shell for Compliance page
* feat(compliance): Mock data in the same way as Services and Providers, create files for rest of page and card structure
* feat(compliance): Add in more data to json, continue building Compliance Card
* feat(compliance): Add in icons for Compliance types, update Compliance skeleton
* feat(compliance): Compliance card/page - add in colors for progress bar, styling
* feat(compliance): Add image definitions to fix CI
* feat(compliance): Add in aws.svg instead of .png
* Fix file suffix
* feat(compliance) remove duplicate spacer
2024-08-20 08:30:36 -05:00
Daniel Barranquero
3f78fb4220
feat(aws): Add new RDS check for deletion protection enabled on clusters ( #4738 )
2024-08-20 09:07:11 -04:00
Pedro Martín
e11bb478d6
fix(mutelist): change logic for tags in aws mutelist ( #4786 )
2024-08-20 07:38:06 -04:00
Pablo Lara
967158f216
Merge pull request #41 from prowler-cloud/PRWLR-4104-Overview-Page-Findings-by-Status-and-Severity-Chart
...
chore: adjusted the gaps a bit and centered it along the X-axis for now
2024-08-20 10:08:30 +02:00
Pablo Lara
3b621e73f6
chore: adjusted the gaps a bit and centered it along the X-axis for now
2024-08-20 10:06:03 +02:00
Pablo Lara
357c9b0813
Merge pull request #39 from prowler-cloud/PRWLR-4104-Overview-Page-Findings-by-Status-and-Severity-Chart
...
Graphs for finding by status and severity
2024-08-20 10:03:51 +02:00
dependabot[bot]
dec5fb6428
chore(deps-dev): bump mkdocs-git-revision-date-localized-plugin from 1.2.6 to 1.2.7 ( #4796 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-20 09:34:40 +02:00
dependabot[bot]
256ccfea79
chore(deps-dev): bump moto from 5.0.12 to 5.0.13 ( #4795 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-20 08:16:18 +02:00
Rubén De la Torre Vico
1a8bc14587
feat(awslambda): New check to ensure that a function is inside VPC ( #4783 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-19 14:22:21 -04:00
Rubén De la Torre Vico
8483486095
chore(elbv2): Add SecurityHub link to elbv2_ssl_listeners metadata ( #4787 )
2024-08-19 13:06:34 -04:00
Rubén De la Torre Vico
7aaecbabab
chore(elbv2): add SecurityHub link to elbv2_desync_mitigation_mode metadata ( #4791 )
2024-08-19 13:04:48 -04:00
Rubén De la Torre Vico
5cc9554c23
chore(awslambda): Enhance function public access check called from other resource ( #4679 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-19 13:03:30 -04:00
Hugo Pereira Brito
5d42ae6e6f
feat(s3): add s3_bucket_cross_region_replication check ( #4761 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-08-19 12:42:42 -04:00
Sergio Garcia
38b73fb0c0
feat(kubernetes): add a test_connection method ( #4684 )
2024-08-19 12:12:00 -04:00
Sergio Garcia
84a76f4535
feat(gcp): add a test_connection method ( #4616 )
...
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
2024-08-19 12:11:20 -04:00
Rubén De la Torre Vico
a126fd82b3
fix(ec2): Manage UnicodeDecodeError when reading user data ( #4785 )
2024-08-19 11:34:39 -04:00
Pablo Lara
71a56031e2
chore: aling to the middle for charts components for now
2024-08-19 17:13:15 +02:00
Pablo Lara
d714213cc2
chore: fix lint error
2024-08-19 16:55:00 +02:00
Pablo Lara
33a5556b8a
#PRWLR-4106: modify gap for attack surface component
2024-08-19 16:49:44 +02:00
Pablo Lara
a864c76955
feat: add attack surface component
2024-08-19 16:43:45 +02:00
Pablo Lara
109a477f9e
chore: fix English typo error
2024-08-19 16:42:44 +02:00
Pablo Lara
c159fb1dac
feat: update chart dependency to fix an error
2024-08-19 16:40:46 +02:00
Pablo Lara
52e21a020e
feat: add container class to fit all resolutions
2024-08-19 16:40:12 +02:00
Pablo Lara
9296e0cc0d
chore: add severity's colors
2024-08-19 16:39:15 +02:00
Pablo Lara
f61ed5ddf5
chore: simplify AttackSurface component
2024-08-19 12:14:17 +02:00
Pablo Lara
f236d2087a
feat: Attack Surface component is ready
2024-08-19 12:11:50 +02:00
Rubén De la Torre Vico
bf139138e0
chore(azure): Fix CIS 2.1 mapping ( #4760 )
2024-08-19 11:44:34 +02:00
Pablo Lara
441945e075
feat: Status chart is ready
2024-08-19 10:52:44 +02:00
dependabot[bot]
0fcf4243f5
chore(deps): bump boto3 from 1.34.160 to 1.34.162 ( #4778 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-19 09:14:39 +02:00
dependabot[bot]
bbb0248bc1
chore(deps): bump google-api-python-client from 2.140.0 to 2.141.0 ( #4751 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-16 12:11:28 -04:00
Sergio Garcia
e6581255c2
fix(iam): update logic of Root Hardware MFA check ( #4726 )
2024-08-16 11:49:30 -04:00
Sergio Garcia
717932ae26
fix(aws): run Prowler as IAM Root or Federated User ( #4712 )
2024-08-16 11:49:14 -04:00
Sergio Garcia
3f56731e6d
fix(version): update version flag logic ( #4688 )
2024-08-16 11:48:57 -04:00
Pepe Fagoaga
0f837f658e
chore(regions_update): Changes in regions for AWS services. ( #4753 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-08-16 11:45:12 -04:00
Sergio Garcia
b70977163e
fix(ecr): change log level of non-scanned images ( #4747 )
2024-08-16 11:43:04 -04:00
Sergio Garcia
98fc624010
fix(ecr): handle non-existing findingSeverityCounts key ( #4746 )
2024-08-16 11:42:53 -04:00
dependabot[bot]
ccb755340f
chore(deps): bump botocore from 1.34.160 to 1.34.162 ( #4758 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-16 11:28:04 -04:00
Mario Rodriguez Lopez
49ff901195
feat(EC2): Add new check for security group port restrictions ( #4594 )
2024-08-16 09:43:00 -04:00
dependabot[bot]
e7d0d49809
chore(deps): bump trufflesecurity/trufflehog from 3.81.8 to 3.81.9 ( #4756 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-16 09:35:08 -04:00
Hugo Pereira Brito
47bb97961c
chore(cloudtrail): add remediation link to check cloudtrail_s3_dataevents_read_enabled ( #4764 )
2024-08-16 09:33:09 -04:00
Hugo Pereira Brito
1178317567
chore(cloudtrail): add remediation link to check cloudtrail_s3_dataevents_write_enabled ( #4762 )
2024-08-16 09:32:35 -04:00
dependabot[bot]
edd0dd1080
chore(deps): bump boto3 from 1.34.159 to 1.34.160 ( #4750 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-16 09:18:48 -04:00
Pablo Lara
26ab6513a2
fix: resolve casing conflict for Chart.tsx
2024-08-16 12:44:12 +02:00
Pablo Lara
b0ec7a2a82
fix: temporary rename to resolve casing conflict
2024-08-16 12:43:02 +02:00
Pablo Lara
caa5e7dd96
chore: add recharts library
2024-08-16 11:21:29 +02:00
Pablo Lara
75f4f0d43a
chore: update tailwind-merge dependencie
2024-08-16 11:16:42 +02:00
Pablo Lara
6ea3057b23
feat: create CustomBox component
2024-08-16 10:59:09 +02:00
Pablo Lara
1724e25c3b
Merge pull request #38 from prowler-cloud/PRWLR-4375-Services-Page-Card
...
Services Page
2024-08-15 09:15:43 +02:00
Pablo Lara
5af439d926
feat: add Skeleton for services page
2024-08-15 09:09:43 +02:00
Pablo Lara
40991c4b7e
Merge branch 'main' into PRWLR-4375-Services-Page-Card
2024-08-15 08:41:05 +02:00
Pablo Lara
614548f58a
chore: adjust breakpoints for improved responsiveness
2024-08-15 08:29:03 +02:00
Pablo Lara
d7fe3595d3
chore: Add breakpoint to optimize layouts for large screens
2024-08-15 08:16:52 +02:00
Pablo Lara
088b4fa4fe
rename: rename ServiceCard component
2024-08-15 08:16:15 +02:00
Pablo Lara
ca3da473d7
chore: add input for muted findings
2024-08-14 16:29:52 +02:00
Hugo Pereira Brito
ae1b114a13
refactor(s3): Changed buckets variable type form list to dict ( #4742 )
2024-08-14 10:28:06 -04:00
dependabot[bot]
3c9c28f351
chore(deps): bump botocore from 1.34.159 to 1.34.160 ( #4735 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-14 10:20:15 -04:00
Pablo Lara
11518a0806
chore: style tweaks
2024-08-14 16:01:56 +02:00
dependabot[bot]
93e6751e35
chore(deps): bump boto3 from 1.34.158 to 1.34.159 ( #4734 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-14 09:30:11 -04:00
Pablo Lara
ebd3bb386c
feat: mock the API for services page and creating components
2024-08-14 15:21:52 +02:00
Sophia Dao
afc4189577
Findings Page - Findings Card Components ( #37 )
2024-08-14 08:06:27 -05:00
Daniel Barranquero
680781656b
feat(aws): Add new RDS check to verify that cluster minor version upgrade is enabled ( #4725 )
2024-08-14 09:04:27 -04:00
Pepe Fagoaga
21382efd07
chore(regions_update): Changes in regions for AWS services. ( #4739 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-08-14 08:31:50 -04:00
Hugo Pereira Brito
097e61ab9d
feat(elasticache): Ensure Redis Cache Clusters Automatically Install Minor Updates ( #4699 )
2024-08-14 08:28:16 -04:00
Pablo Lara
4c0a14b96c
chore: update components with the new paths
2024-08-14 09:52:03 +02:00
Pablo Lara
8dba9a7d9e
feat: add kubernetes as a supported provider
2024-08-14 09:50:33 +02:00
Pablo Lara
891c171247
feat: add providers-badge component for global use and filter components
2024-08-14 09:06:47 +02:00
Víctor Fernández Poyatos
308f52c6f9
build(deps): bump gunicorn version to 23.0.0 ( #29 )
2024-08-13 16:28:39 +02:00
Daniel Barranquero
52d83bd83b
feat(aws): Split the checks that mix RDS Instances and Clusters ( #4730 )
2024-08-13 10:16:50 -04:00
dependabot[bot]
49cfe15abc
chore(deps): bump botocore from 1.34.158 to 1.34.159 ( #4728 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-13 09:03:15 -04:00
Mario Rodriguez Lopez
0ef30c655a
fix(ACM): Change check logic to scan only in use certificates ( #4732 )
2024-08-13 08:39:27 -04:00
Daniel Barranquero
e2d211c188
feat(aws): Add new Neptune check for cluster snapshot visibility ( #4709 )
2024-08-13 08:27:35 -04:00
Daniel Barranquero
62a1d91869
feat(aws): Add new CodeBuild check to validate environment variables ( #4632 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-08-13 08:15:45 -04:00
dependabot[bot]
8c1347323e
chore(deps): bump boto3 from 1.34.157 to 1.34.158 ( #4727 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-13 08:13:00 -04:00
Pablo Lara
092ad10c56
chore: add all icons for services
2024-08-13 10:12:48 +02:00
Mario Rodriguez Lopez
cb807e4aed
feat(DocumentDB): Add new DocumentDB check for cluster snapshot visibility ( #4702 )
2024-08-12 14:05:04 -04:00
Pablo Lara
c492d25f4c
Prwlr 4408 clean area labels warning in the console tab ( #36 )
...
* feat: remove 2 high severity vulnerabilities
* chore: solve accesibility warnings
* feat: all accesibility warnings have been solved
2024-08-12 11:41:17 -05:00
dependabot[bot]
bcc8d5f1fe
chore(deps-dev): bump safety from 3.2.4 to 3.2.5 ( #4722 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio <sergio@prowler.com >
2024-08-12 10:03:00 -04:00
dependabot[bot]
59acd303fb
chore(deps): bump botocore from 1.34.157 to 1.34.158 ( #4721 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-12 08:40:42 -04:00
dependabot[bot]
0675cc8fdb
chore(deps): bump boto3 from 1.34.156 to 1.34.157 ( #4719 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-12 08:02:17 -04:00
dependabot[bot]
ed27491118
chore(deps): bump trufflesecurity/trufflehog from 3.81.7 to 3.81.8 ( #4720 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-12 07:59:29 -04:00
Víctor Fernández Poyatos
4f99518d52
fix(Dockerfile): add curl-dev to base image ( #27 )
2024-08-12 12:34:55 +02:00
dependabot[bot]
abb28af68e
chore(deps): bump aiohttp from 3.9.5 to 3.10.2 ( #4713 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-09 14:52:42 -04:00
Rubén De la Torre Vico
18885d0cd7
chore(ec2): Change security groups to dict ( #4700 )
2024-08-09 14:40:34 -04:00
Pedro Martín
ca56ac4e77
feat(azure): add test_connection method ( #4615 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-08-09 14:38:12 -04:00
Pedro Martín
8f2b39b3ce
fix(iam): handle no arn serial numbers for MFA devices ( #4697 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-08-09 12:57:34 -04:00
Jon Young
a2ab216531
chore(Celery): add basic Celery worker with broker only ( #20 )
...
* chore(Celery): add basic Celery worker with broker only
* chore(Celery): saving progress. Not able to schedule tasks
* fix(Celery): add celery app for use by django
* fix(Celery): register tasks
* fix(Docker): add celery workers to docker-compose
* chore(Celery): add django-celery-results backend
to store results using Django ORM
* fix(Celery): get app config the correct way
* fix(Docker): start connecting docker Celery workers to Valkey
not yet operational
* fix(Celery): get celery & django to work in docker-compose
* docs(Celery): document how to run Celery in development environment
includes changes to support the configuration and deployment
of Celery worker and its dependencies, Valkey and Postgres.
* fix(GHA): add valkey to CI services
* fix(GHA): add valkey to CI services
* fix(GHA): add valkey-cli ping to CI services
* fix(GHA): use right port for valkey
* fix(Views): remove debug task code
* test(Celery): start adding celery task tests
not yet working!
* fix(pyproject): rollback django upgrade
* fix(docker): updated docker runtime and env vars
based on feedback from #20
* fix(Dockerfile): include dependencies for psutil
psutil was introduced by pytest-celery
* fix(Backend): PRWLR-4013 fix celery settings structure
* fix(Celery): update celery app to work with new settings structure
* fix(Views): remove debug task code
* fix(Config): remove debug code
* fix(Celery): update celery app name when running worker
---------
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2024-08-09 16:47:35 +02:00
Sophia Dao
7ab46d61b5
Findings page Severity component ( #35 )
...
* feat(findings): Severity and Status badge WIP
* feat(findings): Status and Severity badge changes
* Fix font color for dark mode
2024-08-09 09:16:55 -05:00
Pablo Lara
b5928be876
Merge pull request #32 from prowler-cloud/PRWLR-4409-Pagination-and-sorting-in-the-Provider-table
...
Add Pagination component and DataTableColumnHeader component
2024-08-09 16:15:11 +02:00
Pablo Lara
abc2a3fa72
chore: solve conflicts with main branch
2024-08-09 13:10:52 +02:00
Pablo Lara
10fc131e13
feat: remove dependency
2024-08-09 13:06:09 +02:00
Pepe Fagoaga
761eebac1e
feat(aws): Add a test_connection method ( #4563 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2024-08-09 12:01:40 +02:00
Pablo Lara
5bb3c012c9
feat: add functionality to the Pagination component
2024-08-09 11:54:58 +02:00
Pepe Fagoaga
8bdff0d681
fix(backport): Workaround not to fail if no backport is needed ( #4707 )
2024-08-09 09:56:02 +02:00
dependabot[bot]
55e0656375
chore(deps): bump botocore from 1.34.156 to 1.34.157 ( #4704 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-09 07:56:26 +02:00
Sophia Dao
b5b2e225ce
Findings page Status component ( #34 )
...
* feat(findings): Severity and Status badge WIP
* Remove SeverityBadge from PR
2024-08-08 15:04:47 -05:00
Pablo Lara
bed2b1e7f7
feat: add Pagination - WIP
2024-08-08 20:08:11 +02:00
dependabot[bot]
6d48265618
chore(deps): bump django from 5.0.7 to 5.0.8 ( #33 )
...
Bumps [django](https://github.com/django/django ) from 5.0.7 to 5.0.8.
- [Commits](https://github.com/django/django/compare/5.0.7...5.0.8 )
---
updated-dependencies:
- dependency-name: django
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-08 10:51:52 -05:00
dependabot[bot]
43c9e70a65
chore(deps): bump django from 5.0.7 to 5.0.8 ( #26 )
...
Bumps [django](https://github.com/django/django ) from 5.0.7 to 5.0.8.
- [Commits](https://github.com/django/django/compare/5.0.7...5.0.8 )
---
updated-dependencies:
- dependency-name: django
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-08 10:57:10 -04:00
Víctor Fernández Poyatos
e2fc83c81b
docs(README): add migration and fixtures commands ( #23 )
...
* docs(README): add migration and fixtures commands
* docs(README): add env variables info
2024-08-08 10:56:03 -04:00
dependabot[bot]
e666b66ec0
chore(deps): bump boto3 from 1.34.154 to 1.34.156 ( #4698 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-08 11:54:40 +02:00
Pedro Martín
cdb4f73803
docs(developer-guide): add info about docstrings ( #4701 )
2024-08-08 11:41:32 +02:00
dependabot[bot]
b4c7345124
chore(deps): bump botocore from 1.34.155 to 1.34.156 ( #4694 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-08 10:49:13 +02:00
dependabot[bot]
af8cc37eea
chore(deps): bump trufflesecurity/trufflehog from 3.81.6 to 3.81.7 ( #4693 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-08 10:48:41 +02:00
Sophia Dao
ae8098d53e
Findings card initial setup ( #31 )
...
* feat(findings): WIP - add on click for row, select one row at a time, pass ID to function
* feat(findings) More WIP for Findings Card - add in dummy data, pass selected row into card
* feat(findings): Pass selected row through
* Fix additional merge conflict
* feat(findings): Update to new file structure
* feat(findings): Hook up initial card with hard-coded data as a sidepanel that expands when a row element is clicked
* Merge main
2024-08-07 17:26:32 -05:00
Víctor Fernández Poyatos
857edd9aa6
chore(Backend,API): PRWLR-4341 restructure project based on versions ( #25 )
2024-08-07 16:40:18 -04:00
Sergio Garcia
28bed98ee4
chore(version): update version logic in Prowler ( #4654 )
2024-08-07 18:15:10 +02:00
Sergio Garcia
3d39eb7db6
chore(backport): update backport PR title ( #4686 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-08-07 16:59:47 +02:00
Pepe Fagoaga
2c5f2e9f5c
chore(labeler): Run also for v4.* ( #4687 )
2024-08-07 10:30:49 -04:00
Hugo Pereira Brito
5ce54e5605
feat(aws): Add new S3 check for public access block configuration in access points ( #4608 )
2024-08-07 10:23:12 -04:00
Daniel Barranquero
6c029a9d7d
feat(aws): Add new KMS check to prevent unintentional key deletion ( #4595 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-08-07 09:15:22 -04:00
Sergio Garcia
96f893c3ec
chore(version): update master version ( #4681 )
2024-08-07 14:53:45 +02:00
Pepe Fagoaga
f0047cf5a7
chore(actions): Run for v4.* branch ( #4682 )
2024-08-07 14:11:38 +02:00
Mario Rodriguez Lopez
1b18aef0f0
feat(acm): Add new check for insecure algorithms in certificates ( #4551 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-07 08:00:24 -04:00
Pablo Lara
ca3d076607
feat: add Pagination component and DataTableColumnHeader component
2024-08-07 13:56:36 +02:00
dependabot[bot]
80e13bffa2
chore(deps): bump botocore from 1.34.154 to 1.34.155 ( #4665 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-07 11:33:45 +02:00
dependabot[bot]
384d16749c
chore(deps): bump azure-storage-blob from 12.21.0 to 12.22.0 ( #4664 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-07 11:01:14 +02:00
Pepe Fagoaga
9c4ba1183b
chore(regions): Update labels for backporting ( #4678 )
2024-08-07 11:00:41 +02:00
Pepe Fagoaga
40a88e07d1
chore(backport): Automate all the things! ( #4669 )
2024-08-07 10:40:14 +02:00
dependabot[bot]
692ed760e0
chore(deps): bump google-api-python-client from 2.139.0 to 2.140.0 ( #4666 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-07 10:26:48 +02:00
Jon Young
35128b89b1
chore(API): rename project to be Prowler API ( #22 )
2024-08-07 10:05:05 +02:00
Pablo Lara
157c475f5c
Merge pull request #30 from prowler-cloud/PRWLR-4410-Refactor-the-index.ts-file-for-exporting-Components
...
Refactor the index.ts file for exporting components
2024-08-07 09:16:27 +02:00
Pablo Lara
4483baae19
chore: rename DataTable to DataTableProvider for more specificity
2024-08-07 09:14:17 +02:00
Pablo Lara
3511cd977a
chore: remove the old modal component
2024-08-07 09:06:38 +02:00
Pablo Lara
d69c35fa3c
chore: solve conflicts with main branch
2024-08-07 09:02:41 +02:00
dependabot[bot]
6c3e451f32
chore(deps): bump boto3 from 1.34.152 to 1.34.154 ( #4663 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-07 09:01:28 +02:00
dependabot[bot]
24f511b567
chore(deps): bump trufflesecurity/trufflehog from 3.81.5 to 3.81.6 ( #4662 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-07 09:00:56 +02:00
Pablo Lara
dee7e621de
Merge pull request #29 from prowler-cloud/PRWLR-4141-Providers-Page-Add-Providers-modal-2
...
Providers page add providers modal -
2024-08-07 08:51:19 +02:00
Pablo Lara
0ae248926d
chore: fix provider name
2024-08-07 08:50:14 +02:00
Sergio Garcia
89c6652bd6
fix(tags): handle AWS dictionary type tags ( #4656 )
2024-08-07 08:34:57 +02:00
dependabot[bot]
8aca456285
chore(deps-dev): bump moto from 5.0.11 to 5.0.12 ( #4642 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-08-06 14:59:29 -04:00
Rubén De la Torre Vico
824a465667
test(awslambda): Cover possible checks with moto instead MagicMock ( #4609 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-08-06 13:40:51 -04:00
Amogh Bantwal
086c203e6b
feat(aws) Add check to make sure EKS clusters have a supported version ( #4604 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-06 13:40:05 -04:00
Víctor Fernández Poyatos
4371ad1535
feat/PRWLR-3999 Implement providers endpoints ( #21 )
...
* feat(Backend): PRWLR-3989 add RLS to postgresql db and base models
* feat(API): PRWLR-3989 add TenantMiddleware
* chore(API, Backend): PRWLR-3989 create new db user without RLS bypass on migrations
* chore(Backend): PRWLR-3989 fix RLS bypasser for POST requests
* fix(Backend): PRWLR-3989 fix user permissions when migrating new models
* chore(Backend): PRWLR-3989 add testing view for RLS manual tests
* feat(API): PRWLR-3989 add tenant_id to API logging
* chore(API, Backend): PRWLR-3989 add TODOs
* test(API): PRWLR-3989 add new middleware unit tests
* chore(API): PRWLR-3989 refactor RLS code
* fix(tests): PRWLR-3989 fix testing db connector
* chore: PRWLR-3989 add references to JIRA tickets
* fix: PRWLR-3989 remove bypass logic and fix serializers
* fix: PRWLR-3989 improve drop SQL query for RLS models
* feat(Backend): PRWLR-3989 add specific permissions on each model
* fix(Backend): PRWLR-3989 fix database routing and grant select perms
* fix(test): PRWLR-3989 fix routing issues with unit tests
* chore: PRWLR-3989 remove references to JIRA tickets
* feat(Backend): PRWLR-3999 add Provider model
* feat: PRWLR-3999 add providers view logic
* fix: PRWLR-3999 fix unique index fields
* feat(API): PRWLR-3999 add custom exception handlers
* feat(API): PRWLR-3999 add /providers/{provider_id}/connection endpoint
* test(API): PRWLR-3999 add base unit tests for providers
* fix(API, Backend): PRWLR-3999 fix bugs after rebase
* chore(API, docker): PRWLR-3999 add dev feats for demo
* feat(API): PRWLR-3999 add drf-spectacular-jsonapi and improve docs
* test(API): PRWLR-3999 add providers unit tests
* chore(Backend): PRWLR-3989 adjust privileges for user on table tenant
* chore: PRWLR-3999 rename model custom validation error
* chore: PRWLR-3999 remove Test references
* chore: PRWLR-3999 update API v1 spec
* fix: PRWLR-3999 apply requested changes to filter and models
* feat: PRWLR-3999 add validation to PATCH /providers payload
* fix: PRWLR-3999 fix providers enum description
* chore: add more providers fixtures
* fix: PRWLR-3999 make providers.alias optional
2024-08-06 12:39:08 -04:00
Pablo Lara
4137eaec6d
chore: fix typo
2024-08-06 17:24:18 +02:00
Pablo Lara
14ff4282c0
feat: refactor the modal's content for providers
2024-08-06 14:59:19 +02:00
Pablo Lara
b7d324f1b0
feat: add modal and functionality for adding providers
2024-08-06 14:59:04 +02:00
Pablo Lara
81bf3fc15f
chore: adding a new index.ts file to improve the way we're exporting components (ui)
2024-08-06 12:05:10 +02:00
Pablo Lara
22ebe00cf6
chore: adding a new index.ts file to improve the way we're exporting components (providers)
2024-08-06 11:56:00 +02:00
Pablo Lara
3ae00cadb9
Merge pull request #27 from prowler-cloud/PRWLR-4365-Implement-CRUD-methods-for-Providers-page-using-real-API
...
Implement crud methods for providers page using real api
2024-08-06 09:43:19 +02:00
dependabot[bot]
f746a9e742
chore(deps-dev): bump flake8 from 7.1.0 to 7.1.1 ( #4643 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-06 09:19:05 +02:00
Pepe Fagoaga
90810d9098
chore: change SaaS for Prowler ( #4651 )
2024-08-06 08:56:04 +02:00
Pepe Fagoaga
75b3f52309
docs(mutelist): Add service_* documentation ( #4650 )
2024-08-06 08:55:55 +02:00
dependabot[bot]
8ecb4696d4
chore(deps): bump botocore from 1.34.152 to 1.34.154 ( #4641 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-06 08:44:43 +02:00
dependabot[bot]
7b22c9c97b
chore(deps): bump trufflesecurity/trufflehog from 3.81.4 to 3.81.5 ( #4645 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-06 08:24:27 +02:00
dependabot[bot]
84f0542b98
chore(deps-dev): bump coverage from 7.6.0 to 7.6.1 ( #4640 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-06 08:07:24 +02:00
Rubén De la Torre Vico
8faa40dfb6
feat(opensearch): Add domain inside VPC case for public domain check ( #4570 )
2024-08-05 13:04:49 -04:00
Pepe Fagoaga
47f7555d05
refactor(mutelist): Remove re.match and improve docs ( #4637 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-08-05 12:59:30 -04:00
Pedro Martín
96d9cbd8af
fix(gcp): check cloudsql sslMode ( #4635 )
2024-08-05 12:12:00 -04:00
Pedro Martín
c8bc54aa48
fix(gcp): check next rotation time in KMS keys ( #4633 )
2024-08-05 11:31:38 -04:00
Rubén De la Torre Vico
fad0b8995a
chore(aws): Convert ELB and ELBv2 attributes to dictionaries ( #4575 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-08-05 11:14:19 -04:00
Pablo Lara
1992ef050a
feat: refactor the modal's content for providers
2024-08-05 16:00:02 +02:00
dependabot[bot]
d4b6fa27e2
chore(deps): bump msgraph-sdk from 1.5.3 to 1.5.4 ( #4629 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-05 15:02:49 +02:00
dependabot[bot]
a37723fd32
chore(deps): bump boto3 from 1.34.151 to 1.34.152 ( #4628 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-05 08:14:55 -04:00
Pablo Lara
e7f79589d4
feat: add modal and functionality for adding providers
2024-08-05 13:09:44 +02:00
Pedro Martín
fc5eefe532
fix(scan_test): change resource_tags to a dict ( #4631 )
2024-08-05 10:02:41 +02:00
Pablo Lara
ff3f90ac94
chore: replace CrossIcon for the toast and change variants when error
2024-08-05 09:39:18 +02:00
Pedro Martín
ffd9b2a2f6
chore(scan-class): add new scan class ( #4564 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-08-05 08:21:13 +02:00
dependabot[bot]
112f48ac08
chore(deps-dev): bump black from 24.4.2 to 24.8.0 ( #4627 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-05 08:19:54 +02:00
Sergio Garcia
95ec3d91b4
refactor(tags): convert tags to a dictionary ( #4598 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-08-05 08:17:43 +02:00
Sergio Garcia
b0709d08cd
fix(gcp): use KMS key id in checks ( #4610 )
2024-08-05 08:16:56 +02:00
dependabot[bot]
a0e3cb87a4
chore(deps): bump trufflesecurity/trufflehog from 3.80.5 to 3.81.4 ( #4625 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-05 08:15:49 +02:00
Pepe Fagoaga
1b9cc9e3db
chore(regions_update): Changes in regions for AWS services. ( #4630 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-08-05 08:14:49 +02:00
Jon Young
d9fb67bc43
docs(Tutorials): include volume option when running dashboard in docker ( #4620 )
2024-08-05 08:06:24 +02:00
Pablo Lara
dff3462113
fix: solve conflicts with main branch
2024-08-05 05:55:18 +02:00
Pablo Lara
a2172d12f4
fix: run the lint fix to be able to build the app
2024-08-04 20:02:55 +02:00
Pablo Lara
ffb91d2733
feat: method POST to check the provider connection is working
2024-08-04 18:55:20 +02:00
Pablo Lara
485482c868
feat: GET and POST provider are working as expected and the error is shown correctly
2024-08-04 18:18:53 +02:00
Pablo Lara
b16a7150fa
chore: add deleteProvider action
2024-08-04 11:55:34 +02:00
Pablo Lara
00613cdda3
add Toast library and handling server errors - WIP
2024-08-02 18:43:58 +02:00
Pablo Lara
32ecc5dbad
Merge pull request #26 from prowler-cloud/PRWLR-4377-Findings-Page-Findings-Row
...
Findings Table - Initial Setup
2024-08-02 17:57:28 +02:00
Víctor Fernández Poyatos
e1a12bcb14
feat/PRWLR-3989 Add RLS full implementation ( #18 )
...
* feat(Backend): PRWLR-3989 add RLS to postgresql db and base models
* feat(API): PRWLR-3989 add TenantMiddleware
* chore(API, Backend): PRWLR-3989 create new db user without RLS bypass on migrations
* chore(Backend): PRWLR-3989 fix RLS bypasser for POST requests
* fix(Backend): PRWLR-3989 fix user permissions when migrating new models
* chore(Backend): PRWLR-3989 add testing view for RLS manual tests
* feat(API): PRWLR-3989 add tenant_id to API logging
* chore(API, Backend): PRWLR-3989 add TODOs
* test(API): PRWLR-3989 add new middleware unit tests
* chore(API): PRWLR-3989 refactor RLS code
* fix(tests): PRWLR-3989 fix testing db connector
* chore: PRWLR-3989 add references to JIRA tickets
* fix: PRWLR-3989 remove bypass logic and fix serializers
* fix: PRWLR-3989 improve drop SQL query for RLS models
* feat(Backend): PRWLR-3989 add specific permissions on each model
* fix(Backend): PRWLR-3989 fix database routing and grant select perms
* fix(test): PRWLR-3989 fix routing issues with unit tests
* chore: PRWLR-3989 remove references to JIRA tickets
* chore(Backend): PRWLR-3989 adjust privileges for user on table tenant
* chore: PRWLR-3989 add comments on migrations
2024-08-02 11:29:05 -04:00
Sophia Dao
0283b34190
feat(findings): Fix folder structure
2024-08-02 06:02:26 -05:00
Pablo Lara
26cfbeb3a8
chore: add pending conecction for ProviderInfo component and its icon
2024-08-02 10:43:17 +02:00
Pablo Lara
b95d48e2ad
chore: rendering real data for Providers and relocate action folder
2024-08-02 10:24:47 +02:00
dependabot[bot]
a79022dce8
chore(deps): bump botocore from 1.34.151 to 1.34.152 ( #4611 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-02 08:03:55 +02:00
dependabot[bot]
0a2ce690f4
chore(deps): bump trufflesecurity/trufflehog from 3.80.4 to 3.80.5 ( #4612 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-02 07:57:22 +02:00
Sophia Dao
2bfa37ca2e
feat(findings): WIP - add in initial data table setup, add in some hardcoded value for display purposes, future skeleton loader
2024-08-01 17:41:05 -05:00
Pedro Martín
bbc51114b0
fix(sns): add condition to sns topics ( #4498 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-08-01 11:54:36 -04:00
Pablo Lara
6a7b6f3e6b
Merge pull request #25 from prowler-cloud/fix/package-lock
...
fix: SWR NextJS compiler
2024-08-01 16:41:30 +02:00
Pablo Lara
a9462da78e
fix: SWR NextJS compiler
2024-08-01 16:39:31 +02:00
Pablo Lara
02f2043a8c
Merge pull request #24 from prowler-cloud/PRWLR-4374-Create-container-image-for-the-NextJS-UI
...
Create container image for the next js UI
2024-08-01 16:13:26 +02:00
Pablo Lara
acfbdc6405
chore: optimize the Dockerfile, remove all related with .nextjs folder
2024-08-01 15:56:11 +02:00
Pablo Lara
25ec271a7f
chore: optimize the Dockerfile
2024-08-01 15:52:06 +02:00
Pablo Lara
a3555af684
chore: disable telemetry during the runtime
2024-08-01 15:48:11 +02:00
Pablo Lara
de55eeb183
chore: disable telemetry during the build
2024-08-01 15:44:42 +02:00
Pablo Lara
8fc9204946
chore: optimize the Dockerfile
2024-08-01 15:04:30 +02:00
Pepe Fagoaga
32da86f393
fix(mutelist): Fix tags match ( #4606 )
2024-08-01 09:01:44 -04:00
Pepe Fagoaga
74d02e1da6
chore(version): Update Prowler version ( #4605 )
2024-08-01 08:01:45 -04:00
Pablo Lara
5b31ce8484
feat: add Dockerfile and .dockerignore
2024-08-01 13:38:51 +02:00
Pablo Lara
e5a328e9ea
feat: change configuration and generate package-lock file
2024-08-01 12:09:37 +02:00
Pepe Fagoaga
8ec6e89e5c
chore(regions_update): Changes in regions for AWS services. ( #4607 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-08-01 11:35:08 +02:00
Pablo Lara
14a10fc6f0
Merge pull request #23 from prowler-cloud/PRWLR-4367-add-react-suspense
...
Add React Suspense
2024-08-01 10:30:59 +02:00
dependabot[bot]
17012ec1a4
chore(deps): bump trufflesecurity/trufflehog from 3.80.3 to 3.80.4 ( #4601 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-08-01 08:06:11 +02:00
Pablo Lara
941bdfb2e1
Merge pull request #22 from prowler-cloud/PRWLR-4363-Handling-Boundaries-Errors
...
Handling boundaries errors
2024-08-01 06:46:46 +02:00
Pablo Lara
d431516270
chore:remove library not used for icons
2024-07-31 21:56:50 +02:00
Pablo Lara
92e88674f6
feat: update TypeScript to the latest version and remove library not used for icons
2024-07-31 21:56:05 +02:00
Pablo Lara
89d15c40da
feat: update TypeScript to the latest version
2024-07-31 21:52:59 +02:00
Pepe Fagoaga
8461257428
fix(status): Recover status filtering ( #4572 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-07-31 10:10:07 -04:00
Kay Agahd
26a5ffaf82
fix(aws): only check artifacts that can be scanned for vulnerabilities by ecr_repositories_scan_vulnerabilities_in_latest_image ( #4507 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-07-31 09:27:26 -04:00
Sergio Garcia
563ddb3707
chore(permissions): add missing ec2 permission ( #4577 )
2024-07-31 14:22:21 +02:00
Pedro Martín
2c11c3d6f9
fix(typo): fix typo on PR template ( #4596 )
2024-07-31 07:58:53 -04:00
cetteup
e050f44d63
fix(aws): Pass backup retention check if retention period is equal to minimum ( #4593 )
2024-07-31 13:25:53 +02:00
Pepe Fagoaga
4fd3405bbf
chore(regions_update): Changes in regions for AWS services. ( #4592 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-31 11:33:59 +02:00
dependabot[bot]
a1c2caa745
chore(deps): bump boto3 from 1.34.149 to 1.34.151 ( #4587 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-31 09:47:41 +02:00
dependabot[bot]
f639dc8bf4
chore(deps): bump trufflesecurity/trufflehog from 3.80.2 to 3.80.3 ( #4581 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-31 09:16:37 +02:00
dependabot[bot]
35325d9f40
chore(deps): bump google-api-python-client from 2.138.0 to 2.139.0 ( #4579 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-31 09:16:08 +02:00
Pablo Lara
ddf9a3ef2d
feat: implement error boundary functionality
2024-07-31 08:55:02 +02:00
Pablo Lara
0a0a08b97d
chore: remove SWR library from the project and add alert from shadcn
2024-07-31 08:50:31 +02:00
Pepe Fagoaga
71503b553a
chore(pr-template): Add Checklist ( #4586 )
2024-07-31 08:31:55 +02:00
dependabot[bot]
d91a240ea8
chore(deps): bump botocore from 1.34.150 to 1.34.151 ( #4578 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-31 08:29:51 +02:00
Pablo Lara
3fa614341f
fix: fix typo error
2024-07-30 17:25:58 +02:00
Pablo Lara
b112202f41
feat: handle error when the endpoint is not working
2024-07-30 17:24:42 +02:00
Sergio Garcia
b9b5f66073
fix(test): solve VPC import in tests ( #4574 )
2024-07-30 10:34:55 -04:00
Pablo Lara
9d66a7ec4a
feat: handle error when the endpoint is not working
2024-07-30 12:54:52 +02:00
Sergio Garcia
e3f66840aa
chore(version): update Prowler version ( #4565 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2024-07-30 10:17:56 +02:00
Rubén De la Torre Vico
0d6c529a46
fix(autoscaling): change unexpected exception to error severity logger ( #4569 )
2024-07-30 10:07:36 +02:00
dependabot[bot]
5237658047
chore(deps): bump botocore from 1.34.149 to 1.34.150 ( #4567 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-30 09:25:07 +02:00
Pablo Lara
48f633889a
Providers page table ( #20 )
...
* fix: add suppressHydrationWarning to resolve console errors
* chore: add server-only library
* WIP: Mock API for providers and start rendering data
* chore: relocate utils folder to proper directory
* chore: install shadcn for tables, adding sttings page
* refactor: improve sidebar display behavior
* chore: add fake data to the dataProviders
* chore: remove the old table and rename ProviderInfo component
* refactor: improve sidebar display behavior adding a custom hook
* feat: the Providers table is rendering real data
* chore: set the default valuef or isCollapse to false
* chore: Added a helper function getProviderAttributes for cleaner access to provider attributes
2024-07-30 00:04:54 -05:00
Pablo Lara
fd9cff9392
chore: Added a helper function getProviderAttributes for cleaner access to provider attributes
2024-07-30 06:21:25 +02:00
Pablo Lara
86a4938b5f
chore: set the default valuef or isCollapse to false
2024-07-30 05:48:18 +02:00
Daniel Barranquero
c00f61ac10
test(GCP): Add remaining GCP tests for KMS checks ( #4550 )
2024-07-29 13:22:41 -04:00
Rubén De la Torre Vico
2cd840a2b5
fix(autoscaling): Add exception manage while decoding UserData ( #4562 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-07-29 12:03:44 -04:00
Pablo Lara
9fd642fe0e
feat: the Providers table is rendering real data
2024-07-29 12:41:02 +02:00
Pablo Lara
0035c8c08e
refactor: improve sidebar display behavior adding a custom hook
2024-07-29 12:26:25 +02:00
Pablo Lara
151fca146e
chore: remove the old table and rename ProviderInfo component
2024-07-29 11:16:18 +02:00
Pablo Lara
1bea55c5e8
chore: add fake data to the dataProviders
2024-07-29 11:14:30 +02:00
Pablo Lara
8ce28dd311
refactor: improve sidebar display behavior
2024-07-29 11:13:39 +02:00
dependabot[bot]
7e630ebe27
chore(deps): bump boto3 from 1.34.148 to 1.34.149 ( #4556 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-29 08:24:06 +02:00
dependabot[bot]
2f1c0facfd
chore(deps): bump trufflesecurity/trufflehog from 3.80.1 to 3.80.2 ( #4557 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-29 08:23:45 +02:00
Pepe Fagoaga
603bb03f35
chore(regions_update): Changes in regions for AWS services. ( #4560 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-29 08:22:19 +02:00
Pablo Lara
54b3fc3ae6
chore: install shadcn for tables, adding sttings page
2024-07-28 16:40:29 +02:00
Pablo Lara
b8de713497
chore: relocate utils folder to proper directory
2024-07-28 16:35:45 +02:00
Pablo Lara
0ee60efaa7
WIP: Mock API for providers and start rendering data
2024-07-26 18:01:50 +02:00
Rubén De la Torre Vico
b7af1a06e8
fix(organizations): Fix types errors related to policies and json.loads function ( #4554 )
2024-07-26 10:51:46 -04:00
Kay Agahd
02fc034b1f
feat(aws): make check eks_control_plane_logging_all_types_enabled configurable ( #4553 )
2024-07-26 10:24:01 -04:00
joshua_jebaraj
40522cdc62
fix(gcp): false positive for iam_sa_no_administrative_privilege check ( #4500 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-07-26 10:15:34 -04:00
Rubén De la Torre Vico
dc11d85451
chore(cloudsql): Change default cases for CloudSQL checks and remaining tests ( #4537 )
2024-07-26 10:09:04 -04:00
Pepe Fagoaga
13c50086eb
chore(regions_update): Changes in regions for AWS services. ( #4552 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-26 09:38:43 -04:00
Sergio Garcia
f7729381e0
fix(s3): enhance threading in s3 service ( #4530 )
2024-07-26 09:16:47 -04:00
dependabot[bot]
d244475578
chore(deps): bump azure-mgmt-network from 25.4.0 to 26.0.0 ( #4543 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-26 14:28:46 +02:00
dependabot[bot]
10dcbaea7b
chore(deps): bump google-api-python-client from 2.137.0 to 2.138.0 ( #4542 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-26 13:33:43 +02:00
dependabot[bot]
c91bbdcf2b
chore(deps): bump azure-mgmt-compute from 31.0.0 to 32.0.0 ( #4541 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-26 13:01:49 +02:00
dependabot[bot]
c7dbcb17d6
chore(deps): bump botocore from 1.34.148 to 1.34.149 ( #4539 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-26 12:08:53 +02:00
Pablo Lara
1244cdb73e
Merge branch 'main' into PRWLR-4123-Providers-Page-Table
2024-07-26 09:33:01 +02:00
Pablo Lara
4b63fc4757
chore: add server-only library
2024-07-26 09:32:48 +02:00
dependabot[bot]
5a8a9286db
chore(deps): bump boto3 from 1.34.147 to 1.34.148 ( #4538 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-26 09:11:02 +02:00
dependabot[bot]
2476a1275a
chore(deps-dev): bump pytest from 8.3.1 to 8.3.2 ( #4540 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-26 08:28:40 +02:00
Pablo Lara
b65159dd43
Merge pull request #11 from prowler-cloud/PRWLR-4172-Modal-component
...
Modal Component
2024-07-26 08:27:05 +02:00
Sophia Dao
842608afa0
feat(modal): Code review feedback
2024-07-25 09:01:49 -05:00
Hugo Pereira Brito
ac680c58cd
docs(services): Fixed changed links ( #4536 )
2024-07-25 13:14:10 +02:00
Daniel Barranquero
68f0916ce4
test(iam): Add remaining GCP tests for IAM checks ( #4519 )
2024-07-25 11:21:36 +02:00
Pablo Lara
57f5fd51e6
fix: add suppressHydrationWarning to resolve console errors
2024-07-25 10:30:28 +02:00
Jon Young
6a135cb47c
PRWLR-4236: fix(CI): use postgres for unit tests ( #19 )
...
* fix(Config): use local postgres for unit tests
* fix(CI): use postgres for unit tests in GHA
2024-07-25 10:00:58 +02:00
dependabot[bot]
dc896fc0af
chore(deps): bump botocore from 1.34.147 to 1.34.148 ( #4532 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-25 09:28:42 +02:00
dependabot[bot]
76af71d2df
chore(deps): bump boto3 from 1.34.146 to 1.34.147 ( #4531 )
2024-07-25 08:43:22 +02:00
Sophia Dao
1ac3ab48f2
Merge branch 'main' into PRWLR-4172-Modal-component
2024-07-24 21:00:40 -05:00
Pablo Lara
7f104bdc91
Merge pull request #18 from prowler-cloud/PRWLR-4233-Providers-Date-Component
...
DateWithTime component
2024-07-24 16:21:48 +02:00
Pablo Lara
e927413e11
Merge branch 'main' into PRWLR-4233-Providers-Date-Component
2024-07-24 16:21:26 +02:00
Pablo Lara
b4adacd9e0
Merge pull request #17 from prowler-cloud/PRWLR-4227-Provider-Status-Component
...
Status component - Provider table
2024-07-24 16:19:57 +02:00
Pablo Lara
04bd613fc9
chore: fix conflict
2024-07-24 16:17:19 +02:00
Pablo Lara
dd2c92d805
feat: account component is ready to use it ( #16 )
2024-07-24 09:08:15 -05:00
dependabot[bot]
96f761e4ef
chore(deps): bump azure-mgmt-containerservice from 30.0.0 to 31.0.0 ( #4513 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-24 11:53:31 +02:00
Pablo Lara
044c8dbb3a
feat: DateWithTime component is ready to use it
2024-07-24 09:39:34 +02:00
Pepe Fagoaga
9e16e477e9
chore(CODEOWNERS): update team ( #4527 )
2024-07-24 09:12:33 +02:00
Sergio Garcia
2038e30d3e
fix(checks): ensure CheckID is correct in check's metadata ( #4522 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-07-24 09:08:51 +02:00
dependabot[bot]
a4dc6975b0
chore(deps): bump botocore from 1.34.146 to 1.34.147 ( #4526 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-24 08:41:38 +02:00
dependabot[bot]
a4a89fa581
chore(deps): bump boto3 from 1.34.145 to 1.34.146 ( #4525 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-24 07:38:59 +02:00
Sophia Dao
1c5859d93c
feat(modal): Use server to pass event handler
2024-07-23 22:40:54 -05:00
Sophia Dao
8388aad831
merge main
2024-07-23 20:16:11 -05:00
Víctor Fernández Poyatos
de97b9f298
feat/PRWLR-3999 Add providers endpoint with mock data ( #17 )
...
* chore: PRWLR-3996 add drf-jsonapi library to project
* feat: PRWLR-3996 implement /tenants endpoint and basic JSON:API spec
* feat: PRWLR-3996 implement new middleware to ingest metadata on API responses
* chore: PRWLR-3996 annotate views with drf-spectacular
* feat: PRWLR-3996 add cache-control to tenants endpoints
* feat: PRWLR-3996 update views filters
* chore: PRWLR-3996 remove meta middleware in favour of meta fields in serializers
* test(API): PRWLR-3996 add unit tests for /tenants
* chore: PRWLR-3996 turn DEBUG on on devel environment
* test: PRWLR-3996 rework tenants unit tests
* chore: PRWLR-3996 refactor filter classes
* fix(Backend,API): PRWLR-3996 use correct filter backend
* feat(API): PRWLR-3999 implement mocked /providers endpoints
* feat(API): PRWLR-3999 add /providers/check_connection mocked endpoint and loc headers
2024-07-23 12:34:48 -04:00
Pepe Fagoaga
fc449bfd7b
chore(s3): create class and refactor ( #4457 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-07-23 10:03:28 -04:00
Pablo Lara
db30c0253d
feat: ScanStatus component is ready to use it
2024-07-23 15:37:10 +02:00
Rubén De la Torre Vico
2477948ae9
test(gcp): Test GCP provider new auth and print credentials ( #4331 )
2024-07-23 09:26:29 -04:00
Rubén De la Torre Vico
ca98584ded
test(logging): Add remaining tests for Logging checks ( #4481 )
2024-07-23 09:24:32 -04:00
Pablo Lara
0590c00c9b
feat: add date-fns library to the project
2024-07-23 15:23:39 +02:00
Rubén De la Torre Vico
489830f01a
docs(azure): Review actual roles necessary to execute Prowler ( #4501 )
2024-07-23 09:15:23 -04:00
Pablo Lara
6ab0a42f67
feat: account component is ready to use it
2024-07-23 13:14:34 +02:00
Rubén De la Torre Vico
bd56ca2979
chore(dms): Change checks IDs to match with metadata ( #4520 )
2024-07-23 06:41:07 -04:00
dependabot[bot]
04483a9a4f
chore(deps): bump cryptography from 42.0.6 to 43.0.0 ( #4512 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-23 11:42:59 +02:00
dependabot[bot]
684f63d398
chore(deps): bump numpy from 2.0.0 to 2.0.1 ( #4510 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-23 11:02:05 +02:00
dependabot[bot]
b528dd44cd
chore(deps): bump botocore from 1.34.145 to 1.34.146 ( #4511 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-23 10:11:50 +02:00
dependabot[bot]
dfdeac0a46
chore(deps-dev): bump pylint from 3.2.5 to 3.2.6 ( #4509 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-23 09:23:33 +02:00
dependabot[bot]
b52b67fd4b
chore(deps-dev): bump pytest from 8.2.2 to 8.3.1 ( #4508 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-22 18:56:30 -04:00
Sergio Garcia
5cf7d89aab
fix(inspector2): add more efficient way to check if any active findings ( #4505 )
2024-07-22 16:25:23 -04:00
Víctor Fernández Poyatos
7cb3a4e16e
feat/PRWLR-3996 implement /tenants endpoint and basic filters logic ( #14 )
...
* chore: PRWLR-3996 add drf-jsonapi library to project
* feat: PRWLR-3996 implement /tenants endpoint and basic JSON:API spec
* feat: PRWLR-3996 implement new middleware to ingest metadata on API responses
* chore: PRWLR-3996 annotate views with drf-spectacular
* feat: PRWLR-3996 add cache-control to tenants endpoints
* feat: PRWLR-3996 update views filters
* chore: PRWLR-3996 remove meta middleware in favour of meta fields in serializers
* test(API): PRWLR-3996 add unit tests for /tenants
* chore: PRWLR-3996 turn DEBUG on on devel environment
* test: PRWLR-3996 rework tenants unit tests
* chore: PRWLR-3996 refactor filter classes
* fix(Backend,API): PRWLR-3996 use correct filter backend
2024-07-22 16:06:57 -04:00
Pepe Fagoaga
b2d3f492ec
chore(CODEOWNERS): Update with new team ( #15 )
2024-07-22 08:25:37 -05:00
Pedro Martín
f5e6b1e438
docs(developer): improve developers docs with Trufflehog and --no-verify ( #4502 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-07-22 13:12:52 +02:00
Pedro Martín
aa44bde940
chore(deps): update cryptography to 42.0.6 ( #4499 )
2024-07-22 12:09:55 +02:00
Sergio Garcia
ddc927a4ad
chore(test): add missing acm imported certificate test ( #4485 )
2024-07-22 09:49:37 +02:00
dependabot[bot]
fbc99259e2
chore(deps): bump boto3 from 1.34.144 to 1.34.145 ( #4497 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-22 09:11:54 +02:00
Jon Young
43f79663d9
chore(CODEOWNERS): Update for team name change ( #16 )
...
* chore(CODEOWNERS): update CODEOWNERS
* chore(CODEOWNERS): update CODEOWNERS
* chore(CODEOWNERS): update CODEOWNERS
2024-07-22 08:43:50 +02:00
Pablo Lara
e6d84cb245
feat: replace the favIcon ( #14 )
2024-07-19 16:50:19 -05:00
Daniel Barranquero
28f6f0abcc
test(cloudstorage): Add remaining GCP tests for CloudStorage checks ( #4464 )
2024-07-19 08:37:22 -04:00
dependabot[bot]
0933a04239
chore(deps): bump azure-storage-blob from 12.20.0 to 12.21.0 ( #4490 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-19 08:36:57 -04:00
Pedro Martín
5185f3a41e
chore(output): review report function ( #4465 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-07-19 08:36:39 -04:00
Pepe Fagoaga
6d20b11394
chore(CODEOWNERS): protect unauthorized changes ( #4493 )
2024-07-19 12:37:34 +02:00
dependabot[bot]
a01635e9ea
chore(deps): bump botocore from 1.34.144 to 1.34.145 ( #4491 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-19 11:32:35 +02:00
Pedro Martín
3bf9cd3db1
docs(readme): add Prowler animation gif to README ( #4492 )
2024-07-19 10:56:01 +02:00
dependabot[bot]
e15f0b2d0f
chore(deps): bump trufflesecurity/trufflehog from 3.80.0 to 3.80.1 ( #4486 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-19 09:59:44 +02:00
Pablo Lara
0403c1f1b5
Prwlr 4167 table component ( #13 )
...
* feat: now the import works as expected
* feat: now the import works as expected
* feat: create a CustomTable component
2024-07-18 14:03:03 -05:00
Sergio Garcia
f2de059ca1
fix(ssm): add missing ResourceArn to SSM check ( #4482 )
2024-07-18 18:10:06 +02:00
Ikko Eltociear Ashimine
8c8ac95d9c
docs(readme): update README.md ( #4483 )
2024-07-18 17:31:52 +02:00
Pepe Fagoaga
89159c2111
chore(codeowners): update for sdk and checks ( #4480 )
2024-07-18 09:52:23 -04:00
Pedro Martín
70eb59185b
docs(readme): update dashboard screenshot in README ( #4479 )
2024-07-18 12:53:03 +02:00
Pepe Fagoaga
f97af19860
chore(regions_update): Changes in regions for AWS services. ( #4478 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-18 11:32:53 +02:00
dependabot[bot]
5ccd8af2a2
chore(deps): bump msgraph-sdk from 1.5.2 to 1.5.3 ( #4475 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-18 10:40:07 +02:00
Pedro Martín
b53e8abc87
fix(main): change module name ( #4477 )
2024-07-18 10:29:47 +02:00
Pablo Lara
91eb26dac2
Merge pull request #12 from prowler-cloud/PRWLR-4180-Add-GitHub-PR-template
...
Add in PR template
2024-07-18 09:07:51 +02:00
dependabot[bot]
db4c4fdaeb
chore(deps): bump azure-mgmt-keyvault from 10.3.0 to 10.3.1 ( #4474 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-18 08:39:20 +02:00
Sergio Garcia
44afe2db3e
chore(compliance): simplify ComplianceOutput class ( #4467 )
2024-07-18 08:36:57 +02:00
Sergio Garcia
204d548cd0
chore(csv): remove old CSV functions ( #4469 )
2024-07-18 08:30:07 +02:00
dependabot[bot]
3faf80c0d7
chore(deps): bump trufflesecurity/trufflehog from 3.79.0 to 3.80.0 ( #4471 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-18 08:28:01 +02:00
chaipot
5078e4a823
chore(docs): update remediation of custom checks metadata ( #4470 )
2024-07-17 17:14:35 -04:00
Pepe Fagoaga
d1b57ebd75
feat(output): Add a setter for the file descriptor and include extension ( #4468 )
2024-07-17 17:09:47 -04:00
Sophia Dao
93a8f91eb1
chore(github): Add in pr template
2024-07-17 13:48:42 -05:00
Sophia Dao
7093261f84
feat(modal): Add in prop for Close button text
2024-07-17 12:47:25 -05:00
Sophia Dao
ec7df134b4
feat(modal): make code review changes
2024-07-17 12:43:33 -05:00
Sergio Garcia
fdab3a737a
chore(compliance): change compliance model names ( #4466 )
2024-07-17 11:47:28 -04:00
Rubén De la Torre Vico
b6f01b92dd
test(gcp): Add bigquery and half of cloudsql check tests ( #4462 )
2024-07-17 12:03:22 +02:00
Pepe Fagoaga
c92537c791
chore(regions_update): Changes in regions for AWS services. ( #4463 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-17 11:35:53 +02:00
Sergio Garcia
3e7cc2e0a2
chore(compliance): add manual requirements to compliance output ( #4449 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2024-07-17 08:23:38 +02:00
Sophia Dao
bfa98646c1
feat(modal): Change name of modal
2024-07-16 15:51:58 -05:00
Sophia Dao
3bd84a0efd
feat(modal): Add in modal component v1
2024-07-16 15:50:37 -05:00
Rubén De la Torre Vico
b8cfdb590b
test(gcp): Add remaining CloudSQL tests ( #4380 )
2024-07-16 13:51:53 -04:00
Pepe Fagoaga
577afbd521
chore(mutelist): create new class to encapsulate the logic ( #4413 )
2024-07-16 13:44:43 -04:00
Rubén De la Torre Vico
d01cc51b6d
test(compute): Add remaining tests for Compute service in GCP provider ( #4458 )
2024-07-16 11:43:30 -04:00
Jon Young
cd7d7c303a
PRWLR-3997: fix(Models): create BaseModel & TenantModel ( #13 )
...
* fix(Models): create BaseModel & TenantModel
* update description to match class
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
* fix(Tenants): rename TenantModel to Tenant
---------
Co-authored-by: Víctor Fernández Poyatos <victor@prowler.com >
2024-07-16 15:44:59 +02:00
Víctor Fernández Poyatos
8f41b38bbf
chore: PRWLR-4055 Update project structure and add env vars ( #12 )
...
* chore: PRWLR-4055 update project structure and add env vars
* chore: PRWLR-4055 make production settings default
* chore: PRWLR-4055 change default values to env variables
* chore: PRWLR-4055 apply requested changes on default values
* chore: PRWLR-4055 adapt testing environment
2024-07-16 09:33:56 -04:00
Pablo Lara
0bdfa1a3b9
Chore: Update import paths for consistency ( #10 )
2024-07-16 08:06:47 -05:00
dependabot[bot]
ffa60b4ccd
chore(deps): bump msgraph-sdk from 1.4.0 to 1.5.2 ( #4426 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-16 06:57:42 -04:00
Rubén De la Torre Vico
d6dd0f7244
fix(entra): Change to correct service in entra_user_with_vm_access_has_mfa metadata ( #4454 )
2024-07-16 12:06:18 +02:00
Pepe Fagoaga
4df0dc4904
chore(regions_update): Changes in regions for AWS services. ( #4455 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-16 11:48:52 +02:00
dependabot[bot]
386a1e1d1a
chore(deps): bump boto3 from 1.34.143 to 1.34.144 ( #4451 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-16 08:54:32 +02:00
dependabot[bot]
db9d7a4439
chore(deps): bump setuptools from 69.5.1 to 70.0.0 ( #4450 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-15 16:12:56 -04:00
Pablo Lara
9ae201bddf
Make the link active when visiting the page ( #9 )
...
* chore: set overview as a default selected key in the sidebar
* feat: use the usePathname hook from Next.js App Router to get the current pathname and use it as the active key for the Sidebar component.
* feat: make it works also for / the overview page
2024-07-15 13:42:54 -05:00
Pedro Martín
5725035e29
chore(GenericCompliance): add Generic Compliance class ( #4447 )
...
Co-authored-by: Sergio <sergio@prowler.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-07-15 12:56:22 -04:00
Pedro Martín
96a49e97d2
fix(iam_avoid_root_usage): change timestamp format ( #4446 )
2024-07-15 17:10:49 +02:00
Sergio Garcia
2a95750525
chore(iso27001): add ISO27001 output class ( #4441 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-07-15 09:43:26 -04:00
Pablo Lara
7773858340
Merge pull request #8 from prowler-cloud/PRWLR-4117-nested-layouts
...
Nested layouts, set routing
2024-07-15 15:32:05 +02:00
Pedro Martín
b868d1a7fe
fix(glue): add getters for connection attributes ( #4445 )
2024-07-15 14:51:01 +02:00
Pablo Lara
93e44a6019
fix: fix width for ProwlerExtended logo
2024-07-15 11:07:06 +02:00
Pablo Lara
3edb2ea9f2
refactor: rename cloud page to providers page
2024-07-15 10:51:23 +02:00
Pepe Fagoaga
37ade2a722
chore(revert): PR #4067 ( #4440 )
...
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
2024-07-15 10:25:00 +02:00
dependabot[bot]
c67032e07f
chore(deps): bump botocore from 1.34.143 to 1.34.144 ( #4442 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-15 09:25:25 +02:00
Pepe Fagoaga
0de8ef032a
chore(regions_update): Changes in regions for AWS services. ( #4444 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-15 09:24:37 +02:00
Sergio Garcia
027aa9796d
chore(aws): add AWS Well-Architected output class ( #4439 )
2024-07-12 11:27:21 -04:00
Sergio Garcia
a505776227
chore(ens): add ENS output class ( #4435 )
2024-07-12 10:50:41 -04:00
Sergio Garcia
3be9de376a
chore(mitre): add MITRE ATT&CK output class ( #4425 )
2024-07-12 10:08:32 -04:00
Pablo Lara
725dbd2979
chore: remove unused icons
2024-07-12 12:29:26 +02:00
Pablo Lara
a61554bd04
fix: resolve merge conflicts in SidebarWrap component
2024-07-12 11:56:46 +02:00
Pablo Lara
fe0d005f97
Merge pull request #6 from prowler-cloud/PRWLR-4035-UI-Sidebar
...
Sidebar component
2024-07-12 11:51:07 +02:00
Pablo Lara
c4074d842d
feat: establish routing and implement nested structure for layouts
2024-07-12 11:49:41 +02:00
Pablo Lara
e7d4143f47
chore: use clsx library instead of custom cn utility for managing class names
2024-07-12 10:05:42 +02:00
Pablo Lara
08059e3a32
refactor: clean up and organize exports in sidebar components
2024-07-12 09:58:09 +02:00
Pablo Lara
0bef1a157b
feat: centralize exports with index.ts in all directories
2024-07-12 09:42:37 +02:00
Pablo Lara
c427878820
chore: remove NextUI boilerplate code
2024-07-12 09:39:36 +02:00
Pablo Lara
23cd6553a9
chore: remove NextUI boilerplate code
2024-07-12 09:39:18 +02:00
dependabot[bot]
bd26d74b28
chore(deps): bump boto3 from 1.34.142 to 1.34.143 ( #4437 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-12 09:36:43 +02:00
dependabot[bot]
ca27854ff0
chore(deps-dev): bump coverage from 7.5.4 to 7.6.0 ( #4438 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-12 08:55:33 +02:00
Víctor Fernández Poyatos
9df759da60
feat: PRWLR-3989 add PostgreSQL to project ( #10 )
...
* feat: PRWLR-3989 add postgresql to project
* chore: PRWLR-3989 add requested changes to docker structure
* chore: PRWLR-3989 update poetry.lock
2024-07-11 10:39:09 -04:00
Pablo Lara
f31a92ea98
feat(sidebar): add state persistence using localStorage
2024-07-11 15:32:49 +02:00
Pablo Lara
79966db251
feat(sidebar): add state persistence using localStorage
2024-07-11 15:31:24 +02:00
Pepe Fagoaga
abd18dc14d
chore(regions_update): Changes in regions for AWS services. ( #4433 )
2024-07-11 09:27:52 -04:00
Pepe Fagoaga
297f506fd3
docs(gcp): Fix typo in title ( #4434 )
2024-07-11 09:27:04 -04:00
Pablo Lara
443e6b6bee
Merge pull request #7 from prowler-cloud/dependabot/pip/django-5.0.7
...
build(deps): bump django from 5.0.6 to 5.0.7
2024-07-11 10:40:59 +02:00
dependabot[bot]
157a54f30c
chore(deps): bump django from 5.0.6 to 5.0.7 ( #11 )
...
Bumps [django](https://github.com/django/django ) from 5.0.6 to 5.0.7.
- [Commits](https://github.com/django/django/compare/5.0.6...5.0.7 )
---
updated-dependencies:
- dependency-name: django
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-11 10:34:41 +02:00
Pablo Lara
746b427943
feat: set basic sidebar and the main layout
2024-07-11 10:31:06 +02:00
dependabot[bot]
78ca4b93a5
chore(deps): bump botocore from 1.34.142 to 1.34.143 ( #4428 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-11 10:04:33 +02:00
dependabot[bot]
c80d51b585
chore(deps): bump boto3 from 1.34.141 to 1.34.142 ( #4427 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-11 08:47:57 +02:00
dependabot[bot]
86df1fd98e
build(deps): bump django from 5.0.6 to 5.0.7
...
Bumps [django](https://github.com/django/django ) from 5.0.6 to 5.0.7.
- [Commits](https://github.com/django/django/compare/5.0.6...5.0.7 )
---
updated-dependencies:
- dependency-name: django
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-07-10 22:08:57 +00:00
Sergio Garcia
cf9b23c302
fix(cis): add missing fields and reorder ( #4424 )
2024-07-10 13:11:55 -04:00
Sergio Garcia
ef4b9e8d6a
fix(templates): solve broken GitHub issues templates ( #4423 )
2024-07-10 16:55:51 +02:00
Víctor Fernández Poyatos
f0a276773e
feat(backend): PRWLR-4030 Implement Gunicorn as Django WSGI ( #9 )
...
* feat: PRWLR-4030 implement Gunicorn server and logging
* build: PRWLR-4030 update docker files
* docs: PRWLR-4030 update README
* chore: PRWLR-4030 change binding address to 0.0.0.0 by default
2024-07-10 16:32:56 +02:00
Pablo Lara
d4b21cbe6a
Merge pull request #1 from prowler-cloud/dependabot/pip/djangorestframework-3.15.2
...
build(deps): bump djangorestframework from 3.15.1 to 3.15.2
2024-07-10 15:51:07 +02:00
Sergio Garcia
a5a8c2a769
chore(cis): add CIS output class ( #4400 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-07-10 09:26:08 -04:00
Pepe Fagoaga
64b21ae2b9
chore(labeler): add outputs and integrations ( #4422 )
2024-07-10 09:25:07 -04:00
Pepe Fagoaga
3da4824a1d
chore(regions_update): Changes in regions for AWS services. ( #4420 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-10 09:24:05 -04:00
Pepe Fagoaga
2247296cf9
chore(templates): update to remove titles ( #4421 )
2024-07-10 09:22:13 -04:00
dependabot[bot]
615127f790
chore(deps): bump botocore from 1.34.141 to 1.34.142 ( #4416 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-10 11:54:21 +02:00
Pablo Lara
160990f979
Merge branch 'main' into PRWLR-4035-UI-Sidebar
2024-07-10 09:45:36 +02:00
dependabot[bot]
42f21a52c9
chore(deps): bump google-api-python-client from 2.136.0 to 2.137.0 ( #4415 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-10 08:36:13 +02:00
dependabot[bot]
e9442b2f89
chore(deps): bump zipp from 3.18.1 to 3.19.1 ( #4414 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-10 08:32:34 +02:00
Pepe Fagoaga
6336b1c0d9
refactor(SecurityHub): create class to handle integration ( #4397 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-07-09 11:47:47 -04:00
Pablo Lara
ee640da9e7
Add eslint-plugin-security and pre-commit hooks. ( #5 )
...
* feat: add eslint-plugin-security
* chore: relocate devDependencies to the appropriate section in package.json
* feat: add husky library for pre-commit hooks
* feat: add husky library for pre-commit hooks
* chore: improve prettierrc config
2024-07-09 10:11:45 -05:00
Pepe Fagoaga
a0603b972e
chore(regions_update): Changes in regions for AWS services. ( #4412 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-09 09:18:57 -04:00
Pablo Lara
4d43a6bdd6
chore: rename temp_files.tsx to fix case sensitivity issue on GitHub
2024-07-09 13:43:49 +02:00
Pablo Lara
d80622ca69
chore: rename temp_files.tsx to fix case sensitivity issue on GitHub
2024-07-09 13:42:45 +02:00
Pablo Lara
4beff6e62f
chore: trigger CI build
2024-07-09 13:28:39 +02:00
dependabot[bot]
f319884532
chore(deps): bump boto3 from 1.34.139 to 1.34.141 ( #4410 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-09 13:27:29 +02:00
Pablo Lara
6138c7da9d
chore: update prettier config and fix linting issues
2024-07-09 13:04:04 +02:00
Pablo Lara
cf49641d5c
chore: improve prettierrc config
2024-07-09 12:44:25 +02:00
dependabot[bot]
d49139c4f4
chore(deps-dev): bump moto from 5.0.10 to 5.0.11 ( #4404 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-09 11:33:00 +02:00
dependabot[bot]
046c82232d
chore(deps): bump botocore from 1.34.140 to 1.34.141 ( #4403 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-09 09:39:19 +02:00
dependabot[bot]
027aafd9ea
chore(deps): bump jsonschema from 4.22.0 to 4.23.0 ( #4402 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-09 09:01:13 +02:00
Sergio Garcia
215d5dabd7
fix(docs): update deprecated command ( #4401 )
2024-07-09 08:40:25 +02:00
Pepe Fagoaga
f5e2ac7486
chore(regions_update): Changes in regions for AWS services. ( #4396 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-08 09:56:03 -04:00
Pepe Fagoaga
6fc24b5435
chore: rename test function in the HTML test class ( #4395 )
2024-07-08 09:51:44 -04:00
Víctor Fernández Poyatos
457801f752
chore: update CODEOWNERS to include restful-api team ( #8 )
2024-07-08 13:09:04 +02:00
Pablo Lara
f7c7b6a5ba
feat: add husky library for pre-commit hooks
2024-07-08 11:26:26 +02:00
Pablo Lara
2337b203d0
feat: add husky library for pre-commit hooks
2024-07-08 11:12:57 +02:00
Pablo Lara
e10bb9e3f2
chore: relocate devDependencies to the appropriate section in package.json
2024-07-08 10:59:43 +02:00
Pablo Lara
b63d1f1292
feat: add eslint-plugin-security
2024-07-08 10:20:39 +02:00
dependabot[bot]
3d99e6ea28
chore(deps): bump botocore from 1.34.139 to 1.34.140 ( #4391 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-08 09:27:57 +02:00
dependabot[bot]
b23aefadc1
chore(deps): bump certifi from 2024.2.2 to 2024.7.4 ( #4392 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-08 09:21:56 +02:00
Pablo Lara
a29c9bf563
Merge pull request #4 from prowler-cloud/PRWLR-4069-remove-be-code
...
Clean-up repo
2024-07-08 08:52:04 +02:00
Pablo Lara
f19adde4e5
fix: add 'run' command to checks.yml to resolve pipeline issue
2024-07-08 08:49:19 +02:00
Sophia Dao
721aea945a
chore: clean up due to linter rules
2024-07-07 09:56:54 -05:00
Sophia Dao
01a0d07151
chore: clean-up repo
2024-07-07 09:50:48 -05:00
Sophia Dao
15c9edd49f
Merge pull request #3 from prowler-cloud/PRWLR-4039-Frontend-Build-pipeline-for-UI-repo
...
Build pipeline
2024-07-06 18:23:04 -05:00
dependabot[bot]
b585a31a14
chore(deps): bump boto3 from 1.34.138 to 1.34.139 ( #4383 )
2024-07-05 19:03:20 -04:00
Pepe Fagoaga
9c817ae8a9
tests: add for empty findings and little renamings ( #4388 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-07-05 15:09:23 -04:00
JackyCCChen
cd7f19c00e
fix(gcp): Not all gcp projects have name ( #4387 )
2024-07-05 11:08:31 -04:00
Víctor Fernández Poyatos
3a502c5b3d
feat(Backend): PRWLR-3990 Add custom logging ( #6 )
...
* chore: PRWLR-4022 add django-cors-headers
* chore: PRWLR-4022 configure basic CORS
* feat: PRWLR-4022 add drf-spectacular and spec/docs endpoints
* build: PRWLR-4022 add basic docker development deployment
* chore: PRWLR-4022 update schema generation
* chore: PRWLR-4022 bump required Python version to 3.12
* feat: PRWLR-3990 add basic custom Django logging
* feat: PRWLR-3990 add tasks logger
* chore: PRWLR-3990 update API logging middleware to follow updated syntax
* docs: PRWLR-3990 add docstring for APILoggingMiddleware class
* chore: PRWLR-3990 add testing dependencies to poetry
* test(API): PRWLR-3990 add new middleware unit tests and base setup
* feat(API, Backend): PRWLR-3990 add NDJSONFormatter and transaction_id
* feat(API): PRWLR-3990 add dev/test model, views and urls
* chore(backend): PRWLR-3990 refactor logging settings and modules
* chore(backend): PRWLR-3990 add BackendLogger enum and refactor logging modules
* chore(backend): PRWLR-3990 refactor module importing
* style(backend): PRWLR-3990 remove extra endlines
* chore: PRWLR-3990 update poetry.lock
* chore: PRWLR-3990 run pre-commit
2024-07-05 10:13:04 -04:00
Jon Young
30775373dc
chore(CI): add labeler definition ( #7 )
2024-07-05 09:30:24 -04:00
Jon Young
7e194407f6
chore(CI): PRWLR-3897: add Continuous Integration workflows ( #3 )
...
* chore(CI): import pre-commit-config.yaml from prowler-cloud/prowler
* chore(CI): import pre-commit-config.yaml from prowler-cloud/prowler
* chore(CI): add safety package to pre-commit
* chore(CI): use poetry run to access venv for local checks
* docs(repo): add community focused docs
* chore(GitHub): add ISSUE_TEMPLATEs
same as prowler-cloud/prowler repo
* chore(CI): add pull-request.yml workflow
runs on PRs and pushes to main
* chore(CI): add additional workflows
same as those on prowler-cloud/prowler
* fix(CI): use correct path
* fix(API): fix flake8 F401 failures
* fix(API, Backend): format with black
* fix( Backend): format with black
* fix(CI): use correct path
* fix(CI): move pyproject.toml
* fix(CI): simplify tools with ruff
* fix(CI): use ruff instead of flake8, black
* fix(CI): change ruff commands for GHA
* fix(CI): use correct ruff command name
* fix(Backend): ruff format
* fix(CI): ignore safety jinja2 vuln id 70612
and add mypy for future usage
* fix(CI): set file path for hadolint
* fix(CI): add dockle
* fix(CI): update dockle version
* fix(CI): fix hadolint errors
* fix(CI): add simple tests for CI
* fix(Docker): multi-stage docker build
* docs(README): update docs for poetry location
2024-07-05 09:01:02 -04:00
Pablo Lara
8caae5996e
chore: remove develop branch, we'll use just main
2024-07-05 13:44:17 +02:00
Pablo Lara
0664032ef7
feat: add CI checks using GitHub actions
2024-07-05 13:06:36 +02:00
Pablo Lara
67c6a12be4
feat: add CI checks using GitHub actions
2024-07-05 12:55:30 +02:00
dependabot[bot]
d1a7d19799
chore(deps-dev): bump safety from 3.2.3 to 3.2.4 ( #4385 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-05 11:20:41 +02:00
Pedro Martín
d7dffbc44b
chore(test): enhance OCSF tests ( #4386 )
2024-07-05 11:19:53 +02:00
Pablo Lara
6b028142ee
chore: add eslint-plugin-simple-import-sort as a dev dependencie
2024-07-05 11:15:51 +02:00
Pablo Lara
d4eabf2d7e
chore: add nvmrc file
2024-07-05 11:01:34 +02:00
Pablo Lara
c7abc37671
chore: add prettier config files
2024-07-05 11:01:12 +02:00
Pablo Lara
1637325625
chore: replace eslintrc.json by eslintrc.cjs
2024-07-05 11:00:42 +02:00
dependabot[bot]
0402cc7e2d
chore(deps): bump slack-sdk from 3.30.0 to 3.31.0 ( #4384 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-05 08:47:41 +02:00
Sergio Garcia
bf83f38c89
chore(html): add HTML class ( #4360 )
2024-07-04 13:28:09 -04:00
Pepe Fagoaga
673619c8a1
refactor(ASFF): create class ( #4368 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2024-07-04 12:04:36 -04:00
Pedro Martín
2345a7384b
chore(ocsf): add OCSF class for outputs ( #4355 )
2024-07-04 17:08:01 +02:00
Oleksii
e387c591c3
chore(k8s): Add helm-chart ( #4370 )
...
Co-authored-by: Oleksii Tsyganov <otsyganov@magicleap.com >
2024-07-04 10:30:45 -04:00
Rubén De la Torre Vico
47a37c7d0d
chore(iam): Improve status extended adding the resource type ( #4378 )
2024-07-04 09:32:35 -04:00
dependabot[bot]
7b359cf1eb
chore(deps): bump botocore from 1.34.138 to 1.34.139 ( #4373 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-04 14:32:16 +02:00
Pepe Fagoaga
35d525b903
chore(regions_update): Changes in regions for AWS services. ( #4379 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-04 11:48:04 +02:00
Pedro Martín
b5b193427d
docs(readme): update check number on readme ( #4377 )
2024-07-04 08:54:12 +02:00
Rubén De la Torre Vico
e6ae539323
feat(IAM): Add inline policies checks and improve custom policy checks ( #4255 )
2024-07-03 15:51:19 -04:00
Víctor Fernández Poyatos
a69a155679
docs(backend): PRWLR-3988 Include Django development guide ( #5 )
...
* docs: PRWLR-3988 add development guide to README
* docs: PRWLR-3988 add description to README
2024-07-03 11:45:54 -04:00
Pepe Fagoaga
541b907038
chore(regions_update): Changes in regions for AWS services. ( #4369 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-07-03 09:56:15 -04:00
Víctor Fernández Poyatos
7ff6d860ce
feat(backend): PRWLR-4022 Basic Django and DRF setup and dev tools ( #4 )
...
* chore: PRWLR-4022 add django-cors-headers
* chore: PRWLR-4022 configure basic CORS
* feat: PRWLR-4022 add drf-spectacular and spec/docs endpoints
* build: PRWLR-4022 add basic docker development deployment
* chore: PRWLR-4022 update schema generation
* chore: PRWLR-4022 bump required Python version to 3.12
2024-07-03 09:34:29 -04:00
dependabot[bot]
040e1eaa5e
chore(deps): bump boto3 from 1.34.136 to 1.34.138 ( #4367 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-03 08:43:03 +02:00
dependabot[bot]
e23a674277
chore(deps): bump google-api-python-client from 2.135.0 to 2.136.0 ( #4362 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-03 08:09:39 +02:00
dependabot[bot]
e73cefdf1a
chore(deps): bump botocore from 1.34.137 to 1.34.138 ( #4361 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-03 07:37:08 +02:00
Rubén De la Torre Vico
9ed4e89c60
chore(iam): Remove unnecesary attached policy in a inline policy ( #4359 )
2024-07-02 12:38:00 -04:00
Pedro Martín
da547b2bbe
fix(test-csv): fix test using tempfile ( #4356 )
2024-07-02 09:16:12 -04:00
Pedro Martín
ca033745c9
chore(csv): add CSVOutput class ( #4315 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-07-02 13:12:43 +02:00
dependabot[bot]
b440be717c
chore(deps): bump djangorestframework from 3.15.1 to 3.15.2 in /src ( #2 )
...
Bumps [djangorestframework](https://github.com/encode/django-rest-framework ) from 3.15.1 to 3.15.2.
- [Release notes](https://github.com/encode/django-rest-framework/releases )
- [Commits](https://github.com/encode/django-rest-framework/compare/3.15.1...3.15.2 )
---
updated-dependencies:
- dependency-name: djangorestframework
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-02 10:00:59 +02:00
dependabot[bot]
fb49fb83ae
chore(deps): bump botocore from 1.34.136 to 1.34.137 ( #4351 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-02 09:30:49 +02:00
dependabot[bot]
76e0b23365
chore(deps): bump boto3 from 1.34.132 to 1.34.136 ( #4352 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-02 08:52:10 +02:00
Jon Young
d8752719c1
Merge pull request #1 from prowler-cloud/PRWLR-3980-project-setup
...
feat: PRWLR-3980 Setup base project structure
2024-07-01 12:20:20 -04:00
Víctor Fernández Poyatos
737a0ff9cb
chore: update .gitignore
2024-07-01 18:04:13 +02:00
Víctor Fernández Poyatos
1c8e676822
chore: update CODEOWNERS
2024-07-01 18:03:27 +02:00
Víctor Fernández Poyatos
7b98f0fc92
chore: update pull request template
2024-07-01 18:00:47 +02:00
Víctor Fernández Poyatos
45865f2e71
chore: add required files for project base structure
2024-07-01 17:43:05 +02:00
Víctor Fernández Poyatos
eded2df687
chore: add .github folder and related files
2024-07-01 17:42:29 +02:00
Víctor Fernández Poyatos
766d3f6670
chore: PRWLR-3980 add Django project and API
2024-07-01 17:42:03 +02:00
Víctor Fernández Poyatos
3f2d0a13af
chore: PRWLR-3980 add poetry files
2024-07-01 17:41:18 +02:00
Víctor Fernández Poyatos
690957e1c3
chore: PRWLR-3980 update .gitignore
2024-07-01 17:19:19 +02:00
Jon Young
3092b56fd6
Initial commit
2024-07-01 10:42:55 -04:00
Sergio Garcia
82ccdc45d2
chore(elasticache): enhance service and checks ( #4329 )
2024-07-01 10:06:24 -04:00
dependabot[bot]
de777a6417
chore(deps): bump azure-mgmt-storage from 21.2.0 to 21.2.1 ( #4339 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-01 09:55:17 -04:00
dependabot[bot]
87d8cda745
chore(deps-dev): bump moto from 5.0.9 to 5.0.10 ( #4343 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-01 09:19:22 -04:00
dependabot[bot]
64abd0a6d0
chore(deps-dev): bump pylint from 3.2.3 to 3.2.5 ( #4347 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-01 13:58:42 +02:00
dependabot[bot]
096d7c6304
chore(deps): bump botocore from 1.34.132 to 1.34.136 ( #4337 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-01 12:58:50 +02:00
dependabot[bot]
4908e06544
chore(deps): bump google-api-python-client from 2.134.0 to 2.135.0 ( #4345 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-01 12:28:08 +02:00
dependabot[bot]
d42cc66d9f
chore(deps): bump trufflesecurity/trufflehog from 3.78.2 to 3.79.0 ( #4335 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-07-01 11:48:30 +02:00
Pepe Fagoaga
7a5318b936
chore(dependabot): Run daily ( #4334 )
2024-07-01 11:43:50 +02:00
Pepe Fagoaga
ffb494f9a4
chore(regions_update): Changes in regions for AWS services. ( #4332 )
2024-07-01 08:57:03 +02:00
Sergio Garcia
f515b2b53b
fix(aws): parallelize functions per resource ( #4323 )
2024-06-28 09:27:47 -04:00
Pepe Fagoaga
a3cf7665ac
chore(regions_update): Changes in regions for AWS services. ( #4330 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-28 11:43:29 +02:00
Rubén De la Torre Vico
dbaf72958e
doc(requirements): Add management group for multiple subscriptions ( #4282 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2024-06-28 10:06:16 +02:00
Sergio Garcia
169d1686d2
fix(s3): handle empty Action in bucket policy ( #4328 )
2024-06-28 08:25:40 +02:00
sansns-aws
ba726b205d
feat(Elasticache): Additional Elasticache checks ( #4317 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-27 18:07:22 -04:00
sansns-aws
630d980861
feat(NetworkFirewall): Add Deletion Protection Check ( #4318 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-27 10:08:31 -04:00
Pedro Martín
7d81040eae
fix(docs): Rewrite dashboard docs ( #4327 )
2024-06-27 12:55:02 +02:00
Pepe Fagoaga
4009d96f8a
chore(regions_update): Changes in regions for AWS services. ( #4326 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-27 12:33:45 +02:00
Pepe Fagoaga
cee5064b11
chore(tests): Improve CloudTrail tests checking for multiregional trails ( #4177 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-26 17:33:50 -04:00
Sergio Garcia
e5c911abef
chore(python): update vulnerable anyio library ( #4322 )
2024-06-26 16:57:57 -04:00
dependabot[bot]
c000aa2602
build(deps): bump djangorestframework from 3.15.1 to 3.15.2
...
Bumps [djangorestframework](https://github.com/encode/django-rest-framework ) from 3.15.1 to 3.15.2.
- [Release notes](https://github.com/encode/django-rest-framework/releases )
- [Commits](https://github.com/encode/django-rest-framework/compare/3.15.1...3.15.2 )
---
updated-dependencies:
- dependency-name: djangorestframework
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-06-26 19:33:40 +00:00
Sergio Garcia
ff5c41f363
fix(codebuild): enhance service functions ( #4319 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-06-26 11:27:50 -04:00
Sergio Garcia
cf84875355
feat(gcp): add service account impersonation ( #4291 )
2024-06-26 15:31:47 +02:00
Sophia Dao
ccfc46d743
feat(poc): Add in more data from api
2024-06-26 08:31:02 -05:00
Pepe Fagoaga
fc23eccc7b
chore(regions_update): Changes in regions for AWS services. ( #4320 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-26 11:47:28 +02:00
Víctor Fernández Poyatos
385eb5cc18
feat(django-be): update models and serializers
2024-06-26 11:12:00 +02:00
Sophia Dao
2ff7d81a9b
Comment out console.log
2024-06-26 01:33:56 -05:00
Sophia Dao
644c4fd3a4
WIP Hook up API and display data
2024-06-26 01:32:45 -05:00
Sophia Dao
d0a931bae8
feat(poc): Switch to global next.ui package, update python settings for ngrok - wip, add in next table layout
2024-06-25 19:36:10 -05:00
Sophia Dao
5583714c7a
feat(poc): Add in current PoC to the repo that will be used by Vercel
2024-06-25 13:58:54 -05:00
Pedro Martín
c5fb11e815
docs(kubernetes): add docs about kubernetes in tutorials page ( #4288 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-25 11:41:13 -04:00
dependabot[bot]
fdab1edd3e
chore(deps): bump boto3 from 1.34.123 to 1.34.132 ( #4316 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-25 16:15:42 +02:00
dependabot[bot]
ea74d82c48
chore(deps): bump azure-mgmt-web from 7.2.0 to 7.3.0 ( #4301 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-25 09:21:12 -04:00
Rubén De la Torre Vico
093738c65f
chore(s3): reduce false positive in s3 public check ( #4281 )
2024-06-25 08:55:42 -04:00
Pedro Martín
bae224c891
fix(csv-outputs): compliance outputs not showing consistents values ( #4287 )
2024-06-25 14:50:17 +02:00
dependabot[bot]
32cded949d
chore(deps): bump azure-mgmt-cosmosdb from 9.5.0 to 9.5.1 ( #4298 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-25 14:46:25 +02:00
dependabot[bot]
6463dcdde0
chore(deps): bump azure-identity from 1.16.1 to 1.17.1 ( #4300 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-25 14:07:39 +02:00
dependabot[bot]
0b16dab2ad
chore(deps): bump azure-mgmt-storage from 21.1.0 to 21.2.0 ( #4297 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-25 13:34:12 +02:00
dependabot[bot]
825c620e6f
chore(deps): bump botocore from 1.34.128 to 1.34.132 ( #4296 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-25 12:30:26 +02:00
dependabot[bot]
819a5597a3
chore(deps-dev): bump coverage from 7.5.3 to 7.5.4 ( #4295 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-25 10:35:50 +02:00
dependabot[bot]
4bae3d2600
chore(deps): bump slack-sdk from 3.29.0 to 3.30.0 ( #4294 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-25 09:51:31 +02:00
Sergio Garcia
131cb82751
chore(readme): update checks number ( #4290 )
2024-06-25 08:56:04 +02:00
dependabot[bot]
029caf3b10
chore(deps): bump google-api-python-client from 2.133.0 to 2.134.0 ( #4293 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-25 08:38:08 +02:00
dependabot[bot]
9ee23a39b5
chore(deps): bump trufflesecurity/trufflehog from 3.78.1 to 3.78.2 ( #4292 )
2024-06-25 07:57:24 +02:00
Pedro Martín
4837df4352
chore(aws): handle new permissions ( #4289 )
2024-06-24 12:14:20 -04:00
sansns-aws
d173d58a93
feat(DMS): Add Database Migration Service (DMS) ( #4249 )
2024-06-24 11:41:33 -04:00
sansns-aws
af29570fe9
feat(DocumentDB): New DocumentDB checks ( #4247 )
2024-06-24 11:40:39 -04:00
sansns-aws
9253cd42dd
feat(neptune): Additional Neptune checks ( #4243 )
2024-06-24 11:38:41 -04:00
Sergio Garcia
836b4ba2cc
fix(rds): handle not existing endpoint ( #4285 )
2024-06-24 09:38:26 +02:00
Pepe Fagoaga
f28c0578aa
chore(regions_update): Changes in regions for AWS services. ( #4286 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-24 07:53:01 +02:00
Rubén De la Torre Vico
536f0df9d3
feat(app): Add new Azure functions checks ( #4189 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-21 11:32:31 -04:00
Pepe Fagoaga
465261e1df
chore(regions_update): Changes in regions for AWS services. ( #4283 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-21 10:54:24 -04:00
Sergio Garcia
3667370604
chore(safety): update vulnerable library version ( #4284 )
2024-06-21 10:23:17 -04:00
sansns-aws
9ca64e7bdb
feat(RDS): Additional RDS checks ( #4233 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-20 13:41:08 -04:00
dependabot[bot]
95a9f1c458
chore(deps): bump kubernetes from 29.0.0 to 30.1.0 ( #4226 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-20 11:34:35 -04:00
Pepe Fagoaga
9fbd627f9a
chore(regions_update): Changes in regions for AWS services. ( #4280 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-20 08:57:32 -04:00
Pepe Fagoaga
7203fcf4f1
chore(regions_update): Changes in regions for AWS services. ( #4278 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-20 08:57:05 -04:00
Rubén De la Torre Vico
f10bb343a6
doc(debugging): Improve actual VSCode debugging file ( #4279 )
2024-06-20 09:11:01 +02:00
John Mastron
9147a45e2f
fix(aws): aws check and metadata fixes ( #4251 )
...
Co-authored-by: John Mastron <jmastron@jpl.nasa.gov >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-06-19 10:21:50 +02:00
dependabot[bot]
5353d515b6
chore(deps): bump dash from 2.17.0 to 2.17.1 ( #4272 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-18 09:37:44 -04:00
Pepe Fagoaga
e8a94733bf
fix(aws): Assume role for Gov Cloud ( #4254 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-06-18 09:37:23 -04:00
Pepe Fagoaga
625be45742
chore(regions_update): Changes in regions for AWS services. ( #4277 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-18 09:09:43 -04:00
dependabot[bot]
ecb6cb897f
chore(deps): bump numpy from 1.26.4 to 2.0.0 ( #4275 )
2024-06-18 14:53:38 +02:00
dependabot[bot]
f07bd79442
chore(deps-dev): bump flake8 from 7.0.0 to 7.1.0 ( #4269 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-18 13:43:11 +02:00
dependabot[bot]
b7c1fabae1
chore(deps-dev): bump bandit from 1.7.8 to 1.7.9 ( #4271 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-18 11:44:02 +02:00
dependabot[bot]
59d3b2f33e
chore(deps): bump google-api-python-client from 2.132.0 to 2.133.0 ( #4274 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-18 11:04:25 +02:00
dependabot[bot]
6c098e98e3
chore(deps): bump botocore from 1.34.123 to 1.34.128 ( #4273 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-18 10:15:13 +02:00
dependabot[bot]
380011fd1e
chore(deps): bump urllib3 from 1.26.18 to 1.26.19 ( #4276 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-18 09:06:35 +02:00
dependabot[bot]
e97bf32a90
chore(deps): bump slack-sdk from 3.28.0 to 3.29.0 ( #4270 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-18 08:50:52 +02:00
dependabot[bot]
ed18ea0ec4
chore(deps): bump docker/build-push-action from 5 to 6 ( #4260 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-18 08:49:47 +02:00
dependabot[bot]
dc897986bc
chore(deps): bump trufflesecurity/trufflehog from 3.78.0 to 3.78.1 ( #4259 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-18 08:49:36 +02:00
Pepe Fagoaga
e296d6e5c1
fix: Some minor fixes in several parts ( #4237 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-06-17 16:54:54 -04:00
Andoni Alonso
1252e6163b
chore(docs): update checks reference link ( #4258 )
2024-06-17 15:30:39 -04:00
Pepe Fagoaga
8ad14c7833
fix(custom_checks): workaround to fix execution ( #4256 )
2024-06-17 14:13:18 -04:00
Pepe Fagoaga
61b9ecc214
chore(regions_update): Changes in regions for AWS services. ( #4252 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-14 11:07:22 -04:00
Sergio Garcia
f8f2c19454
fix(readme): update note syntax ( #4250 )
2024-06-13 16:05:10 -04:00
Rubén De la Torre Vico
922438a7a0
chore(network): Reduce network watchers azure check findings ( #4242 )
2024-06-13 15:57:44 -04:00
Pepe Fagoaga
920f98c9ef
chore(regions_update): Changes in regions for AWS services. ( #4248 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-13 15:12:10 -04:00
Pepe Fagoaga
9b1ad5dd2e
chore(regions_update): Changes in regions for AWS services. ( #4246 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-12 07:56:53 -04:00
dependabot[bot]
d7a97b6e1d
chore(deps): bump azure-identity from 1.16.0 to 1.16.1 ( #4230 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-11 17:49:44 -04:00
dependabot[bot]
07db051d14
chore(deps): bump azure-identity from 1.16.0 to 1.16.1 ( #4245 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-11 17:49:30 -04:00
dependabot[bot]
6fec85589d
chore(deps-dev): bump pylint from 3.2.2 to 3.2.3 ( #4229 )
2024-06-11 12:59:21 -04:00
dependabot[bot]
f82aa1c3e1
chore(deps-dev): bump pytest from 8.2.1 to 8.2.2 ( #4223 )
2024-06-11 12:10:27 -04:00
Pepe Fagoaga
ee9faedbbe
docs(developer-guide): How to fork the repo ( #4238 )
2024-06-11 12:08:54 -04:00
Pepe Fagoaga
e5dec1251d
fix(s3): Send HTML also ( #4240 )
2024-06-11 12:08:13 -04:00
Pepe Fagoaga
692a39b08f
chore(regions_update): Changes in regions for AWS services. ( #4241 )
2024-06-11 12:04:51 -04:00
Pepe Fagoaga
60b3523def
chore(release): 4.2.4 ( #4236 )
2024-06-11 09:46:33 -04:00
Rubén De la Torre Vico
e1428bc1ff
chore(iam): improve iam user console access check ( #4211 )
2024-06-11 12:45:29 +02:00
dependabot[bot]
0ff8b7e02a
chore(deps): bump boto3 from 1.34.113 to 1.34.123 ( #4235 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-11 11:56:02 +02:00
dependabot[bot]
7b84008046
chore(deps): bump google-api-python-client from 2.131.0 to 2.132.0 ( #4227 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-11 11:02:08 +02:00
dependabot[bot]
30a092e2aa
chore(deps): bump slack-sdk from 3.27.2 to 3.28.0 ( #4228 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-11 09:54:38 +02:00
dependabot[bot]
11a7ff2977
chore(deps): bump trufflesecurity/trufflehog from 3.77.0 to 3.78.0 ( #4222 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-11 09:51:43 +02:00
dependabot[bot]
12ba978361
chore(deps-dev): bump safety from 3.2.0 to 3.2.3 ( #4232 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-11 09:22:41 +02:00
dependabot[bot]
42182a2b70
chore(deps): bump botocore from 1.34.118 to 1.34.123 ( #4224 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-11 08:37:14 +02:00
dependabot[bot]
26eaec3101
chore(deps-dev): bump authlib from 1.3.0 to 1.3.1 ( #4213 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-10 16:47:40 -04:00
Pepe Fagoaga
daf6194dee
chore(regions_update): Changes in regions for AWS services. ( #4210 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-08 16:14:04 +02:00
William Leung
e28300a1db
fix(config/html): handle encoding issues and improve error handling in config and HTML file loading functions ( #4203 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-07 12:51:01 -04:00
Rubén De la Torre Vico
1a225c334f
chore(acm): Improve near-expiration certificates check ( #4207 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-07 12:22:05 -04:00
Sergio Garcia
1d64ca4372
fix(compliance): check if custom check has compliance metadata ( #4208 )
2024-06-07 10:54:34 -04:00
Seiji Ujihira
2a139e3dc7
fix(custom): execute custom checks ( #4202 )
2024-06-07 10:01:28 -04:00
Pedro Martín
89d1712ff1
fix(dashboard): fix styles in overview page ( #4204 )
2024-06-07 09:46:54 -04:00
Pedro Martín
45ea9e1e79
fix(html): fix status from HTML outputs ( #4206 )
2024-06-07 09:36:21 -04:00
Pepe Fagoaga
4b46fe9788
chore(regions_update): Changes in regions for AWS services. ( #4205 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-07 09:31:55 -04:00
Sergio Garcia
28b9e269b7
chore(version): update Prowler version ( #4201 )
2024-06-07 08:40:03 +02:00
Pedro Martín
0a41ec4746
fix(html): resolve html changing finding status ( #4199 )
2024-06-06 11:30:49 -04:00
Pedro Martín
e6472f9bfc
fix(html): handle muted status to html outputs ( #4195 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-06-06 10:06:02 -04:00
Pedro Martín
c033af6194
docs(readme): Update checks number ( #4197 )
2024-06-06 09:39:24 -04:00
sansns-aws
4d662dc446
feat(rds): Add security group event subscription check ( #4130 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-06 08:45:50 -04:00
Sergio Garcia
0de10c4742
fix(s3): check if account is signed up ( #4194 )
2024-06-06 08:43:49 -04:00
Sergio Garcia
f7b7ce3b95
fix(glue): check if get dev endpoints call is supported ( #4193 )
2024-06-06 08:43:39 -04:00
Sergio Garcia
7b43b3d31e
fix(elasticache): handle empty cluster subnets ( #4192 )
2024-06-06 08:43:30 -04:00
Sergio Garcia
84b9c442fe
fix(rds): handle not existing parameter values ( #4191 )
2024-06-06 08:43:19 -04:00
Kay Agahd
a890895e8b
docs(index): fix docu about output modes ( #4187 )
2024-06-05 10:10:11 -04:00
Pedro Martín
f3c6720a1c
chore(version): update prowler version ( #4190 )
2024-06-05 09:11:50 -04:00
Kay Agahd
8c29bbfe4e
docs(reporting): fix mapping of json-ocsf field cloud.account.type ( #4186 )
2024-06-04 17:17:28 -04:00
Pepe Fagoaga
910c969473
refactor(run_check): Simplify and add tests ( #4183 )
2024-06-04 12:35:57 -04:00
Pedro Martín
2795673ebc
fix(html): make Prowler logo resizable ( #4185 )
2024-06-04 11:57:41 -04:00
Pedro Martín
dc510e0683
fix(html): add correct color for manual findings ( #4184 )
2024-06-04 11:57:22 -04:00
Pepe Fagoaga
070edc1693
refactor(Slack): create class ( #4127 )
2024-06-04 10:54:12 -04:00
dependabot[bot]
8645ee20c3
chore(deps): bump botocore from 1.34.113 to 1.34.118 ( #4170 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-04 14:46:06 +02:00
Pepe Fagoaga
8d4abd7638
chore(regions_update): Changes in regions for AWS services. ( #4178 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-06-04 12:04:35 +02:00
dependabot[bot]
f4106f4b72
chore(deps-dev): bump moto from 5.0.8 to 5.0.9 ( #4169 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-04 11:44:49 +02:00
dependabot[bot]
4087aaf6cf
chore(deps-dev): bump coverage from 7.5.2 to 7.5.3 ( #4167 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-04 10:51:28 +02:00
dependabot[bot]
c3ef0d4ca8
chore(deps): bump google-api-python-client from 2.130.0 to 2.131.0 ( #4166 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-04 10:15:04 +02:00
dependabot[bot]
a1aed37482
chore(deps-dev): bump mkdocs-git-revision-date-localized-plugin from 1.2.5 to 1.2.6 ( #4164 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-04 09:07:20 +02:00
dependabot[bot]
d05a15ef5a
chore(deps): bump boto3 from 1.34.109 to 1.34.113 ( #4165 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-04 08:34:19 +02:00
dependabot[bot]
ef9d3b902e
chore(deps): bump trufflesecurity/trufflehog from 3.76.3 to 3.77.0 ( #4163 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-06-03 18:30:24 -04:00
Sergio Garcia
366bb91a1e
fix(cloudtrail): check if trails exist in service ( #4161 )
2024-06-03 17:05:39 -04:00
Sergio Garcia
0c01cf28c4
fix(trustedadvisor): handle AccessDenied exception ( #4158 )
2024-06-03 15:15:00 -04:00
Pepe Fagoaga
f895e4df6a
fix(cloudtrail): trail.region must be home region ( #4153 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-06-03 13:19:40 -04:00
Sergio Garcia
2affed81ad
fix(rds): use correct API call for cluster parameters ( #4150 )
2024-06-03 13:19:11 -04:00
Pepe Fagoaga
b33b529e74
refactor(banner): remove unneeded arguments ( #4155 )
2024-06-03 14:44:14 +02:00
Sergio Garcia
0bbb762c74
chore(favicon): update favicon logo ( #4151 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-06-03 12:01:30 +02:00
Pedro Martín
ec5fb035b1
fix(dependencies): ignore jinja vulnerability ( #4154 )
2024-06-03 10:07:00 +02:00
Kay Agahd
e45a189422
chore(AWS): allow ingress to any port for user defined network interface types ( #4094 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-05-31 13:37:52 -04:00
Pepe Fagoaga
b2b66bd080
fix(mutelist): Split code for AWS and the rest of providers ( #4143 )
2024-05-31 10:06:01 -04:00
Pepe Fagoaga
b905d73b82
fix(rds): Handle DBParameterGroupNotFound ( #4148 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-05-31 10:01:01 -04:00
rieck-srlabs
6ed3167e17
chore(iam): Downgrade AWS IAM check severity ( #4149 )
2024-05-31 09:16:50 -04:00
Rubén De la Torre Vico
3a2fea7136
fix(defender): Add new parameter required by new API version ( #4147 )
2024-05-31 12:40:48 +02:00
Sergio Garcia
212ff2439e
chore(ec2): add scan unused services logic to SG check ( #4138 )
2024-05-30 11:51:17 -04:00
Pepe Fagoaga
7b2a7faf6b
fix(mutelist): return False if something fails ( #4139 )
2024-05-30 11:25:13 -04:00
Sergio Garcia
2725d476a4
chore(vpc): add scan unused services logic to VPC checks ( #4137 )
2024-05-30 10:59:48 -04:00
Sergio Garcia
dfa940440c
chore(version): update Prowler version ( #4131 )
2024-05-30 15:43:20 +02:00
rieck-srlabs
862bc8cae8
chore(cloudformation): Update related URL ( #4134 )
2024-05-30 09:25:34 -04:00
Pepe Fagoaga
a51bdef083
fix(mutelist): Handle items starting by * ( #4136 )
2024-05-30 15:04:08 +02:00
Sergio Garcia
52955f9c6e
fix(eventbridge): solve import function in check ( #4121 )
2024-05-29 12:02:38 -04:00
Sergio Garcia
581cfcc917
fix(readme): resize logo ( #4129 )
2024-05-29 17:29:11 +02:00
Sergio Garcia
4ee29225bc
fix(readme): solve logo in GitHub app ( #4128 )
2024-05-29 10:03:44 -04:00
Pepe Fagoaga
095b6bc463
chore(regions_update): Changes in regions for AWS services. ( #4126 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-05-29 09:30:06 -04:00
Sergio Garcia
bd1fcdd68a
fix(rds): solve TypeError and make Certificate class ( #4122 )
2024-05-29 09:12:31 +02:00
Sergio Garcia
98f6003069
chore(readme): update AWS count checks ( #4119 )
2024-05-29 08:22:00 +02:00
Sergio Garcia
583c3c6ca7
chore(version): update Prowler version ( #4120 )
2024-05-29 08:21:44 +02:00
Sergio Garcia
a5378b58f7
chore(gcp): add script to enable APIs in GCP projects ( #4117 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-05-28 12:17:49 -04:00
Davidm4r
98b7df643a
feat(sns): sns topics no http subscriptions ( #4095 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-05-28 12:00:13 -04:00
Sergio Garcia
533f7cbd5a
chore(docs): add mapping of CSV headers with providers ( #4118 )
2024-05-28 11:59:45 -04:00
Sergio Garcia
f4a1130c03
feat(ec2): add checks for EC2 instances with exposed ports to the internet ( #4029 )
2024-05-28 11:44:19 -04:00
sansns-aws
38c9187a5e
fix(rds): ParameterValue MySQL and MariaDB RDS Instances ( #4116 )
2024-05-28 11:43:53 -04:00
Sergio Garcia
c7827cdc80
chore(dependency): add TruffleHog dependency to docs ( #4115 )
2024-05-28 15:42:07 +02:00
dependabot[bot]
33246a4dab
chore(deps-dev): bump docker from 7.0.0 to 7.1.0
...
Bumps [docker](https://github.com/docker/docker-py ) from 7.0.0 to 7.1.0.
- [Release notes](https://github.com/docker/docker-py/releases )
- [Commits](https://github.com/docker/docker-py/compare/7.0.0...7.1.0 )
---
updated-dependencies:
- dependency-name: docker
dependency-type: direct:development
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-05-28 09:35:58 +00:00
dependabot[bot]
7bc09fb1c8
chore(deps): bump botocore from 1.34.109 to 1.34.113
...
Bumps [botocore](https://github.com/boto/botocore ) from 1.34.109 to 1.34.113.
- [Changelog](https://github.com/boto/botocore/blob/develop/CHANGELOG.rst )
- [Commits](https://github.com/boto/botocore/compare/1.34.109...1.34.113 )
---
updated-dependencies:
- dependency-name: botocore
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-05-28 09:05:48 +00:00
dependabot[bot]
950adb109f
chore(deps): bump azure-mgmt-network from 25.3.0 to 25.4.0
...
Bumps [azure-mgmt-network](https://github.com/Azure/azure-sdk-for-python ) from 25.3.0 to 25.4.0.
- [Release notes](https://github.com/Azure/azure-sdk-for-python/releases )
- [Changelog](https://github.com/Azure/azure-sdk-for-python/blob/main/doc/esrp_release.md )
- [Commits](https://github.com/Azure/azure-sdk-for-python/compare/azure-mgmt-network_25.3.0...azure-mgmt-network_25.4.0 )
---
updated-dependencies:
- dependency-name: azure-mgmt-network
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-05-28 08:40:54 +00:00
dependabot[bot]
a98d095be0
chore(deps): bump boto3 from 1.34.105 to 1.34.109
...
Bumps [boto3](https://github.com/boto/boto3 ) from 1.34.105 to 1.34.109.
- [Release notes](https://github.com/boto/boto3/releases )
- [Changelog](https://github.com/boto/boto3/blob/develop/CHANGELOG.rst )
- [Commits](https://github.com/boto/boto3/compare/1.34.105...1.34.109 )
---
updated-dependencies:
- dependency-name: boto3
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-05-28 08:13:39 +00:00
dependabot[bot]
a029296811
chore(deps): bump google-api-python-client from 2.129.0 to 2.130.0 ( #4107 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-28 09:48:05 +02:00
dependabot[bot]
3e6c682fa1
chore(deps-dev): bump moto from 5.0.7 to 5.0.8
...
Bumps [moto](https://github.com/getmoto/moto ) from 5.0.7 to 5.0.8.
- [Release notes](https://github.com/getmoto/moto/releases )
- [Changelog](https://github.com/getmoto/moto/blob/master/CHANGELOG.md )
- [Commits](https://github.com/getmoto/moto/compare/5.0.7...5.0.8 )
---
updated-dependencies:
- dependency-name: moto
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-05-28 07:17:29 +00:00
dependabot[bot]
ab06627ee8
chore(deps-dev): bump coverage from 7.5.1 to 7.5.2
...
Bumps [coverage](https://github.com/nedbat/coveragepy ) from 7.5.1 to 7.5.2.
- [Release notes](https://github.com/nedbat/coveragepy/releases )
- [Changelog](https://github.com/nedbat/coveragepy/blob/master/CHANGES.rst )
- [Commits](https://github.com/nedbat/coveragepy/compare/7.5.1...7.5.2 )
---
updated-dependencies:
- dependency-name: coverage
dependency-type: direct:development
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2024-05-28 06:49:40 +00:00
Pedro Martín
5fe85aa2a5
docs(dashboard): Update docs related with the Prowler Dashboard ( #4113 )
2024-05-28 08:23:59 +02:00
dependabot[bot]
ceac9eee60
chore(deps): bump microsoft-kiota-abstractions from 1.3.2 to 1.3.3 ( #4112 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-28 08:22:30 +02:00
Toni de la Fuente
24d8c05ae0
Update SECURITY.md ( #4093 )
2024-05-27 14:16:35 -04:00
Sergio Garcia
e6e7303640
chore(logo): resize logo in README and update favicon and architecture ( #4092 )
2024-05-27 13:24:14 -04:00
Sergio Garcia
a6b2ec42b8
feat(logo): add new Prowler logo! ( #4090 )
2024-05-27 18:14:27 +02:00
rieck-srlabs
d51fd0e997
feat(EC2): New EC2 AWS check ( #852 ) ( #4076 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-05-27 11:17:00 -04:00
Sergio Garcia
9c8280d980
fix(opensearch): handle non existing SAMLOptions in domain ( #4086 )
2024-05-27 16:03:58 +02:00
Sergio Garcia
b27155790e
fix(rds): solve ParameterValue KeyError ( #4085 )
2024-05-27 16:03:12 +02:00
madereddy
ca554ad3ff
feat(AWS): New Storage Gateway FileShare KMS CMK Check ( #4082 )
2024-05-27 09:39:23 -04:00
Pedro Martín
b72e4a657c
chore(logo-html): update html logo ( #4089 )
2024-05-27 13:44:57 +02:00
Pedro Martín
7371104194
chore(logo-dashboard): update logo in dashboard ( #4088 )
2024-05-27 13:42:37 +02:00
Pepe Fagoaga
96fc4c3383
docs(README): remove HTML deprecation ( #4087 )
2024-05-27 10:04:22 +02:00
Pedro Martín
ee178c2305
feat(dashboard): add more fields to dashboard overview component ( #4084 )
2024-05-24 09:05:51 -04:00
Sergio Garcia
4dc2070853
chore(slack): change Slack channel name env variable ( #4080 )
2024-05-24 08:15:06 -04:00
Pedro Martín
e9670d7291
chore(CLI): start working on CLI ( #4067 )
2024-05-24 12:27:48 +02:00
Pedro Martín
3aa28329d2
fix(output): handle --unix-timestamp flag ( #4079 )
2024-05-24 10:37:59 +02:00
Sergio Garcia
aa425077b7
fix(kubernetes): solve TypeError in Core NetRaw check ( #4078 )
2024-05-23 12:49:33 -04:00
Sergio Garcia
eb7f56f512
fix(kubernetes): solve TypeError in Core NetRaw check ( #4075 )
2024-05-23 16:37:57 +02:00
Pedro Martín
a591f07bdf
fix(output): add provider to initialize_file_descriptor ( #4073 )
2024-05-23 16:36:51 +02:00
Pepe Fagoaga
90e4bf7d69
chore(regions_update): Changes in regions for AWS services. ( #4071 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-05-23 09:46:38 -04:00
Pedro Martín
a590ef52da
docs(dashboard): update and improve docs ( #4072 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-05-23 11:48:08 +02:00
Pepe Fagoaga
011c6c4571
chore(scan): New scan() function and fix an issue while scanning with only logs mode ( #4068 )
2024-05-23 11:35:35 +02:00
Pedro Martín
6c54e305d9
docs(reporting): add HTML to reporting docs ( #4070 )
2024-05-23 10:51:33 +02:00
dependabot[bot]
c7550d8902
chore(deps): bump azure-mgmt-resource from 23.0.1 to 23.1.1 ( #3975 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-23 10:37:15 +02:00
Pepe Fagoaga
cdd10a49f6
chore(labeler): Add cli label ( #4069 )
2024-05-23 10:34:09 +02:00
Sergio Garcia
374567a858
fix(kubernetes): solve errors in RBAC and Core services ( #4063 )
2024-05-22 12:07:12 -04:00
Rubén De la Torre Vico
c118e34ada
chore(IAM): Improve IAM checks for Azure ( #4061 )
2024-05-22 10:19:13 -04:00
Rubén De la Torre Vico
d1632d71c2
docs(readme): Update readme number checks and services ( #4058 )
2024-05-22 10:04:48 -04:00
Kay Agahd
d007555a64
fix(doc): mapping of extra748 and add extra74 ( #4059 )
2024-05-22 10:04:19 -04:00
Rubén De la Torre Vico
0e71756db3
feat(Kafka): New Kafka AWS checks ( #4021 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-05-22 08:41:01 -04:00
Kay Agahd
69166a0352
chore(aws): Add failed_checks to track ( #4018 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-05-22 09:21:05 +02:00
Sergio Garcia
9923845f20
chore(docs): add check severity modification docs ( #4056 )
2024-05-22 09:08:46 +02:00
Sergio Garcia
05d4338d83
fix(gcp): handle projects API Call error ( #4055 )
2024-05-22 09:04:26 +02:00
Pepe Fagoaga
db504965a1
chore(execute_checks): remove mutelist since it is within the provider ( #4052 )
2024-05-22 08:31:43 +02:00
Pedro Martín
a8c6d29679
fix(outputs): fill compliance field for outputs ( #4054 )
2024-05-22 08:28:22 +02:00
madereddy
9e934b8e87
chore(aws): cleanup aws test cases and standardize checks ( #4053 )
2024-05-21 11:49:30 -04:00
dependabot[bot]
248c7c51d6
chore(deps): bump botocore from 1.34.105 to 1.34.109 ( #4037 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 10:44:35 -04:00
dependabot[bot]
ea4a3b4e11
chore(deps): bump slack-sdk from 3.27.1 to 3.27.2 ( #4039 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 09:40:09 -04:00
madereddy
2f57f1f594
feat(rds): Add AWS RDS clusters to transport encryption check ( #4028 )
2024-05-21 09:22:39 -04:00
dependabot[bot]
716d38814f
chore(deps): bump msgraph-sdk from 1.3.0 to 1.4.0 ( #4038 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 14:46:23 +02:00
dependabot[bot]
1971d19a5d
chore(deps): bump py-ocsf-models from 0.1.0 to 0.1.1 ( #4036 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 14:00:59 +02:00
madereddy
3eb95a349e
chore(aws): cleanup aws test cases ( #4049 )
2024-05-21 13:55:47 +02:00
Pedro Martín
921cbb14d6
feat(dashboard): Multiple changes in compliance page ( #4051 )
2024-05-21 11:01:40 +02:00
dependabot[bot]
a9b7fc5e48
chore(deps-dev): bump pylint from 3.2.0 to 3.2.2 ( #4035 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 10:48:56 +02:00
dependabot[bot]
b0d33ce20c
chore(deps-dev): bump pytest from 8.2.0 to 8.2.1 ( #4033 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 09:51:36 +02:00
dependabot[bot]
06a338f5fb
chore(deps): bump azure-mgmt-security from 6.0.0 to 7.0.0 ( #4034 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 09:23:56 +02:00
Sergio Garcia
f4eaf2d909
feat(eventbridge): add EventBridge checks ( #4020 )
2024-05-21 08:51:10 +02:00
dependabot[bot]
41a4750b45
chore(deps): bump boto3 from 1.34.99 to 1.34.105 ( #4032 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 08:45:56 +02:00
dependabot[bot]
114921ef8e
chore(deps): bump azure-mgmt-cosmosdb from 9.4.0 to 9.5.0 ( #4031 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 08:01:58 +02:00
dependabot[bot]
8570493ff7
chore(deps): bump trufflesecurity/trufflehog from 3.75.1 to 3.76.3 ( #4030 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 08:01:14 +02:00
dependabot[bot]
7fc19510a4
chore(deps): bump requests from 2.31.0 to 2.32.0 ( #4050 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-21 07:58:36 +02:00
Pedro Martín
bf1616d705
feat(compliance): Update RBI compliance framework ( #4026 )
2024-05-20 12:13:59 -04:00
Pedro Martín
db29c758ef
feat(output): Add HTML output Prowler ( #4005 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-20 17:26:06 +02:00
madereddy
6c632ddcf3
chore(rds): cleanup RDS test cases ( #4003 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-05-20 11:13:17 -04:00
madereddy
12f9f8a044
feat(rds): Add RDS certificate expiration check ( #4002 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-05-20 10:41:38 -04:00
Pepe Fagoaga
73b3484ce8
fix(mutelist): Handle exceptions before match ( #4024 )
2024-05-20 12:30:50 +02:00
Pepe Fagoaga
0f7c301896
chore(regions_update): Changes in regions for AWS services. ( #4023 )
2024-05-20 12:30:39 +02:00
Pepe Fagoaga
6f3eca7249
chore(global_provider): Move methods to class as static ( #3896 )
2024-05-20 11:29:05 +02:00
Pedro Martín
7da7726fe9
feat(custom-checks-metadata): add new fields ( #3976 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-05-20 11:08:52 +02:00
Pedro Martín
53cfcff68e
feat(dashboard): Improve table overview ( #4015 )
...
Co-authored-by: Sophia Dao <sophia@prowler.com >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-05-16 16:37:15 +02:00
Sergio Garcia
e3015c6af4
chore(compliance): change security group any port check ( #4019 )
2024-05-16 15:00:44 +02:00
Rubén De la Torre Vico
5cf4b638d5
feat(AWS): Lightsail new service and checks ( #3919 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-05-16 15:00:33 +02:00
Rubén De la Torre Vico
4aedba71fd
feat(aws): Add new kafka service ( #4001 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-05-16 14:29:05 +02:00
Pepe Fagoaga
416e406394
chore(regions_update): Changes in regions for AWS services. ( #4017 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-05-16 11:48:44 +02:00
Seizan Shimazaki
378e1599ed
fix(docs): Fix option name in gcp tutorial ( #4016 )
2024-05-16 09:21:52 +02:00
Pedro Martín
c33c3e3e21
feat(kubernetes): Handle empty --kubeconfig-file ( #3980 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-05-15 15:00:46 +02:00
dependabot[bot]
c6786881fb
chore(deps-dev): bump moto from 5.0.6 to 5.0.7 ( #3992 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-15 14:28:06 +02:00
dependabot[bot]
32c28572a4
chore(deps): bump botocore from 1.34.99 to 1.34.105 ( #4011 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-15 14:02:15 +02:00
dependabot[bot]
d77fb51795
chore(deps): bump boto3 from 1.34.94 to 1.34.99 ( #3991 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-15 13:22:17 +02:00
dependabot[bot]
03530d3e0d
chore(deps-dev): bump freezegun from 1.5.0 to 1.5.1 ( #3989 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-15 12:50:14 +02:00
Pedro Martín
4628b823cf
fix(elasticache): make previous comprobations for subnet ( #4014 )
2024-05-15 12:25:23 +02:00
dependabot[bot]
8423e328ce
chore(deps): bump azure-storage-blob from 12.19.1 to 12.20.0 ( #3988 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-15 12:23:20 +02:00
dependabot[bot]
923176796a
chore(deps-dev): bump pylint from 3.1.0 to 3.2.0 ( #4010 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-15 11:58:52 +02:00
Pepe Fagoaga
d7c4a1c789
chore(regions_update): Changes in regions for AWS services. ( #4009 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-05-15 11:43:05 +02:00
dependabot[bot]
e73a533f41
chore(deps): bump google-api-python-client from 2.127.0 to 2.129.0 ( #3986 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-05-15 11:11:01 +02:00
Sergio Garcia
4fbddd5b42
chore(safety): ignore pip vulnerability ( #4007 )
2024-05-15 10:44:50 +02:00
Pepe Fagoaga
45ccd7e793
fix(aws): Handle TZ while refreshing boto3 credentials ( #3969 )
2024-05-10 14:41:56 +02:00
Pedro Martín
bc80edd586
chore(deps): remove mrestazure deprecated ( #3974 )
2024-05-10 13:28:27 +02:00
Pepe Fagoaga
5d2af9b9f7
chore(regions_update): Changes in regions for AWS services. ( #3971 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-05-10 11:42:11 +02:00
madereddy
6601b4231d
chore(rds): support more AWS RDS DB Instance engines in encryption check ( #3968 )
2024-05-10 10:23:54 +02:00
Pedro Martín
6e88b260d0
docs(longpaths): add info about longpaths in windows ( #3970 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-05-10 09:26:23 +02:00
Pepe Fagoaga
ebe3c5db54
chore(regions_update): Changes in regions for AWS services. ( #3965 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-05-09 12:00:45 +02:00
Sergio Garcia
1df93b62df
feat(ec2): add EC2 Security group check to verify if at least one port is opened ( #3962 )
2024-05-09 10:45:40 +02:00
Pedro Martín
225e12be91
feat(cognito): Add new checks related with cognito service ( #3898 )
2024-05-08 17:25:57 +02:00
ur
73b7d76219
fix(rds): add ReadReplicaSourceDBInstanceIdentifier to db_instance ( #3912 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-05-08 15:54:51 +02:00
Pedro Martín
e226cb06e0
fix(encoding): set utf-8 encoding for csv ( #3961 )
2024-05-08 13:14:47 +02:00
Pepe Fagoaga
d35fd463a2
fix(s3): Handle if regional client is present ( #3959 )
2024-05-08 10:31:49 +02:00
Pedro Martín
c197aa8594
fix(dashboard): Handle encoding errors ( #3847 )
2024-05-08 09:02:43 +02:00
Sergio Garcia
6f0dc44975
feat(aws): new dynamodb_table_cross_account_access check ( #3932 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-05-07 13:36:32 +02:00
dependabot[bot]
d9cf113882
chore(deps): bump dash from 2.16.1 to 2.17.0 ( #3947 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 13:19:50 +02:00
Pepe Fagoaga
b776a6414d
chore(regions_update): Changes in regions for AWS services. ( #3957 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-05-07 13:11:24 +02:00
dependabot[bot]
4cfd4b3e31
chore(deps): bump detect-secrets from 1.4.0 to 1.5.0 ( #3948 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 12:51:15 +02:00
dependabot[bot]
1b083eec67
chore(deps): bump jsonschema from 4.21.1 to 4.22.0 ( #3952 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 10:34:41 +02:00
dependabot[bot]
b4c04c7cfc
chore(deps): bump botocore from 1.34.94 to 1.34.99 ( #3946 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 10:04:57 +02:00
dependabot[bot]
5d1f40e104
chore(deps-dev): bump safety from 3.1.0 to 3.2.0 ( #3950 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 09:38:52 +02:00
dependabot[bot]
7f105e4d7a
chore(deps-dev): bump coverage from 7.5.0 to 7.5.1 ( #3945 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 08:58:18 +02:00
dependabot[bot]
c183a47637
chore(deps): bump schema from 0.7.5 to 0.7.7 ( #3953 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 08:26:28 +02:00
dependabot[bot]
9fd29ca5e4
chore(deps-dev): bump mkdocs-git-revision-date-localized-plugin from 1.2.4 to 1.2.5 ( #3949 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 07:45:38 +02:00
dependabot[bot]
b5d153948d
chore(deps): bump jinja2 from 3.1.3 to 3.1.4 ( #3935 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 07:44:57 +02:00
dependabot[bot]
1f49d6d74c
chore(deps): bump trufflesecurity/trufflehog from 3.74.0 to 3.75.1 ( #3951 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 07:43:24 +02:00
dependabot[bot]
d23c2a9be5
chore(deps): bump werkzeug from 3.0.2 to 3.0.3 ( #3934 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-05-07 07:43:09 +02:00
Sergio Garcia
a03a5d147b
chore(docs): remove unnecessary line ( #3933 )
2024-05-06 18:21:12 +02:00
Sergio Garcia
a54a0dd7c5
fix(k8s): handle Kubernetes Audit Config ( #3931 )
2024-05-06 12:57:49 +02:00
Pedro Martín
b60354ec4d
feat(dashboard): add idgrupocontrol description in compliance page for ens ( #3910 )
2024-05-06 12:41:54 +02:00
Pedro Martín
d4a079a559
fix(output): Handle case for None organizations metadata ( #3914 )
2024-05-06 12:39:28 +02:00
Sergio Garcia
eb05d637a2
chore(readme): update summary table numbers ( #3930 )
2024-05-06 12:35:11 +02:00
Sergio Garcia
b19b80008d
fix(k8s): enhance Kubernetes deployment ( #3928 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-05-06 12:33:19 +02:00
Pepe Fagoaga
5c263db5d4
chore(regions_update): Changes in regions for AWS services. ( #3929 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-05-06 11:36:07 +02:00
Nacho Rivera
808d87a0dd
chore(mitre gcp): add mitre mapping for gcp ( #3899 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
Co-authored-by: Sergio <sergio@prowler.com >
2024-05-06 11:10:44 +02:00
Pedro Martín
3162f6cd92
docs(fixer): add alias to prowler fixer -> remediations ( #3926 )
2024-05-06 11:10:20 +02:00
Pepe Fagoaga
2fbb47d839
fix(security-hub): Send only Fails if muted and send-only-fails ( #3925 )
2024-05-06 11:07:51 +02:00
Sergio Garcia
f26f5d3c72
fix(efs): change public EFS check metadata ( #3917 )
2024-05-06 10:25:01 +02:00
Emmanuel Ferdman
eb35f60d6b
docs(mutelist): update reference to aws_mutelist.yaml ( #3927 )
...
Signed-off-by: Emmanuel Ferdman <emmanuelferdman@gmail.com >
2024-05-06 10:24:27 +02:00
Pedro Martín
cd0253e477
chore(issue-template): Modify issue template to add logs ( #3924 )
2024-05-06 09:19:21 +02:00
Nacho Rivera
6ceb2c1e56
chore(regions_update): Changes in regions for AWS services. ( #3915 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-05-03 11:35:06 +02:00
Sergio Garcia
c67c23dd42
fix(ec2): handle non-existing private ip ( #3906 )
2024-05-03 09:12:14 +02:00
Sergio Garcia
8b0bae1c57
chore(mutelist): improve default AWS mutelist with ControlTower ( #3904 )
2024-05-03 08:40:54 +02:00
Nacho Rivera
c873f95743
chore(regions_update): Changes in regions for AWS services. ( #3908 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-05-03 08:39:39 +02:00
Pedro Martín
ddd94e6f64
docs(compliance): Add notes about compliance output ( #3911 )
2024-05-03 08:29:28 +02:00
Nacho Rivera
722554ad3f
chore(mitre azure): add mapping to mitre for azure provider ( #3857 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-04-30 17:34:10 +02:00
Sergio Garcia
484cf6f49d
fix(metadata): remove semicolons from metadata texts ( #3830 )
2024-04-30 14:02:43 +02:00
tianzedavid
e4154ed4a2
chore: fix some comments ( #3900 )
2024-04-30 13:43:55 +02:00
Sergio Garcia
86cb9f5838
fix(vpc): solve AWS principal key error ( #3903 )
2024-04-30 13:29:58 +02:00
Sergio Garcia
1622d0aa35
fix(vpc): solve subnet route key error ( #3902 )
2024-04-30 13:09:31 +02:00
Sergio Garcia
b54ecb50bf
fix(efs): check all public conditions ( #3872 )
2024-04-30 13:08:05 +02:00
dependabot[bot]
f16857fdf1
chore(deps): bump boto3 from 1.34.84 to 1.34.94 ( #3894 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-30 12:50:07 +02:00
Rubén De la Torre Vico
ab109c935c
docs(unit-testing): Add GCP services documentation ( #3901 )
2024-04-30 12:49:51 +02:00
dependabot[bot]
8e7e456431
chore(deps-dev): bump black from 24.4.0 to 24.4.2 ( #3883 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-30 12:14:58 +02:00
dependabot[bot]
46114cd5f4
chore(deps-dev): bump moto from 5.0.5 to 5.0.6 ( #3882 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-30 11:22:46 +02:00
dependabot[bot]
275e509c8d
chore(deps): bump azure-mgmt-compute from 30.6.0 to 31.0.0 ( #3880 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-30 10:37:48 +02:00
dependabot[bot]
12f135669f
chore(deps-dev): bump coverage from 7.4.4 to 7.5.0 ( #3879 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-30 10:11:56 +02:00
dependabot[bot]
f004df673d
chore(deps-dev): bump pytest from 8.1.1 to 8.2.0 ( #3878 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-30 09:46:18 +02:00
dependabot[bot]
3ed24b5d7a
chore(deps-dev): bump pytest-xdist from 3.5.0 to 3.6.1 ( #3877 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-30 09:07:12 +02:00
dependabot[bot]
77eade01a2
chore(deps): bump botocore from 1.34.89 to 1.34.94 ( #3876 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-30 08:19:05 +02:00
dependabot[bot]
a2158983f7
chore(deps): bump trufflesecurity/trufflehog from 3.73.0 to 3.74.0 ( #3874 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-30 07:50:48 +02:00
dependabot[bot]
c0d57c9498
chore(deps-dev): bump freezegun from 1.4.0 to 1.5.0 ( #3875 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-30 07:49:41 +02:00
Sergio Garcia
35c8ea5e3f
fix(aws): not show findings when AccessDenieds ( #3803 )
2024-04-29 17:42:44 +02:00
Sergio Garcia
b36152484d
chore(docs): update BridgeCrew links in metadata to our local docs link ( #3858 )
...
Co-authored-by: puchy22 <rubendltv22@gmail.com >
2024-04-29 17:39:04 +02:00
Rubén De la Torre Vico
768ca3f0ce
test(gcp): Add new services tests to GCP ( #3796 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2024-04-29 12:24:44 +02:00
Kay Agahd
bedd05c075
fix(aws): Extend opensearch_service_domains_use_cognito_authentication_for_kibana with SAML ( #3864 )
2024-04-29 12:08:03 +02:00
Sergio Garcia
721f73fdbe
chore(gcp): handle list projects API call errors ( #3849 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-04-29 11:32:21 +02:00
Sergio Garcia
34c2128d88
chore(docs): solve some issues ( #3868 )
2024-04-29 10:19:37 +02:00
Pedro Martín
14de3acdaa
docs(audit_info): update docs about audit info and new testing ( #3831 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-04-29 09:40:18 +02:00
Matt Merchant
899b2f8eb6
chore(get_tagged_resources): Add return value type hint ( #3860 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2024-04-26 15:23:16 +02:00
Nacho Rivera
27bb05fedc
chore(regions_update): Changes in regions for AWS services. ( #3862 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-26 11:57:32 +02:00
Pedro Martín
e1909b8ad9
fix(s3-integration): Store compliance outputs in their folder ( #3859 )
2024-04-26 08:22:36 +02:00
Pedro Martín
0ed7a247b6
fix(KeyError): handle CacheSubnetGroupName keyError ( #3856 )
2024-04-26 08:17:30 +02:00
Pedro Martín
ee46bf3809
feat(json-ocsf): Add new fields for py-ocsf 0.1.0 ( #3853 )
2024-04-25 12:47:28 +02:00
Nacho Rivera
469254094b
chore(regions_update): Changes in regions for AWS services. ( #3855 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-25 12:09:23 +02:00
Pedro Martín
acac3fc693
feat(ec2): Add 2 new checks + fixers related with EC2 service ( #3827 )
...
Co-authored-by: Sergio <sergio@prowler.com >
2024-04-24 11:43:19 +02:00
Nacho Rivera
022b7ef756
chore(regions_update): Changes in regions for AWS services. ( #3848 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-24 11:29:26 +02:00
dependabot[bot]
69d4f55734
chore(deps): bump google-api-python-client from 2.125.0 to 2.127.0 ( #3844 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-24 10:12:49 +02:00
dependabot[bot]
a0bff4b859
chore(deps): bump botocore from 1.34.84 to 1.34.89 ( #3836 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-24 09:38:20 +02:00
Nacho Rivera
23df599a03
chore(regions_update): Changes in regions for AWS services. ( #3842 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-23 17:48:34 +02:00
dependabot[bot]
c8d74ca350
chore(deps): bump azure-mgmt-containerservice from 29.1.0 to 30.0.0 ( #3835 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-23 17:48:15 +02:00
dependabot[bot]
8d6ba43ad0
chore(deps): bump msgraph-sdk from 1.2.0 to 1.3.0 ( #3834 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-23 08:29:03 +02:00
Nacho Rivera
44ca2f7a66
chore(regions_update): Changes in regions for AWS services. ( #3826 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-22 12:48:42 +02:00
Pepe Fagoaga
ec0be1c7fe
chore(check): global_provider is not needed here ( #3828 )
2024-04-22 12:05:41 +02:00
Pepe Fagoaga
fd732db91b
fix(mutelist): Be called whatever the provider ( #3811 )
2024-04-22 11:16:21 +02:00
Pepe Fagoaga
67f45b7767
chore(release): 4.1.0 ( #3817 )
2024-04-22 09:40:37 +02:00
Nacho Rivera
396e6a1c36
chore(regions_update): Changes in regions for AWS services. ( #3824 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-22 09:39:04 +02:00
Jakob Rieck
326c46defd
fix(aws): Corrects privilege escalation vectors ( #3823 )
2024-04-19 13:42:51 +02:00
Jakob Rieck
7a1762be51
fix(aws): Include record names for dangling IPs ( #3821 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-04-19 12:47:03 +02:00
Nacho Rivera
b466b476a3
chore(regions_update): Changes in regions for AWS services. ( #3822 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-19 11:32:22 +02:00
Pepe Fagoaga
e4652d4339
fix(ocsf): Add resource details to data ( #3819 )
2024-04-19 08:35:26 +02:00
Pepe Fagoaga
f1e4cd3938
docs(ocsf): Add missing fields to the example ( #3816 )
2024-04-19 08:09:36 +02:00
dependabot[bot]
e192a98079
chore(deps): bump aiohttp from 3.9.3 to 3.9.4 ( #3818 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-19 07:50:48 +02:00
Pedro Martín
833dc83922
fix(dashboard): fix error in windows for csvreader ( #3806 )
2024-04-18 15:27:20 +02:00
Pedro Martín
ab1751c595
fix(overview-table): change font in overview table ( #3815 )
2024-04-18 14:53:32 +02:00
Sergio Garcia
fff06f971e
chore(vpc): improve public subnet logic ( #3814 )
2024-04-18 13:58:42 +02:00
Pepe Fagoaga
a138d2964e
fix(execute_check): Handle ModuleNotFoundError ( #3812 )
2024-04-18 12:36:15 +02:00
Pedro Martín
e6d7965453
fix(network_azure): handle capitalized protocols in security group rules ( #3808 )
2024-04-18 08:11:29 +02:00
Sergio Garcia
ab714f0fc7
chore(fixer): add more fixers ( #3772 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-04-18 08:09:03 +02:00
Sergio Garcia
465b0f6a16
fix(utils): import libraries when needed ( #3805 )
2024-04-17 16:35:04 +02:00
Pedro Martín
bd87351ea7
chore(aws): Add CloudTrail Threat Detection tests ( #3804 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-04-17 14:01:39 +02:00
Sergio Garcia
d79ec44e4c
chore(ec2): improve handling of ENIs ( #3798 )
2024-04-17 13:12:31 +02:00
Matt Merchant
a2f84a12ea
docs(developer guide): fix broken link ( #3799 )
2024-04-17 10:56:35 +02:00
Sergio Garcia
6fd71356ee
chore(rds): improve rds public instance check ( #3797 )
2024-04-16 15:01:47 +02:00
dependabot[bot]
a0a305d9b1
chore(deps): bump pandas from 2.2.1 to 2.2.2 ( #3791 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-16 14:18:18 +02:00
dependabot[bot]
6396d90fa6
chore(deps): bump azure-identity from 1.15.0 to 1.16.0 ( #3795 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-16 12:13:51 +02:00
dependabot[bot]
e324750ec2
chore(deps-dev): bump mkdocs-material from 9.5.17 to 9.5.18 ( #3794 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-16 11:46:21 +02:00
dependabot[bot]
5d99f020fa
chore(deps): bump boto3 from 1.34.80 to 1.34.84 ( #3793 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-16 11:17:55 +02:00
Sergio Garcia
b82e928f58
chore(dependabot): increase PRs limit ( #3789 )
2024-04-16 10:43:53 +02:00
dependabot[bot]
da871897e6
chore(deps): bump dash-bootstrap-components from 1.5.0 to 1.6.0 ( #3778 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-16 10:20:08 +02:00
Pedro Martín
81778f73e4
fix(table-overview): Multiple changes on dashboard table from overview ( #3773 )
2024-04-16 10:15:16 +02:00
dependabot[bot]
2623728518
chore(deps): bump botocore from 1.34.80 to 1.34.84 ( #3779 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-16 09:36:10 +02:00
dependabot[bot]
97f1d1b476
chore(deps): bump boto3 from 1.34.77 to 1.34.80 ( #3780 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-16 08:56:14 +02:00
dependabot[bot]
2f6a837bc0
chore(deps): bump trufflesecurity/trufflehog from 3.72.0 to 3.73.0 ( #3786 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-16 07:23:02 +02:00
dependabot[bot]
5e22c2d9a5
chore(deps-dev): bump black from 24.3.0 to 24.4.0 ( #3777 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-16 07:22:28 +02:00
Sergio Garcia
99bd637de4
chore(fixer): improve fixer logic and include more ( #3750 )
2024-04-15 17:45:40 +02:00
Sergio Garcia
b9177e5580
fix(trufflehog): fix GitHub action of TruffleHog ( #3775 )
2024-04-15 17:37:07 +02:00
Pepe Fagoaga
fc7ec184d9
fix(slack): Use global provider object ( #3770 )
2024-04-15 14:47:38 +02:00
Rubén De la Torre Vico
7a6ca342af
docs(unit-testing): Update the unit testing section ( #3764 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2024-04-15 13:20:31 +02:00
Rubén De la Torre Vico
30b6e5e5c6
docs(devel-guide): Add provider section and remove audit_info section ( #3756 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2024-04-15 13:12:28 +02:00
Pepe Fagoaga
f8476decf7
fix(security-hub): MUTED -> WARNING ( #3768 )
2024-04-15 09:58:18 +02:00
Nacho Rivera
49e238577c
chore(regions_update): Changes in regions for AWS services. ( #3765 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-15 08:50:07 +02:00
Rubén De la Torre Vico
026fff79c6
docs(devel-guide): Adding some improves and clarifications to developer guide ( #3749 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2024-04-12 12:55:46 +02:00
Pedro Martín
36c3870c2f
docs(compliance): Change images for compliance ( #3760 )
2024-04-12 12:30:33 +02:00
Pepe Fagoaga
54c309dbda
fix(ocsf): Add compliance ( #3753 )
...
Co-authored-by: pedrooot <pedromarting3@gmail.com >
2024-04-12 12:28:34 +02:00
Pepe Fagoaga
f00dd35f93
chore(codeowners): Add prowler-dev team ( #3763 )
2024-04-12 12:27:28 +02:00
Pepe Fagoaga
e040efb3c8
fix(mutelist): if all fails are muted do exit 0 ( #3754 )
2024-04-12 12:26:58 +02:00
Pedro Martín
805d50586b
fix(compliance): Add muted info to compliance outputs ( #3751 )
2024-04-12 12:19:20 +02:00
Pedro Martín
a289a807c5
fix(wafv2): Handle WAFNonexistentItemException ( #3761 )
2024-04-12 12:05:50 +02:00
Pedro Martín
e9117f95ee
fix(json-ocsf): Remove risk field from unmapped ( #3759 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-04-12 10:55:52 +02:00
Pedro Martín
82bd4e940f
docs(threat-detection): Add threat-detection docs ( #3757 )
2024-04-12 10:36:55 +02:00
dependabot[bot]
ad3b0b33f2
chore(deps): bump idna from 3.6 to 3.7 ( #3758 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-12 08:12:30 +02:00
Nacho Rivera
b2b664a5b0
chore(regions_update): Changes in regions for AWS services. ( #3755 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-11 14:43:26 +02:00
Pepe Fagoaga
571f3ebe1d
fix(ocsf): Include check_id as metadata.event_code ( #3748 )
2024-04-10 15:51:48 +02:00
Pepe Fagoaga
c7f09df4e7
chore(dashboard): Use Prowler CLI parser ( #3722 )
2024-04-10 15:49:21 +02:00
Sergio Garcia
8758ecae97
feat(gcp): improve Google Projects scan customization ( #3741 )
2024-04-10 13:16:47 +02:00
Pedro Martín
f13c843ba6
fix(json-ocsf): Add missing fields for JSON-OCSF ( #3745 )
2024-04-10 11:55:48 +02:00
Pedro Martín
e95f7dd540
docs(outputs): update docs for v4 outputs ( #3734 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-04-10 11:54:41 +02:00
Nacho Rivera
693329b87e
chore(regions_update): Changes in regions for AWS services. ( #3746 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-10 11:53:27 +02:00
Rubén De la Torre Vico
f1ad521f64
feat(docs): Support toggle light/dark mode ( #3744 )
2024-04-10 10:37:44 +02:00
Pedro Martín
82fbba6513
fix(json-ocsf): add check_id field in json-ocsf output ( #3740 )
2024-04-10 09:58:33 +02:00
Pedro Martín
66fba8e4cd
fix(download): remove dataframe index from download in dashboard ( #3739 )
2024-04-10 08:41:50 +02:00
Pepe Fagoaga
417131fa36
docs: readme points to docs.prowler.com to learn everything ( #3707 )
...
Co-authored-by: Sergio <sergio@prowler.com >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-04-09 16:28:01 +02:00
Sergio Garcia
9c9d270053
fix(ulimit): import library only in windows ( #3738 )
2024-04-09 15:36:05 +02:00
Pedro Martín
f7fab165ba
fix(aws_lambda): Update obsolete lambda runtimes ( #3735 )
2024-04-09 15:08:19 +02:00
Pepe Fagoaga
93bdf43c95
fix(actions): Don't need expressions within if ( #3733 )
2024-04-09 13:33:53 +02:00
Pepe Fagoaga
b3866b5b71
docs(dashboard): format list ( #3732 )
2024-04-09 13:18:52 +02:00
Sergio Garcia
2308084dee
chore(version): update Prowler version ( #3730 )
2024-04-09 13:18:00 +02:00
Pepe Fagoaga
6eb5496c27
docs(dashboard): Indicate how to change port ( #3729 )
2024-04-09 12:28:54 +02:00
Nacho Rivera
c5514fdb63
chore(regions_update): Changes in regions for AWS services. ( #3727 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-09 12:03:06 +02:00
Pedro Martín
c78c3058fd
fix(service_name): fix typo in ServiceName field ( #3723 )
2024-04-09 11:39:02 +02:00
Pepe Fagoaga
10d9ef9906
chore(dispatch): just for v3 ( #3712 )
2024-04-09 11:33:00 +02:00
Pepe Fagoaga
43426041ef
docs(mutelist): remove MUTED and explain new fields ( #3726 )
2024-04-09 11:18:07 +02:00
Sergio Garcia
125eb9ac53
fix(k8s): improve kubernetes deployment ( #3713 )
2024-04-09 10:45:58 +02:00
Pedro Martín
681407e0a2
fix(compliance): add field ModoEjecucion in csv output for ENS ( #3719 )
2024-04-09 10:26:06 +02:00
Pedro Martín
082f3a8fe8
fix(dashboard): Add multiple dashboard fixes ( #3714 )
2024-04-09 10:22:03 +02:00
Sergio Garcia
397cc26b2a
fix(gcp): add project id to outputs ( #3711 )
2024-04-09 10:17:32 +02:00
Rubén De la Torre Vico
331ae92843
chore(Azure): Optimize Entra service to use async funcs ( #3706 )
2024-04-09 09:20:06 +02:00
dependabot[bot]
06843cd41a
chore(deps): bump botocore from 1.34.77 to 1.34.80 ( #3715 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-09 08:39:56 +02:00
Pedro Martín
28b5ef9ee9
fix(ens): add dependencias field ENS rd2022 compliance ( #3701 )
2024-04-09 08:29:41 +02:00
Pedro Martín
63dcc057d3
feat(dashboard): add correct label for each dropdown ( #3700 )
2024-04-08 17:50:48 +02:00
Sergio Garcia
0bc16ee5ff
chore(Dockerfile): remove deprecated dash dependencies ( #3708 )
2024-04-08 14:58:19 +02:00
Sergio Garcia
abcc9c2c80
docs(images): fix images link in documentation ( #3709 )
2024-04-08 14:49:06 +02:00
Sergio Garcia
daf2ad38bd
chore(docs): update CloudShell scripts ( #3687 )
2024-04-08 14:39:29 +02:00
Sergio Garcia
3dc418df39
chore(action): update python version to 3.12 in GH action ( #3705 )
2024-04-08 12:48:54 +02:00
dependabot[bot]
00aaafbc12
chore(deps-dev): bump moto from 5.0.4 to 5.0.5 ( #3681 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-08 12:47:22 +02:00
Sergio Garcia
bd49a55f3d
chore(Dockerfile): update Python version to 3.12 ( #3699 )
2024-04-08 12:22:49 +02:00
dependabot[bot]
013975b7a6
chore(deps): bump kubernetes from 28.1.0 to 29.0.0 ( #3679 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-08 12:21:23 +02:00
Pepe Fagoaga
392026286a
fix(actions): use LATEST_TAG for v4 ( #3703 )
2024-04-08 12:10:02 +02:00
Nacho Rivera
29ef974565
chore(regions_update): Changes in regions for AWS services. ( #3693 )
...
Co-authored-by: sergargar <38561120+sergargar@users.noreply.github.com >
2024-04-08 11:52:51 +02:00
Sergio Garcia
06c8216092
build(deps): Update boto3 to version 1.34.77 ( #3669 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-04-08 11:51:22 +02:00
Pepe Fagoaga
03f04d24a5
chore(dependabot): Add v3 label ( #3698 )
2024-04-08 11:19:35 +02:00
Pedro Martín
7b45ed63cc
docs(dashboard): improve dashboard documentation ( #3688 )
2024-04-08 11:10:30 +02:00
Sergio Garcia
6e4dd1d69c
fix(k8s): sanitize context syntax only for output file names ( #3689 )
2024-04-08 11:08:35 +02:00
Sergio Garcia
185b4cba0c
chore(mutelist): remove space within mutelist name ( #3690 )
2024-04-08 11:07:29 +02:00
Pepe Fagoaga
8198ea4a2c
chore(dependabot): Run also for v3 branch ( #3683 )
2024-04-08 11:05:09 +02:00
dependabot[bot]
aaf3e8a5cf
chore(deps): bump google-api-python-client from 2.124.0 to 2.125.0 ( #3678 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-08 10:55:00 +02:00
dependabot[bot]
ecef56fa8f
chore(deps): bump trufflesecurity/trufflehog from 3.71.2 to 3.72.0 ( #3677 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2024-04-08 10:39:53 +02:00
Pepe Fagoaga
349ce3f2d0
chore(regions): Add backport-v3 label ( #3684 )
2024-04-08 10:31:28 +02:00
Sergio Garcia
e3d4741213
chore(merge): include latest changes of v3 ( #3686 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
Co-authored-by: Nacho Rivera <nachor1992@gmail.com >
2024-04-08 10:30:39 +02:00
Pepe Fagoaga
9d6d5f1d76
fix(args): Handle default argument ( #3674 )
2024-04-08 10:01:35 +02:00
Pepe Fagoaga
3152d67f58
chore(actions): Run for master and v3 ( #3685 )
2024-04-08 09:35:23 +02:00
Pepe Fagoaga
cb41c8d15b
fix(dockerfile): add missing path to build ( #3680 )
2024-04-08 09:24:05 +02:00
Pepe Fagoaga
06590842d6
chore(action): Run for v4 branch ( #3666 )
2024-04-04 15:53:45 +02:00
Pedro Martín
d4c22a0ca5
fix(dashboard): handle Kubernetes CIS in EKS context ( #3671 )
2024-04-04 15:50:38 +02:00
Sergio Garcia
c6f9936292
fix(merge): update v4 with latest changes ( #3670 )
2024-04-04 15:37:41 +02:00
Sergio Garcia
eaa8900758
fix(threat detection): rename to threshold ( #3665 )
2024-04-04 13:29:35 +02:00
Pedro Martín
e1e95d8879
docs(Dashboard): Add docs for dashboards ( #3655 )
2024-04-04 13:26:42 +02:00
Pedro Martín
ef3a0f4878
fix(Dashboard): Multiple dashboard fixes ( #3654 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-04-04 13:14:27 +02:00
Sergio Garcia
64cc36e7e2
fix(fixer): list fixers without sufix ( #3660 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-04-04 13:07:54 +02:00
Sergio Garcia
1e001bb0fd
fix(deps): solve dependencies ( #3662 )
2024-04-04 12:48:59 +02:00
Sergio Garcia
6ba123a003
fix(box): remove lines inside box ( #3657 )
2024-04-04 12:24:14 +02:00
Pepe Fagoaga
36d0f2c23f
fix: typo in action ( #3659 )
2024-04-04 12:04:45 +02:00
Sergio Garcia
63412e3645
chore(merge): update v4 with latest changes of v3 ( #3653 )
2024-04-03 18:31:36 +02:00
Pedro Martín
191cf276c3
feat(dashboards): add new Prowler dashboards ( #3575 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2024-04-02 18:12:16 +02:00
Sergio Garcia
45978bd0bb
feat(fixer): add Prowler Fixer feature! ( #3634 )
2024-04-02 17:13:26 +02:00
Sergio Garcia
9666652d18
chore(readme): update k8s cis ( #3640 )
2024-04-02 14:37:20 +02:00
Sergio Garcia
ad2716d7c9
chore(compliance): only execute all compliances in normal execution ( #3635 )
2024-04-02 10:55:38 +02:00
Sergio Garcia
0a7939bea3
chore(args): add plural severity argument ( #3636 )
2024-04-02 10:21:42 +02:00
Sergio Garcia
b8c50a7b45
chore(backport): merge changes from v3 to v4 ( #3625 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
Co-authored-by: Nacho Rivera <nachor1992@gmail.com >
Co-authored-by: Gabriel Soltz <8935378+gabrielsoltz@users.noreply.github.com >
Co-authored-by: Hugo966 <148140670+Hugo966@users.noreply.github.com >
Co-authored-by: Kay Agahd <kagahd@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-04-02 08:52:21 +02:00
Sergio Garcia
175e8d2b05
chore(slogan): update Prowler slogan ( #3619 )
2024-04-01 12:19:14 +02:00
Pepe Fagoaga
046069a656
chore(categories): Add threat detection checks in the loader ( #3622 )
2024-04-01 11:48:46 +02:00
Sergio Garcia
f9522da48f
feat(cloudtrail): add threat detection checks for AWS (enum and priv escalation) ( #3602 )
2024-03-27 16:23:00 +01:00
Sergio Garcia
c03f959005
chore(ulimit): handle low ulimit value on shell session for POSIX if max open files is below 4096 ( #3601 )
2024-03-27 14:52:14 +01:00
Sergio Garcia
522aeebe5e
chore(args): sanitize arguments ( #3611 )
2024-03-27 14:14:21 +01:00
Sergio Garcia
5312f487f9
chore(report): improve shown report in UI ( #3587 )
2024-03-27 12:57:20 +01:00
Pedro Martín
d9b6624d65
feat(compliance): Add CIS 1.8 framework for Kubernetes ( #3600 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2024-03-26 14:03:39 +01:00
Hugo966
1506da54fc
feat(azure): locations added to Azure findings ( #3596 )
2024-03-22 15:41:58 +01:00
Sergio Garcia
245512d320
fix(providers): import modules also from outside of directory ( #3595 )
2024-03-22 13:36:21 +01:00
Pepe Fagoaga
487190b379
fix(securityhub): Add validation and handle errors ( #3590 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-03-22 10:27:48 +01:00
Sergio Garcia
74aaeaa95c
fix(mapping): handle None attributes in data ( #3588 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-03-21 17:56:21 +01:00
Sergio Garcia
28e8f0de2b
chore(merge): get latest changes from v3 to v4 ( #3582 )
...
Co-authored-by: Hugo966 <148140670+Hugo966@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
Co-authored-by: Nacho Rivera <nachor1992@gmail.com >
2024-03-21 17:08:19 +01:00
Pedro Martín
f60b5017e2
fix(compliance): fix csv output for framework Mitre Attack ( #3574 )
2024-03-21 13:18:03 +01:00
Sergio Garcia
fe80821596
chore(muted): handle new Muted status ( #3570 )
2024-03-19 18:37:49 +01:00
Pepe Fagoaga
628a3c4e7b
fix(quickinventory): Adapt for the new AWS provider class ( #3569 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-03-19 16:14:01 +01:00
Sergio Garcia
3d59c34ec9
chore(merge): add new changes from v3 ( #3549 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
Co-authored-by: Nacho Rivera <nachor1992@gmail.com >
Co-authored-by: Rubén De la Torre Vico <rubendltv22@gmail.com >
Co-authored-by: Pedro Martín <pedromarting3@gmail.com >
Co-authored-by: Hugo966 <148140670+Hugo966@users.noreply.github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Hugo Gálvez Ureña <hugogalvezu96@gmail.com >
Co-authored-by: github-actions <noreply@github.com >
2024-03-19 15:54:41 +01:00
Sergio Garcia
35043c2dd6
chore(unused services): scan unused services by default and add flag ( #3556 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-03-19 15:15:19 +01:00
Pepe Fagoaga
ab815123c9
chore(slack): fix integration with provider ( #3565 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-03-19 11:24:11 +01:00
Pepe Fagoaga
69ab84efe1
chore(main): remove getattr for mutelist ( #3564 )
2024-03-19 10:58:02 +01:00
Pepe Fagoaga
77823afa54
chore(audit_info): Replace for provider and add tests ( #3542 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2024-03-19 09:53:05 +01:00
Pepe Fagoaga
63cd6c1290
chore(mutelist): enforce for all providers ( #3554 )
2024-03-18 10:12:15 +01:00
Sergio Garcia
cab32d2f94
feat(mutelist): add Mute List for all providers ( #3548 )
2024-03-15 12:22:10 +01:00
Pepe Fagoaga
1f4316e9dd
chore(ocsf): add OCSF 1.1 and organize code ( #3517 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2024-03-14 15:04:47 +01:00
Pepe Fagoaga
ade762a85e
fix(azure): use subscriptions in get_locations ( #3541 )
2024-03-14 14:57:20 +01:00
Pepe Fagoaga
bda5d62c72
chore(aws): Replace audit_info for provider ( #3521 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-03-13 18:15:24 +01:00
Pepe Fagoaga
2176fff8c3
chore(json): deprecate native json ( #3514 )
2024-03-13 18:11:33 +01:00
Pepe Fagoaga
87893bd54b
chore(csv): Common output for all the providers ( #3513 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2024-03-13 17:31:35 +01:00
Sergio Garcia
b539a888b1
chore(compliance): solve compliance issues ( #3507 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-03-13 15:43:33 +01:00
Sergio Garcia
d6b2b0ca13
docs(kubernetes): add Kubernetes documentation ( #3482 )
2024-03-13 15:37:49 +01:00
Pepe Fagoaga
58ee45b702
chore(merge): 2024-03-06 11:03:00 UTC ( #3506 )
2024-03-06 13:05:31 +01:00
Pepe Fagoaga
c62d97f23a
chore(html): deprecate output ( #3501 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-03-05 14:16:23 +01:00
Pepe Fagoaga
d618c5ea12
fix(shodan): Make it available for all the providers ( #3500 )
2024-03-05 13:55:43 +01:00
Pepe Fagoaga
d8e27f0d33
chore(config): Store in provider ( #3498 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-03-05 10:21:08 +01:00
Sergio Garcia
38496ff646
chore(kubernetes): add outputs fields ( #3499 )
2024-03-05 10:01:51 +01:00
Pepe Fagoaga
da1084907e
chore(providers): Store output options and mutelist ( #3497 )
2024-03-05 09:56:30 +01:00
Pepe Fagoaga
3385b630e7
chore(azure): working outputs ( #3491 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-03-04 17:59:48 +01:00
Pepe Fagoaga
fc59183045
chore(gcp): working outputs ( #3490 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2024-03-04 17:54:41 +01:00
Pepe Fagoaga
33242079f7
chore(k8s): Working outputs ( #3489 )
2024-03-04 17:25:14 +01:00
Pepe Fagoaga
086148819c
chore(aws): Working outputs ( #3488 )
2024-03-04 17:17:20 +01:00
Pepe Fagoaga
5df9fd881c
chore(aws): Simplify provider ( #3481 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2024-03-04 13:50:54 +01:00
Pepe Fagoaga
bd17d36e7f
chore(kubernetes): Working provider ( #3475 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-03-01 14:10:10 +01:00
Pepe Fagoaga
be55fa22fd
chore(azure): working version executing checks ( #3474 )
2024-03-01 13:30:09 +01:00
Pepe Fagoaga
b48b3a5e2e
chore(azure): working version executing checks ( #3472 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-03-01 11:33:01 +01:00
Sergio Garcia
fc03dd37f1
chore(kubernetes): enhance checks metadata ( #3469 )
2024-02-29 17:16:28 +01:00
Sergio Garcia
d8bb384689
chore(kubernetes): add strong ciphers config vars ( #3470 )
2024-02-29 14:48:21 +01:00
Pepe Fagoaga
0b32a10bb8
chore(aws): Remove old provider ( #3468 )
2024-02-29 13:45:43 +01:00
Pepe Fagoaga
f0c027f54e
chore(merge): Merge master with Prowler 4.0 ( #3467 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2024-02-29 11:19:17 +01:00
Sergio Garcia
b0f2f34d3b
feat(namespace): add --namespaces argument and solve bugs ( #3431 )
2024-02-28 19:33:29 +01:00
Sergio Garcia
3e6b76df76
fix(kubernetes): improve in-cluster execution ( #3397 )
2024-02-28 19:00:33 +01:00
Sergio Garcia
6197cf792d
feat(kubelet): add 6 checks of Kubelet configuration files on the worker nodes ( #3335 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-02-28 18:32:45 +01:00
Sergio Garcia
3c4e5a14f7
feat(core): add 13 checks of Kubernetes Core service ( #3315 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-02-28 13:21:53 +01:00
Sergio Garcia
effc743b6e
feat(rbac): add 9 checks of Kubernetes RBAC service ( #3314 )
2024-02-27 13:54:46 +01:00
Sergio Garcia
364a945d28
feat(kubelet): add 10 checks of Kubernetes Kubelet service ( #3302 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-02-26 14:15:35 +01:00
Sergio Garcia
07b9354d18
feat(etcd): add checks for Kubernetes etcd ( #3294 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-02-22 16:45:06 +00:00
Sergio Garcia
8b1e537ca5
feat(controllermanager): add checks for Kubernetes Controller Manager ( #3291 )
2024-02-22 16:55:23 +01:00
Sergio Garcia
6a20e850bc
feat(apiserver): new 10 Kubernetes ApiServer checks ( #3290 )
2024-02-22 10:50:12 +01:00
Sergio Garcia
636892bc9a
feat(apiserver): new 10 Kubernetes ApiServer checks ( #3289 )
2024-02-21 13:29:28 +01:00
Sergio Garcia
b40f32ab57
feat(apiserver): new 9 Kubernetes ApiServer checks ( #3288 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-02-21 09:19:50 +01:00
Sergio Garcia
14bab496b5
chore(tests): add kubernetes provider tests ( #3265 )
2024-02-19 12:50:42 +00:00
Sergio Garcia
3cc367e0a3
feat(kubernetes): add etcd, controllermanager and rbac services ( #3261 )
...
Co-authored-by: Pepe Fagoaga <pepe@prowler.com >
2024-02-19 13:19:07 +01:00
Nacho Rivera
36fc575e40
feat(AwsProvider): include new structure for AWS provider ( #3252 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2024-01-15 16:55:53 +01:00
Sergio Garcia
24efb34d91
chore(manual status): change INFO to MANUAL status ( #3254 )
2024-01-09 18:08:00 +01:00
Sergio Garcia
c08e244c95
feat(status): add --status flag ( #3238 )
2024-01-09 11:35:44 +01:00
Sergio Garcia
c2f8980f1f
feat(kubernetes): add Kubernetes provider ( #3226 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2024-01-09 10:31:51 +01:00
Sergio Garcia
0ef85b3dee
fix(gcp): fix error in generating compliance ( #3201 )
2023-12-18 12:10:58 +01:00
Sergio Garcia
93a2431211
feat(compliance): execute all compliance by default ( #3003 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-12-13 17:31:39 +01:00
Nacho Rivera
1fe74937c1
feat(CloudProvider): introduce global provider Azure&GCP ( #3069 )
2023-12-12 18:05:17 +01:00
Sergio Garcia
6ee016e577
chore(sts-endpoint): deprecate --sts-endpoint-region ( #3046 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-12-12 17:13:50 +01:00
Sergio Garcia
f7248dfb1c
feat(mute list): change allowlist to mute list ( #3039 )
...
Co-authored-by: Nacho Rivera <nachor1992@gmail.com >
2023-12-12 16:57:52 +01:00
Nacho Rivera
856afb3966
chore(update): rebase from master ( #3067 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Signed-off-by: r3drun3 <simone.ragonesi@sighup.io >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: John Mastron <14130495+mtronrd@users.noreply.github.com >
Co-authored-by: John Mastron <jmastron@jpl.nasa.gov >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: github-actions <noreply@github.com >
Co-authored-by: simone ragonesi <102741679+R3DRUN3@users.noreply.github.com >
Co-authored-by: Johnny Lu <johnny2lu@gmail.com >
Co-authored-by: Vajrala Venkateswarlu <59252985+venkyvajrala@users.noreply.github.com >
Co-authored-by: Ignacio Dominguez <ignacio.dominguez@zego.com >
2023-11-27 13:58:45 +01:00
Sergio Garcia
bf315261af
chore(regions_update): Changes in regions for AWS services. ( #2998 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-11-06 10:14:50 +01:00
Kay Agahd
6e83afb580
fix(s3 race condition): catch error if a bucket does not exist any longer ( #3000 )
2023-11-06 09:24:51 +01:00
Sergio Garcia
1a5742d4f5
fix(cloudtrail): handle HasInsightSelectors key ( #2996 )
2023-11-02 14:09:27 +01:00
Sergio Garcia
0e22458e86
fix(docs): solve allowlist syntax ( #2995 )
2023-11-02 12:43:59 +01:00
Sergio Garcia
cd8d1b8a8f
chore(regions_update): Changes in regions for AWS services. ( #2993 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-11-02 12:27:21 +01:00
Sergio Garcia
141a142742
chore(brew): remove brew action ( #2994 )
2023-11-02 10:28:32 +01:00
Sergio Garcia
a59b344d20
chore(release): update Prowler Version to 3.11.0 ( #2992 )
...
Co-authored-by: github-actions <noreply@github.com >
2023-10-31 15:48:33 +01:00
Pepe Fagoaga
f666711a2a
fix(vpc_endpoint_services_allowed_principals_trust_boundaries): Principal ( #2991 )
2023-10-31 14:19:20 +01:00
Sergio Garcia
1014d64828
fix(outputs): remove empty outputs ( #2990 )
2023-10-31 14:09:02 +01:00
Sergio Garcia
a126a99853
fix(cis): remove new lines in CIS csv ( #2989 )
2023-10-31 13:56:33 +01:00
Sergio Garcia
082390a7f0
chore(gcp): print inactive GCP APIs ( #2987 )
2023-10-31 12:53:53 +01:00
Sergio Garcia
a994553c16
fix(allowlist): verify if allowlist file exists ( #2988 )
2023-10-31 12:53:45 +01:00
Sergio Garcia
3fd2ae954d
fix(elbv2_desync_mitigation_mode): improve logic ( #2986 )
2023-10-31 12:42:24 +01:00
dependabot[bot]
e17c5642ca
build(deps): bump google-api-python-client from 2.104.0 to 2.105.0 ( #2985 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-31 11:36:12 +01:00
Sergio Garcia
fa7968cb1b
feat(alias): add check alias functionality ( #2971 )
2023-10-31 11:25:54 +01:00
dependabot[bot]
57c3183b15
build(deps): bump mkdocs-material from 9.4.6 to 9.4.7 ( #2983 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-31 11:07:29 +01:00
dependabot[bot]
1fd6471cb1
build(deps-dev): bump moto from 4.2.6 to 4.2.7 ( #2984 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-31 10:41:22 +01:00
dependabot[bot]
1827230514
build(deps): bump azure-identity from 1.14.1 to 1.15.0 ( #2982 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-31 10:13:32 +01:00
dependabot[bot]
06dc3d3361
build(deps-dev): bump pytest from 7.4.2 to 7.4.3 ( #2981 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-10-31 09:28:50 +01:00
Sergio Garcia
a7a2e24d42
chore(docs): allowlist non-default regions ( #2980 )
2023-10-30 21:52:25 +01:00
ToastyCat
bb543cb5db
fix(ec2_instance_imdsv2_enabled ): verify if metadata service is disabled ( #2978 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-10-30 21:16:25 +01:00
Pepe Fagoaga
373ce0ad04
fix(GuardDuty): Add enabled_in_account parameter ( #2979 )
2023-10-30 19:39:22 +01:00
Sergio Garcia
fcb979aae1
feat(allowlist): allowlist non-default regions configuration ( #2974 )
2023-10-30 17:51:49 +01:00
Pepe Fagoaga
fcc56ad6f7
chore(allowlist): Extract allowlist from report ( #2975 )
2023-10-30 09:52:59 +01:00
Nacho Rivera
5be8570c8c
fix(cloudtrail service): typo in logging info ( #2976 )
2023-10-30 09:49:20 +01:00
Sergio Garcia
d471442422
chore(regions_update): Changes in regions for AWS services. ( #2973 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-27 11:41:08 +02:00
Sergio Garcia
4070c923fc
chore(regions_update): Changes in regions for AWS services. ( #2969 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-26 15:46:45 +02:00
Sergio Garcia
3ca38fe92d
fix(gcp): set always location to lowercase ( #2970 )
2023-10-26 13:21:09 +02:00
dependabot[bot]
55ebadfe28
build(deps-dev): bump werkzeug from 2.3.4 to 3.0.1 ( #2968 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-26 07:58:28 +02:00
Sergio Garcia
9bd2519c83
chore(APIGatewayV2): improve check naming ( #2966 )
2023-10-25 16:59:06 +02:00
Sergio Garcia
4bfe145be3
chore(regions_update): Changes in regions for AWS services. ( #2965 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-25 13:59:19 +02:00
Sergio Garcia
41085049e2
chore(docs): add STS Endpoint and Allowlist updates ( #2964 )
2023-10-25 13:58:59 +02:00
Sergio Garcia
f7312db0c7
chore(allowlist): prettify allowlist names ( #2963 )
2023-10-24 18:48:34 +02:00
Sergio Garcia
008534d839
feat(controltower): add AWS Control Tower resources to default Allowlist configuration file ( #2953 )
...
Co-authored-by: Toni de la Fuente <toni@blyx.com >
2023-10-24 16:45:21 +02:00
Pepe Fagoaga
8533714cb2
tests: remove tests folder after execution ( #2962 )
2023-10-24 16:29:18 +02:00
Sergio Garcia
b822c19d2c
feat(ignore unused services): add --ignore-unused-services argument to ignore findings from services not in actual use ( #2936 )
2023-10-24 14:09:27 +02:00
Sergio Garcia
2aa3126eb0
chore(regions_update): Changes in regions for AWS services. ( #2961 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-24 11:37:17 +02:00
Sergio Garcia
4c5e85f7ba
fix(sts): force v2 STS tokens ( #2956 )
2023-10-24 10:15:41 +02:00
dependabot[bot]
2b41da4543
build(deps-dev): bump vulture from 2.9.1 to 2.10 ( #2960 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-24 09:46:34 +02:00
dependabot[bot]
f8dc88df6e
build(deps): bump google-api-python-client from 2.102.0 to 2.104.0 ( #2959 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-24 09:15:15 +02:00
dependabot[bot]
534033874e
build(deps-dev): bump openapi-spec-validator from 0.6.0 to 0.7.1 ( #2958 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-24 08:52:06 +02:00
dependabot[bot]
0851b923fd
build(deps-dev): bump pylint from 3.0.1 to 3.0.2 ( #2957 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-24 08:05:18 +02:00
Kay Agahd
fd4bed65a0
docs(v2_v3_mapping): document prowler v3.10.0 changes ( #2955 )
2023-10-23 15:23:17 +02:00
Nacho Rivera
4746b8b835
feat(report interface): add reporting interface call after report ( #2948 )
2023-10-23 09:06:51 +02:00
Sergio Garcia
d24eafe6a6
chore(regions_update): Changes in regions for AWS services. ( #2954 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-23 07:37:54 +02:00
Sergio Garcia
f3b81edf67
fix(APIGateway): Improve check naming ( #2952 )
2023-10-20 08:07:08 +02:00
Sergio Garcia
976d0da26e
fix(resource filters): add missing resource filters ( #2951 )
2023-10-19 18:18:58 +02:00
Sergio Garcia
5113b83bc4
chore(create_role_to_assume_cfn.yaml): Add DLM permissions ( #2949 )
2023-10-19 17:40:07 +02:00
Sergio Garcia
a88877bf7c
chore(github): ignore permissions path in GitHub actions ( #2950 )
2023-10-19 17:37:35 +02:00
Jit
a46d7b2ed9
feat(aws): New Neptune, ElastiCache, APIGW and IAM checks ( #2862 )
2023-10-19 17:31:51 +02:00
Pepe Fagoaga
170241649d
fix(ec2_securitygroup_not_used): Mock Lambda service ( #2947 )
2023-10-19 17:05:04 +02:00
Sergio Garcia
1ac22bddd6
fix(security group): check if security groups are used by Lambda ( #2944 )
2023-10-19 12:13:24 +02:00
Sergio Garcia
54fe10ae86
chore(permissions): add DLM permissions ( #2946 )
2023-10-19 11:45:41 +02:00
Sergio Garcia
33647786e6
chore(regions_update): Changes in regions for AWS services. ( #2945 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-19 11:35:19 +02:00
Sergio Garcia
eb3cb97115
feat(vpc): add vpc, nacl or subnet names in findings ( #2928 )
2023-10-18 16:07:53 +02:00
Sergio Garcia
236f57ab0e
chore(regions_update): Changes in regions for AWS services. ( #2942 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-18 11:39:45 +02:00
Kay Agahd
c88054107e
docs(config): add missing configurable variables ( #2941 )
2023-10-18 09:10:46 +02:00
dependabot[bot]
c03c7c35d8
build(deps): bump urllib3 from 1.26.17 to 1.26.18 ( #2940 )
2023-10-18 08:08:11 +02:00
Pepe Fagoaga
b5455215a5
fix(sqs): Handle AWS.SimpleQueueService.NonExistentQueue in list_queue_tags ( #2939 )
2023-10-17 20:45:22 +02:00
Jit
85e12e9479
feat(aws): New CloudTrail, DLM, DocumentDB, EC2, Account and Support checks ( #2675 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-10-17 19:00:37 +02:00
Sergio Garcia
f3b7f841fb
chore(regions_update): Changes in regions for AWS services. ( #2937 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-17 15:55:38 +02:00
Sergio Garcia
92547bfdb6
fix(vpc): ignore com.amazonaws.vpce endpoints ( #2929 )
2023-10-17 11:14:12 +02:00
dependabot[bot]
3739801ed4
build(deps): bump shodan from 1.30.0 to 1.30.1 ( #2935 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-17 11:03:52 +02:00
dependabot[bot]
a6778a6e27
build(deps-dev): bump moto from 4.2.5 to 4.2.6 ( #2934 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-17 10:40:37 +02:00
dependabot[bot]
f1fc3c63ea
build(deps): bump azure-identity from 1.14.0 to 1.14.1 ( #2933 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-17 09:58:42 +02:00
dependabot[bot]
b2a80775a8
build(deps): bump mkdocs-material from 9.4.4 to 9.4.6 ( #2932 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-17 08:48:21 +02:00
dependabot[bot]
1f7f68f6af
build(deps): bump azure-storage-blob from 12.18.2 to 12.18.3 ( #2931 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-17 08:25:28 +02:00
Pepe Fagoaga
388678f822
chore(docs): Add report.region criteria ( #2930 )
2023-10-16 14:50:11 +02:00
Sergio Garcia
1230a3323d
chore(regions_update): Changes in regions for AWS services. ( #2927 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-16 09:42:30 +02:00
Sergio Garcia
02a3c750f8
chore(release): update Prowler Version to 3.10.0 ( #2926 )
...
Co-authored-by: github-actions <noreply@github.com >
2023-10-11 17:56:14 +02:00
Nacho Rivera
cbdb9ce614
fix(Dockerfile): Update to python:3.11-alpine
2023-10-11 16:42:03 +02:00
dependabot[bot]
be98ea52d7
build(deps-dev): bump gitpython from 3.1.35 to 3.1.37 ( #2924 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-11 09:46:41 +02:00
Sergio Garcia
b6cf63bb0c
chore(regions_update): Changes in regions for AWS services. ( #2923 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-10 18:55:45 +02:00
dependabot[bot]
04410033e7
build(deps-dev): bump pylint from 3.0.0 to 3.0.1 ( #2920 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-10 18:55:28 +02:00
dependabot[bot]
e6c6df1334
build(deps): bump slack-sdk from 3.22.0 to 3.23.0 ( #2919 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-10 16:35:44 +02:00
dependabot[bot]
91b06a4297
build(deps): bump google-api-python-client from 2.101.0 to 2.102.0 ( #2918 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-10 15:52:07 +02:00
dependabot[bot]
640ad7bd60
build(deps): bump mkdocs-material from 9.4.3 to 9.4.4 ( #2917 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-10 15:19:02 +02:00
Sergio Garcia
08b2ea01ab
chore(iam): add IAM privilege escalation cases ( #2921 )
2023-10-10 12:41:02 +02:00
Nacho Rivera
236dea9d26
fix(pull-request.yml): launch linters when source code modified ( #2922 )
2023-10-10 12:14:24 +02:00
dependabot[bot]
f281f3791b
build(deps): bump azure-storage-blob from 12.18.1 to 12.18.2 ( #2916 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-10 08:02:45 +02:00
Pepe Fagoaga
aff2b80d55
docs(pull-request): Include check list to create/review PR ( #2913 )
2023-10-09 16:33:58 +02:00
Sergio Garcia
e69949c336
docs(misc): add option -z ( #2914 )
...
Co-authored-by: Nacho Rivera <nachor1992@gmail.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-10-09 16:33:49 +02:00
Nacho Rivera
5f7f36ecd4
fix(build-lint-push pipeline): pass pipeline when ignored files ( #2915 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-10-09 15:45:16 +02:00
Sergio Garcia
9212478148
fix(cloudwatch): ignore new lines in filters ( #2912 )
2023-10-09 11:06:29 +02:00
Nacho Rivera
dec0ee1001
fix(pipeline): launch linters with file changes ( #2911 )
2023-10-06 11:41:58 +02:00
Sergio Garcia
e610c2514d
feat(iam): improve disable credentials checks ( #2909 )
2023-10-06 11:41:04 +02:00
Sergio Garcia
3955450245
fix(securityhub): archive SecurityHub findings in empty regions ( #2908 )
2023-10-05 15:49:43 +02:00
Sergio Garcia
49a437dc0d
chore(regions_update): Changes in regions for AWS services. ( #2907 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-05 11:24:46 +02:00
Sergio Garcia
bf37be5013
chore(regions_update): Changes in regions for AWS services. ( #2905 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-05 11:24:21 +02:00
Sergio Garcia
9793de1e96
fix(elb): add resource ARN to checks ( #2906 )
2023-10-04 12:37:15 +02:00
DevOpSpace
4c15318f28
feat(wafv2): Add check wafv2_webacl_logging_enabled ( #2898 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-10-04 11:10:47 +02:00
Sergio Garcia
a4d3e78eb1
fix(acm): add certificate id ( #2903 )
2023-10-03 13:03:46 +02:00
Sergio Garcia
436166c255
chore(regions_update): Changes in regions for AWS services. ( #2902 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-10-03 11:32:14 +02:00
Nacho Rivera
bbce2c5e35
fix(custom checks): fix import from s3 ( #2901 )
2023-10-03 11:31:55 +02:00
Sergio Garcia
0745a57f52
fix(findingID): remove duplicate finding IDs ( #2890 )
2023-10-03 11:31:33 +02:00
dependabot[bot]
9974c84440
build(deps-dev): bump coverage from 7.3.1 to 7.3.2 ( #2895 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-03 10:34:52 +02:00
Nacho Rivera
3c396e76f6
fix(remove_custom_checks_module): delete service folder if empty ( #2885 )
2023-10-03 10:33:06 +02:00
Nacho Rivera
e701aca64b
test(iam_credentials): Don't use search and negative indexes ( #2899 )
2023-10-03 09:54:53 +02:00
dependabot[bot]
26ad482b90
build(deps): bump mkdocs-material from 9.4.2 to 9.4.3 ( #2894 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-03 09:54:16 +02:00
dependabot[bot]
d8fd3ef506
build(deps-dev): bump pylint from 2.17.6 to 3.0.0 ( #2893 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-03 09:29:09 +02:00
dependabot[bot]
43016d75e8
build(deps-dev): bump moto from 4.2.4 to 4.2.5 ( #2892 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-03 08:51:07 +02:00
Pepe Fagoaga
39b6ce3352
fix(dockerfile): Use latest curl ( #2897 )
2023-10-03 08:48:32 +02:00
dependabot[bot]
1e3ec10a1a
build(deps): bump urllib3 from 1.26.15 to 1.26.17 ( #2896 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-03 08:12:45 +02:00
dependabot[bot]
c4e13eef3f
build(deps): bump pydantic from 1.10.12 to 1.10.13 ( #2891 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-10-03 08:07:11 +02:00
Samuel Burgos
6558aedee3
feat(json-asff): adds AWS resource tags in json-asff and SecurityHub findings ( #2786 )
...
Co-authored-by: samuel.burgos <samuel.burgos@flywire.com >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-10-02 18:20:35 +02:00
Sergio Garcia
a2dfb60466
test(vpc_peering_routing_tables_with_least_privilege): add test ( #2889 )
2023-10-02 17:22:11 +02:00
Nacho Rivera
c158dcf2ef
fix(iam creds checks): add missing tests and fix current ones ( #2888 )
2023-10-02 16:27:44 +02:00
Sergio Garcia
40318b87bf
fix(vpc_peering_routing_tables_with_least_privilege): check only peering routes ( #2887 )
2023-10-02 16:20:39 +02:00
Sergio Garcia
64f06b11b8
fix(version): add timeout and check HTTP errors ( #2886 )
2023-10-02 14:44:16 +02:00
Pepe Fagoaga
583194085c
test(utils): Include missing tests ( #2884 )
2023-10-02 11:29:09 +02:00
Nacho Rivera
2d89f57644
fix(iam credentials checks): unify logic ( #2883 )
2023-10-02 11:28:26 +02:00
Nacho Rivera
f4ed01444a
fix(ec2_elastic_ip_unassigned): rename check ( #2882 )
2023-10-02 10:34:46 +02:00
Pepe Fagoaga
a7980a202d
fix(aws): Include missing ARNs ( #2880 )
2023-10-02 08:45:06 +02:00
JackStuart
3a6c93dd37
fix(azure): Typo in SQL check ( #2881 )
2023-10-02 08:21:00 +02:00
Pepe Fagoaga
6cd272da37
docs(developer-guide): fix typos ( #2878 )
2023-09-29 13:12:05 +02:00
Sergio Garcia
a7056b66c7
chore(regions_update): Changes in regions for AWS services. ( #2879 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-29 11:34:41 +02:00
Pepe Fagoaga
4d6d58ef91
fix(autoscaling_find_secrets_ec2_launch_configuration): Fix UnicodeDecodeError ( #2870 )
2023-09-28 17:13:17 +02:00
Sergio Garcia
93a88ec2c7
chore(regions_update): Changes in regions for AWS services. ( #2875 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-28 11:43:51 +02:00
Pepe Fagoaga
b679df4fbe
docs(aws): Move regions and profiles to AWS ( #2874 )
2023-09-27 23:23:31 +02:00
Sergio Garcia
ba2c7347f9
chore(regions_update): Changes in regions for AWS services. ( #2873 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-27 11:35:14 +02:00
Pepe Fagoaga
f8b4e6e8f0
fix(iam): Handle NoSuchEntity when calling list_role_policies ( #2872 )
2023-09-27 09:37:07 +02:00
Pepe Fagoaga
7ecb4d7b00
fix(s3_bucket_policy_public_write_access): Handle S3 Policy without Principal ( #2871 )
2023-09-27 09:35:26 +02:00
Pepe Fagoaga
1697e6ad62
fix(outputs_unix_timestamp): Remove subsecond ( #2861 )
2023-09-26 16:02:52 +02:00
Pepe Fagoaga
6687f76736
refactor(security_hub): Send findings in batches ( #2868 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-09-26 14:10:25 +02:00
Sergio Garcia
35e5bbdaf1
chore(regions_update): Changes in regions for AWS services. ( #2869 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-26 12:42:48 +02:00
dependabot[bot]
5c5e7d9509
build(deps): bump google-api-python-client from 2.99.0 to 2.101.0 ( #2867 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-26 11:38:34 +02:00
dependabot[bot]
b0c0a9d98c
build(deps-dev): bump moto from 4.2.3 to 4.2.4 ( #2866 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-26 10:28:34 +02:00
dependabot[bot]
7c246f7be4
build(deps-dev): bump pylint from 2.17.5 to 2.17.6 ( #2865 )
2023-09-26 10:02:58 +02:00
dependabot[bot]
bfc2a41699
build(deps): bump mkdocs-material from 9.3.1 to 9.4.2 ( #2864 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-26 09:22:31 +02:00
Sergio Garcia
081a7ead4c
chore(regions_update): Changes in regions for AWS services. ( #2863 )
2023-09-23 19:14:46 +02:00
Sergio Garcia
70fbf1676a
fix(iam_inline_policy_no_administrative_privileges): set resource id as the entity name ( #2820 )
2023-09-22 12:59:10 +02:00
Pepe Fagoaga
87ddb6b171
fix(apigw): KeyError name ( #2858 )
2023-09-22 11:23:37 +02:00
Pepe Fagoaga
c0d45d730f
fix(elbv2): Handle LoadBalancerNotFound ( #2860 )
2023-09-22 11:23:21 +02:00
Fennerr
6b97a04643
fix(eks_control_plane_endpoint_access_restricted): handle endpoint private access ( #2824 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-09-22 11:22:56 +02:00
Pepe Fagoaga
2a5a07bae0
fix(ds): GetSnapshotLimits for MicrosoftAD ( #2859 )
2023-09-22 11:22:42 +02:00
Pepe Fagoaga
18e34c670e
fix(iam): Handle NoSuchEntityException in ListRolePolicies ( #2857 )
2023-09-22 11:21:33 +02:00
Fennerr
d6a35485d2
fix(sqs_queues_not_publicly_accessible): Improve status extended ( #2848 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-09-22 11:20:59 +02:00
Fennerr
6204f6cdc8
fix(eks_endpoints_not_publicly_accessible): handle endpoint private access ( #2825 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-09-22 11:19:56 +02:00
dependabot[bot]
50bc5309f5
build(deps): bump cryptography from 41.0.3 to 41.0.4 ( #2856 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-22 09:47:08 +02:00
Sergio Garcia
725e2e92ab
chore(regions_update): Changes in regions for AWS services. ( #2853 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-20 11:42:21 +02:00
Sergio Garcia
0b07326e36
chore(regions_update): Changes in regions for AWS services. ( #2852 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-20 00:03:41 +02:00
dependabot[bot]
e86d194f11
build(deps-dev): bump moto from 4.2.2 to 4.2.3 ( #2851 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-09-19 13:38:39 +02:00
dependabot[bot]
6949656d0e
build(deps): bump azure-storage-blob from 12.18.0 to 12.18.1 ( #2850 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-19 11:36:27 +02:00
dependabot[bot]
a2c62bab47
build(deps): bump mkdocs from 1.5.2 to 1.5.3 ( #2849 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-19 09:33:05 +02:00
Kay Agahd
3dd8aeac7c
fix(iam): findings of some checks may have been lost ( #2847 )
2023-09-18 10:46:04 +02:00
Sergio Garcia
2c342a5c5f
chore(regions_update): Changes in regions for AWS services. ( #2846 )
2023-09-17 09:37:05 +02:00
Sergio Garcia
adef1afdfa
chore(regions_update): Changes in regions for AWS services. ( #2845 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-15 11:36:56 +02:00
Pepe Fagoaga
a980b2606b
fix(cloudtrail_s3_dataevents_read/write_enabled): Handle S3 ARN ( #2844 )
2023-09-15 11:36:40 +02:00
Sergio Garcia
ed83927486
fix(vpc): solves CidrBlock KeyError ( #2817 )
2023-09-15 10:41:05 +02:00
Tayler Haviland
e745885b09
fix(ebs): improve snapshot encryption logic and typos ( #2836 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-09-15 10:37:34 +02:00
Sergio Garcia
16ddbfde9f
chore(regions_update): Changes in regions for AWS services. ( #2842 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-14 12:03:59 +02:00
dependabot[bot]
bc11537350
build(deps): bump mkdocs-material from 9.2.1 to 9.3.1 ( #2839 )
2023-09-13 17:44:06 +02:00
Sergio Garcia
ab4de79168
chore(regions_update): Changes in regions for AWS services. ( #2833 )
2023-09-13 17:15:52 +02:00
Sergio Garcia
8134897e91
chore(regions_update): Changes in regions for AWS services. ( #2819 )
2023-09-13 17:14:57 +02:00
Sergio Garcia
693d22ed25
chore(regions_update): Changes in regions for AWS services. ( #2821 )
2023-09-13 17:14:14 +02:00
dependabot[bot]
b1dab2466f
build(deps): bump azure-storage-blob from 12.17.0 to 12.18.0 ( #2838 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-13 17:03:03 +02:00
dependabot[bot]
d2b09f39e7
build(deps): bump google-api-python-client from 2.97.0 to 2.99.0 ( #2837 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-13 16:24:40 +02:00
Cameron Stark
4475801a96
fix(storage_ensure_minimum_tls_version_12): misspelling in metadata ( #2835 )
2023-09-13 13:02:07 +02:00
dependabot[bot]
126ff8cf0d
build(deps): bump slack-sdk from 3.21.3 to 3.22.0 ( #2832 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-13 13:01:55 +02:00
dependabot[bot]
a536a785de
build(deps-dev): bump gitpython from 3.1.34 to 3.1.35 ( #2831 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-13 12:51:15 +02:00
dependabot[bot]
ed89ef74eb
build(deps-dev): bump coverage from 7.3.0 to 7.3.1 ( #2828 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-13 12:42:13 +02:00
Kay Agahd
f1bea27e44
feat(iam): add new check iam_role_administratoraccess_policy ( #2822 )
2023-09-12 09:19:20 +02:00
dependabot[bot]
7305e53439
build(deps-dev): bump pytest from 7.4.1 to 7.4.2 ( #2827 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-12 09:11:58 +02:00
dependabot[bot]
b08c0e8150
build(deps): bump google-auth-httplib2 from 0.1.0 to 0.1.1 ( #2826 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-12 09:11:34 +02:00
Nacho Rivera
8606a4579a
fix(pre-commit): add file filter to python linters ( #2818 )
2023-09-08 08:29:55 +02:00
Nacho Rivera
1dfb72a1d1
feat(unix timestamp): add the --unix-timestamp flag to docs ( #2816 )
2023-09-07 10:33:58 +02:00
Sergio Garcia
f09b55b893
chore(regions_update): Changes in regions for AWS services. ( #2814 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-07 09:15:19 +02:00
Nacho Rivera
30ba6029f5
feat(unix timestamp): add unix timestamp to outputs ( #2813 )
2023-09-07 09:14:02 +02:00
dependabot[bot]
9f0c830511
build(deps-dev): bump gitpython from 3.1.32 to 3.1.34 ( #2815 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-07 08:44:03 +02:00
Nacho Rivera
973e3138fe
feat(Dockerfile): add curl package to docker image ( #2812 )
2023-09-05 15:21:46 +02:00
Nacho Rivera
c996a562e6
fix(3.9.0): update pyproject.toml to latest release ( #2811 )
2023-09-05 15:21:33 +02:00
dependabot[bot]
f2bba4d1ee
build(deps-dev): bump moto from 4.2.0 to 4.2.2 ( #2809 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-05 13:38:17 +02:00
dependabot[bot]
8017a95413
build(deps-dev): bump pytest from 7.4.0 to 7.4.1 ( #2808 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-09-05 13:02:17 +02:00
Nacho Rivera
26d209daff
fix(testing docs): fix testing docs typos and syntax ( #2803 )
2023-09-05 13:01:35 +02:00
Nacho Rivera
44b979b4a4
fix(ec2_instance_..._ssm): mock ssm service and client in all the tests ( #2804 )
2023-09-05 12:34:02 +02:00
Kay Agahd
03ad61abc6
iam_policy_no_administrative_privileges does not exist and maps not to check122 ( #2797 )
2023-09-04 10:23:48 +02:00
Sergio Garcia
fe425f89a4
chore(regions_update): Changes in regions for AWS services. ( #2802 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-04 10:23:06 +02:00
Nacho Rivera
11ad66fb79
feat(ec2_instance_managed_by_ssm): missing tests ( #2800 )
2023-09-04 10:22:43 +02:00
Sergio Garcia
ca5734a2c6
chore(regions_update): Changes in regions for AWS services. ( #2801 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-01 12:55:50 +02:00
Nacho Rivera
e5414e87c7
fix(ec2 nacl checks):unify logic ( #2799 )
2023-09-01 12:55:29 +02:00
Sergio Garcia
8142f8f62f
chore(regions_update): Changes in regions for AWS services. ( #2794 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-09-01 12:24:56 +02:00
Nacho Rivera
74cf4076fa
fix(apikeys_..._90_days): fix key creation time with dinamic date ( #2798 )
2023-09-01 12:18:55 +02:00
Nacho Rivera
dbd29c0ce1
fix(ec2 tests): add region and delete search sg checks ( #2788 )
2023-08-31 11:55:30 +02:00
Nacho Rivera
38a7dc1a93
fix(ec2 ebs/instance checks): unify checks logic ( #2795 )
2023-08-31 11:55:10 +02:00
Nacho Rivera
2891bc0b96
fix(policy_condition_parser): add StringEquals aws:SourceArn condition ( #2793 )
2023-08-31 11:54:48 +02:00
dependabot[bot]
8846ae6664
build(deps-dev): bump moto from 4.1.15 to 4.2.0 ( #2783 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-31 10:29:00 +02:00
Nacho Rivera
2e3c3a55aa
fix(html): unroll regions set prior concat ( #2790 )
2023-08-30 16:38:56 +02:00
Nacho Rivera
7e44116d51
fix(is_valid_arn): include . into resource name ( #2789 )
2023-08-30 16:11:46 +02:00
Nacho Rivera
46f85e6395
fix(ec2 tests): add tags and region non sg checks ( #2781 )
2023-08-30 16:10:27 +02:00
Sergio Garcia
94a384fd81
chore(regions_update): Changes in regions for AWS services. ( #2791 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-30 12:48:25 +02:00
Sergio Garcia
af6acefb53
chore(regions_update): Changes in regions for AWS services. ( #2787 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-29 11:21:39 +02:00
Sergio Garcia
94fd7d252f
chore(regions_update): Changes in regions for AWS services. ( #2779 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-29 11:21:13 +02:00
dependabot[bot]
4767e38f5b
build(deps-dev): bump vulture from 2.8 to 2.9.1 ( #2785 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-29 09:58:55 +02:00
Nacho Rivera
276f6f9fb1
fix(ec2_securitygroup_default_restrict_traffic): fix check only allow empty rules ( #2777 )
2023-08-25 12:42:26 +02:00
Sergio Garcia
2386c71c4f
chore(regions_update): Changes in regions for AWS services. ( #2776 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-25 11:24:43 +02:00
Pepe Fagoaga
21c52db66b
test(vpc_endpoint_services_allowed_principals_trust_boundaries) ( #2768 )
2023-08-25 10:56:47 +02:00
Pepe Fagoaga
13cfa02f80
fix(test): Update moto to 4.1.15 and update tests ( #2769 )
2023-08-25 10:56:39 +02:00
Pepe Fagoaga
eedfbe3e7a
fix(iam_policy_allows_privilege_escalation): Not use search for checking API actions ( #2772 )
2023-08-25 10:56:28 +02:00
Pepe Fagoaga
fe03eb4436
docs: explain output formats ( #2774 )
2023-08-25 10:56:15 +02:00
Pepe Fagoaga
d8e45d5c3f
docs: Include new config ecr_repository_vulnerability_minimum_severity ( #2775 )
2023-08-25 10:56:04 +02:00
Sergio Garcia
12e9fb5eeb
chore(regions_update): Changes in regions for AWS services. ( #2773 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-24 12:07:05 +02:00
gerardocampo
957ffaabae
feat(compliance): Update AWS compliance frameworks after PR 2750 ( #2771 )
...
Co-authored-by: Gerard Ocampo <gerard.ocampo@zelis.com >
2023-08-24 08:01:00 +02:00
Pepe Fagoaga
cb76e5a23c
chore(s3): Move lib to the AWS provider and include tests ( #2664 )
2023-08-23 16:12:48 +02:00
Sergio Garcia
b17cc563ff
chore(regions_update): Changes in regions for AWS services. ( #2767 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-23 11:29:12 +02:00
Pepe Fagoaga
06a0b12efb
fix(iam_policy_allows_privilege_escalation): Handle admin permission so * ( #2763 )
2023-08-23 10:40:06 +02:00
Pepe Fagoaga
d5bd5ebb7d
chore(parser): Move provider logic to their folder ( #2746 )
2023-08-23 10:33:36 +02:00
Nacho Rivera
0a9a1c26db
fix(get_regions_from_audit_resources): fix logic and add tests ( #2766 )
2023-08-23 10:20:12 +02:00
Nacho Rivera
83bfd8a2d4
fix(get_checks_from_input_arn): fix logic and add tests ( #2764 )
2023-08-23 09:35:42 +02:00
gerardocampo
e5d2c0c700
feat(iam): Check inline policies in IAM Users, Groups & Roles for admin priv's ( #2750 )
...
Co-authored-by: Gerard Ocampo <gerard.ocampo@zelis.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-08-23 08:29:13 +02:00
Pepe Fagoaga
590a5669d6
fix(nacls): Tests ( #2760 )
2023-08-22 22:26:19 +02:00
Sergio Garcia
e042740f67
chore(regions_update): Changes in regions for AWS services. ( #2759 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-22 11:43:58 +02:00
dependabot[bot]
dab2ecaa6b
build(deps): bump shodan from 1.29.1 to 1.30.0 ( #2754 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-22 09:16:08 +02:00
dependabot[bot]
f9f4133b48
build(deps): bump azure-mgmt-storage from 21.0.0 to 21.1.0 ( #2756 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-22 08:49:06 +02:00
dependabot[bot]
33dd21897d
build(deps-dev): bump pytest-randomly from 3.13.0 to 3.15.0 ( #2755 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-22 08:30:07 +02:00
Geoff Singer
cb2ef23a29
feat(s3): Add S3 KMS encryption check ( #2757 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-08-22 08:28:17 +02:00
dependabot[bot]
e70e01196f
build(deps): bump google-api-python-client from 2.96.0 to 2.97.0 ( #2753 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-22 08:08:13 +02:00
dependabot[bot]
f70b9e6eb4
build(deps): bump mkdocs-material from 9.1.21 to 9.2.1 ( #2752 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-22 07:39:45 +02:00
Chris Farris
d186c69473
feat(checks): dump all checks as a json file ( #2683 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-08-21 17:35:31 +02:00
Nacho Rivera
4d817c48a8
fix(get_checks_from_input_arn): fix function and add tests ( #2749 )
2023-08-21 13:23:43 +02:00
Pepe Fagoaga
c13cab792b
docs(testing): Mocking the service and the service client at the service client level ( #2747 )
2023-08-21 09:05:57 +02:00
Pepe Fagoaga
80aa463aa2
fix(checks_to_execute): --checks and --resource_arn working together ( #2743 )
2023-08-21 09:04:15 +02:00
Sergio Garcia
bd28b17ad9
chore(regions_update): Changes in regions for AWS services. ( #2748 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-21 08:15:25 +02:00
Sergio Garcia
223119e303
chore(regions_update): Changes in regions for AWS services. ( #2744 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-18 12:38:17 +02:00
Pepe Fagoaga
7c45cb45ae
feat(ecr_repositories_scan_vulnerabilities_in_latest_image): Minimum severity is configurable ( #2736 )
2023-08-18 09:17:02 +02:00
Pepe Fagoaga
ac11c6729b
chore(tests): Replace sure with standard assert ( #2738 )
2023-08-17 11:36:45 +02:00
Pepe Fagoaga
1677654dea
docs(audit_config): How to use it ( #2739 )
2023-08-17 11:36:32 +02:00
Pepe Fagoaga
bc5a7a961b
tests(check_security_group) ( #2740 )
2023-08-17 11:36:17 +02:00
Sergio Garcia
c10462223d
chore(regions_update): Changes in regions for AWS services. ( #2741 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-17 11:31:31 +02:00
vysakh-devopspace
54a9f412e8
feat(ec2): New check ec2_instance_detailed_monitoring_enabled ( #2735 )
...
Co-authored-by: Vysakh <venugopal.vysakh@gmail.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-08-16 14:31:06 +02:00
Sergio Garcia
5a107c58bb
chore(regions_update): Changes in regions for AWS services. ( #2737 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-16 11:42:47 +02:00
Pepe Fagoaga
8f091e7548
fix(gcp): Status extended ends with a dot ( #2734 )
2023-08-16 10:14:41 +02:00
Pepe Fagoaga
8cdc7b18c7
fix(test-vpc): use the right import paths ( #2732 )
2023-08-16 09:17:18 +02:00
christiandavilakoobin
9f2e87e9fb
fix(is_account_only_allowed_in_condition): Context name on conditions are case-insensitive ( #2726 )
2023-08-16 08:27:24 +02:00
Sergio Garcia
e119458048
chore(regions_update): Changes in regions for AWS services. ( #2733 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-15 16:25:17 +02:00
dependabot[bot]
c2983faf1d
build(deps): bump azure-identity from 1.13.0 to 1.14.0 ( #2731 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-15 10:34:56 +02:00
dependabot[bot]
a09855207e
build(deps-dev): bump coverage from 7.2.7 to 7.3.0 ( #2730 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-15 09:50:18 +02:00
Pepe Fagoaga
1e1859ba6f
docs(style): Add more details ( #2724 )
2023-08-15 09:26:48 +02:00
dependabot[bot]
a3937e48a8
build(deps): bump google-api-python-client from 2.95.0 to 2.96.0 ( #2729 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-15 09:22:59 +02:00
dependabot[bot]
d2aa53a2ec
build(deps): bump mkdocs-material from 9.1.20 to 9.1.21 ( #2728 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-15 08:57:24 +02:00
dependabot[bot]
b0bdeea60f
build(deps-dev): bump vulture from 2.7 to 2.8 ( #2727 )
2023-08-15 08:33:27 +02:00
Pepe Fagoaga
465e64b9ac
fix(azure): Status extended ends with a dot ( #2725 )
2023-08-14 21:48:16 +02:00
Pepe Fagoaga
fc53b28997
test(s3): Mock S3Control when used ( #2722 )
2023-08-14 21:48:05 +02:00
Pepe Fagoaga
72e701a4b5
fix(security): GitPython issue ( #2720 )
2023-08-14 21:09:12 +02:00
Pepe Fagoaga
2298d5356d
test(coverage): Add Codecov ( #2719 )
2023-08-14 21:08:45 +02:00
Pepe Fagoaga
54137be92b
test(python): 3.9, 3.10, 3.11 ( #2718 )
2023-08-14 21:08:29 +02:00
Sergio Garcia
7ffb12268d
chore(release): update Prowler Version to 3.8.2 ( #2721 )
...
Co-authored-by: github-actions <noreply@github.com >
2023-08-14 09:18:23 +02:00
Sergio Garcia
790fff460a
chore(regions_update): Changes in regions for AWS services. ( #2717 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-14 08:13:10 +02:00
Chris Farris
9055dbafe3
fix(s3_bucket_policy_public_write_access): look at account and bucket-level public access block settings ( #2715 )
2023-08-12 01:46:24 +02:00
Pepe Fagoaga
4454d9115e
chore(aws): 2nd round - Improve tests and include dot in status extended ( #2714 )
2023-08-12 01:41:35 +02:00
Sergio Garcia
0d74dec446
chore(regions_update): Changes in regions for AWS services. ( #2712 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-11 11:18:18 +02:00
Pepe Fagoaga
0313dba7b4
chore(aws): Improve tests and status from accessanalyzer to cloudwatch ( #2711 )
2023-08-11 11:04:04 +02:00
Pepe Fagoaga
3fafac75ef
docs(dev-guide): Fix a list and include some details to use the report ( #2710 )
2023-08-11 11:01:58 +02:00
Sergio Garcia
6b24b46f3d
fix(security-hub): handle default output filename error ( #2709 )
2023-08-11 09:12:25 +02:00
Pepe Fagoaga
474e39a4c9
docs(developer-guide): Update checks, services and include testing ( #2705 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-08-10 17:28:35 +02:00
Sergio Garcia
e652298b6a
chore(release): update Prowler Version to 3.8.1 ( #2706 )
...
Co-authored-by: github-actions <noreply@github.com >
2023-08-10 14:08:48 +02:00
Pepe Fagoaga
9340ae43f3
fix(ds): Restore enums without optional ( #2704 )
2023-08-10 13:43:31 +02:00
Sergio Garcia
552024c53e
fix(Enum): handle Enum classes correctly ( #2702 )
2023-08-10 13:21:24 +02:00
Pepe Fagoaga
3aba71ad2f
docs(aws-orgs): Update syntax ( #2703 )
2023-08-10 12:40:17 +02:00
christiandavilakoobin
ade511df28
fix(sns): allow default SNS policy with SourceOwner ( #2698 )
...
Co-authored-by: Azure Pipeplines CI <monitor@koobin.com >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-08-10 12:13:57 +02:00
Sergio Garcia
fc650214d4
fix(security hub): include custom output filename in resolve_security_hub_previous_findings ( #2687 )
2023-08-10 12:11:10 +02:00
Sergio Garcia
8266fd0c6f
chore(print): prettify prints of listings and logs ( #2699 )
2023-08-10 12:08:07 +02:00
Pepe Fagoaga
f4308032c3
fix(cloudfront): fix ViewerProtocolPolicy and GeoRestrictionType ( #2701 )
2023-08-10 12:02:49 +02:00
Sergio Garcia
1e1f445ade
chore(regions_update): Changes in regions for AWS services. ( #2700 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-10 11:29:05 +02:00
Pepe Fagoaga
d41b0332ac
feat(athena): New AWS Athena service + 2 workgroup checks ( #2696 )
2023-08-10 10:23:17 +02:00
Pepe Fagoaga
7258466572
fix(iam): password policy expiration ( #2694 )
2023-08-10 10:10:20 +02:00
Pepe Fagoaga
76db92ea14
chore(service): service class type hints ( #2695 )
2023-08-10 10:01:54 +02:00
Sergio Garcia
ad3cd66e08
docs(organizations): fix script and improve titles ( #2693 )
2023-08-10 09:56:47 +02:00
Sergio Garcia
22f8855ad7
chore(regions_update): Changes in regions for AWS services. ( #2692 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-09 11:23:28 +02:00
Sergio Garcia
36e095c830
fix(iam_role_cross_service_confused_deputy_prevention): add ResourceAccount and PrincipalAccount conditions ( #2689 )
2023-08-09 10:41:48 +02:00
Sergio Garcia
887cac1264
fix(typo): spelling typo in organizations_scp_check_deny_regions ( #2691 )
2023-08-09 10:24:29 +02:00
Pepe Fagoaga
13059e0568
fix(ec2-securitygroups): Handle IPv6 public ( #2690 )
2023-08-09 10:08:30 +02:00
Pepe Fagoaga
9e8023d716
fix(config): Pass a configuration file using --config-file config.yaml ( #2679 )
2023-08-09 09:52:45 +02:00
Sergio Garcia
c54ba5fd8c
chore(regions_update): Changes in regions for AWS services. ( #2688 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-09 09:34:52 +02:00
dependabot[bot]
db80e063d4
build(deps-dev): bump pylint from 2.17.4 to 2.17.5 ( #2685 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-08 10:48:42 +02:00
dependabot[bot]
b6aa12706a
build(deps): bump mkdocs from 1.4.3 to 1.5.2 ( #2684 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-08 10:22:20 +02:00
Chris Farris
c1caf6717d
fix(organizations): request Organization Info after assume_role occurs ( #2682 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-08-07 15:17:05 +02:00
Pepe Fagoaga
513fd9f532
fix(iam-dynamodb): Handle errors ( #2680 )
2023-08-07 10:04:19 +02:00
Pepe Fagoaga
bf77f817cb
chore(azure): Improve AzureService class with __set_clients__ ( #2676 )
2023-08-04 13:04:05 +02:00
Sergio Garcia
e0bfef2ece
chore(regions_update): Changes in regions for AWS services. ( #2677 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-04 12:10:19 +02:00
Sergio Garcia
4a87f908a8
chore(release): update Prowler Version to 3.8.0 ( #2674 )
...
Co-authored-by: github-actions <noreply@github.com >
2023-08-03 18:34:23 +02:00
Sergio Garcia
16d95e5155
chore(readme): update providers summary table ( #2673 )
2023-08-03 16:45:09 +02:00
Pepe Fagoaga
1797b54259
test(azure): Storage Service ( #2672 )
2023-08-03 15:07:17 +02:00
Pepe Fagoaga
f289c8fb2e
test(azure): SQL Server Service ( #2671 )
2023-08-03 14:43:18 +02:00
Pepe Fagoaga
e4ad881a69
test(azure): IAM service ( #2670 )
2023-08-03 14:15:34 +02:00
Pepe Fagoaga
138bca38e7
test(azure): Defender service ( #2669 )
2023-08-03 13:52:55 +02:00
edurra
44f7af3580
feat(azure): add Azure SQL Server service and 3 checks ( #2665 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-08-03 11:29:17 +02:00
Sergio Garcia
2d832bca15
feat(gcp): Improve gcp performance ( #2662 )
2023-08-03 10:52:52 +02:00
Pepe Fagoaga
efa75a62e3
fix(iam_policy_allows_privilege_escalation): Handle permissions in groups ( #2655 )
2023-08-03 10:40:51 +02:00
Pepe Fagoaga
5763bca317
refactor(vpc_endpoint_connections_trust_boundaries) ( #2667 )
2023-08-03 09:56:09 +02:00
Pepe Fagoaga
c335334402
fix(test_only_aws_service_linked_roles): Flaky test ( #2666 )
2023-08-03 09:18:06 +02:00
Pepe Fagoaga
5bf3f70717
fix(vpc_endpoint_connections_trust_boundaries): Handle AWS Account ID as Principal ( #2611 )
2023-08-03 09:16:58 +02:00
Pepe Fagoaga
92c8a440ea
feat(gcp): Add internet-exposed and encryption categories ( #2663 )
2023-08-02 15:53:12 +02:00
Pepe Fagoaga
b92d8a014c
fix(cryptography): Update to 41.0.3 ( #2661 )
2023-08-02 11:47:51 +02:00
Sergio Garcia
aced44f051
fix(sns): handle topic policy conditions ( #2660 )
2023-08-02 11:45:27 +02:00
Sergio Garcia
49c9d2b077
chore(regions_update): Changes in regions for AWS services. ( #2658 )
2023-08-02 11:32:11 +02:00
Pepe Fagoaga
61beacf085
fix(docs): Azure auth and Slack integration ( #2659 )
2023-08-02 11:18:45 +02:00
Pepe Fagoaga
02f432238e
fix(outputs): Not use reserved keyword list as variable ( #2657 )
2023-08-02 09:00:04 +02:00
Sergio Garcia
864d178e01
chore(regions_update): Changes in regions for AWS services. ( #2654 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-08-01 11:52:02 +02:00
Sergio Garcia
78f0b823a9
fix(s3_bucket_level_public_access_block): check s3 public access block at account level ( #2653 )
2023-08-01 11:24:58 +02:00
dependabot[bot]
26cdc7a0ee
build(deps-dev): bump flake8 from 6.0.0 to 6.1.0 ( #2651 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-08-01 10:59:58 +02:00
dependabot[bot]
5e773f1eee
build(deps): bump azure-mgmt-authorization from 3.0.0 to 4.0.0 ( #2652 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-01 10:18:56 +02:00
dependabot[bot]
4a7ac7df22
build(deps-dev): bump moto from 4.1.13 to 4.1.14 ( #2650 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-01 10:03:03 +02:00
dependabot[bot]
5250670d5d
build(deps): bump google-api-python-client from 2.94.0 to 2.95.0 ( #2649 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-08-01 09:49:51 +02:00
Gabriel Pragin
de4a825db8
fix(metadata): Typos ( #2646 )
2023-08-01 09:07:23 +02:00
dependabot[bot]
c256419144
build(deps): bump mkdocs-material from 9.1.19 to 9.1.20 ( #2648 )
2023-08-01 08:58:32 +02:00
Pepe Fagoaga
7bdca0420e
fix(cloudtrail): Set status to INFO when trail is outside the audited account ( #2643 )
2023-07-31 17:50:21 +02:00
Pepe Fagoaga
3aa1fbced9
feat(azure_service): New parent class ( #2642 )
2023-07-31 16:03:49 +02:00
Pepe Fagoaga
dbbb70027a
feat(gcp_service): Parent class ( #2641 )
2023-07-31 15:01:25 +02:00
Pepe Fagoaga
b4e78d28f8
fix(test): mock VPC client ( #2640 )
2023-07-31 11:19:15 +02:00
Pepe Fagoaga
e3d4e38a59
feat(aws): New AWSService class as parent ( #2638 )
2023-07-31 11:18:54 +02:00
Pepe Fagoaga
386f558eae
fix(ec2_instance_secrets_user_data): Include line numbers in status ( #2639 )
2023-07-31 10:33:34 +02:00
Sergio Garcia
e08424d3a3
chore(regions_update): Changes in regions for AWS services. ( #2637 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-31 09:54:44 +02:00
Chris Farris
03ad403e7a
feat(s3): Add checks for publicly listable Buckets or writable buckets by ACL ( #2628 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-07-31 08:35:18 +02:00
Sergio Garcia
4a674aae99
chore(regions_update): Changes in regions for AWS services. ( #2634 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-28 11:34:30 +02:00
Pepe Fagoaga
8ee3744027
chore(security-hub): Explain Unique ID ( #2631 )
2023-07-27 13:39:12 +02:00
Gabriel Pragin
965327e801
chore(typos): Update check's status ( #2629 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-07-27 11:44:09 +02:00
Sergio Garcia
f82ea43324
chore(regions_update): Changes in regions for AWS services. ( #2630 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-27 11:31:45 +02:00
Pepe Fagoaga
a5c63845b4
test: security groups ( #2627 )
2023-07-26 16:29:27 +02:00
Sergio Garcia
034faa72cf
chore(release): update Prowler Version to 3.7.2 ( #2625 )
...
Co-authored-by: github-actions <noreply@github.com >
2023-07-26 13:37:31 +02:00
Sergio Garcia
9bcd617964
chore(ec2): add SG name to resource_details ( #2495 )
2023-07-26 13:12:36 +02:00
Sergio Garcia
0db975dc7b
fix(pypi-release): solve GH action for release ( #2624 )
2023-07-26 13:03:34 +02:00
Pepe Fagoaga
a51fa7703b
fix(security): certifi issue ( #2623 )
2023-07-26 12:45:07 +02:00
Sergio Garcia
69fad0009d
fix(ec2_ami_public): correct check metadata and logic ( #2618 )
2023-07-26 10:34:04 +02:00
Sergio Garcia
e721251936
fix(compute): solve key errors in compute service ( #2610 )
2023-07-26 08:49:09 +02:00
Pepe Fagoaga
2fe767e3e5
fix(ecs_task_def_secrets): Improve description to explain findings ( #2621 )
2023-07-25 18:26:22 +02:00
Sergio Garcia
6328ef4444
fix(guardduty): handle disabled detectors in guardduty_is_enabled ( #2616 )
2023-07-25 12:26:37 +02:00
dependabot[bot]
50b8e084e7
build(deps): bump google-api-python-client from 2.93.0 to 2.94.0 ( #2614 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-25 09:37:10 +02:00
dependabot[bot]
3d88544feb
build(deps): bump mkdocs-material from 9.1.18 to 9.1.19 ( #2615 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-25 09:10:01 +02:00
dependabot[bot]
62e602c32e
build(deps): bump pydantic from 1.10.11 to 1.10.12 ( #2613 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-25 08:55:43 +02:00
Pepe Fagoaga
47a82560ea
fix(s3): __get_object_lock_configuration__ warning logs ( #2608 )
2023-07-24 10:49:50 +02:00
Pepe Fagoaga
f7bbcc98b3
docs(boto3-configuration): format list ( #2609 )
2023-07-24 10:47:55 +02:00
Sergio Garcia
98a587aa15
chore(regions_update): Changes in regions for AWS services. ( #2606 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-23 18:30:30 +02:00
Sergio Garcia
d2e34c42fd
chore(regions_update): Changes in regions for AWS services. ( #2599 )
2023-07-18 17:38:43 +02:00
dependabot[bot]
605b07901e
build(deps): bump google-api-python-client from 2.92.0 to 2.93.0 ( #2597 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-18 10:52:26 +02:00
dependabot[bot]
18f02fac68
build(deps-dev): bump moto from 4.1.12 to 4.1.13 ( #2598 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-07-18 10:37:34 +02:00
Pepe Fagoaga
28ea37f367
test(aws_provider): Role and User MFA ( #2486 )
2023-07-18 09:36:37 +02:00
Gabriel Pragin
65a737bb58
chore(metadata): Typos ( #2595 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-07-18 09:27:58 +02:00
dependabot[bot]
7423cd2f93
build(deps): bump azure-storage-blob from 12.16.0 to 12.17.0 ( #2596 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-18 09:25:51 +02:00
Gabriel Pragin
babd026351
chore(metadata): Typos ( #2594 )
2023-07-17 22:28:24 +02:00
Sergio Garcia
dd6e5a9029
fix(security): solve dependabot security alert ( #2592 )
2023-07-17 12:03:35 +02:00
Pepe Fagoaga
02519a4429
fix(assume_role): Set the AWS STS endpoint region ( #2587 )
2023-07-17 10:09:48 +02:00
Pepe Fagoaga
6575121b7a
fix(ssm_incidents): Handle empty name ( #2591 )
2023-07-17 09:20:44 +02:00
Pepe Fagoaga
5b66368f0d
fix(opensearch): log exception as WARNING ( #2581 )
2023-07-17 09:18:42 +02:00
Sergio Garcia
971c6720e4
chore(regions_update): Changes in regions for AWS services. ( #2590 )
2023-07-16 21:56:21 +02:00
Sergio Garcia
3afccc279f
chore(regions_update): Changes in regions for AWS services. ( #2588 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-14 11:34:21 +02:00
Nacho Rivera
8f015d0672
fix(allowlist): single account checks handling ( #2585 )
...
Co-authored-by: thomscode <thomscode@gmail.com >
2023-07-14 09:55:27 +02:00
Pepe Fagoaga
f33b96861c
release: v3.7.1 ( #2578 )
2023-07-13 16:48:18 +02:00
Sergio Garcia
9832ce2ff9
chore(regions_update): Changes in regions for AWS services. ( #2580 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-13 12:34:16 +02:00
Kay Agahd
490cbbaa48
docs: typos in README.md ( #2579 )
2023-07-13 07:34:27 +02:00
Nacho Rivera
d1c91093e2
feat(cond parser): add policy cond parser & apply in sqs public check ( #2575 )
2023-07-12 15:39:01 +02:00
Nacho Rivera
66fe101ccd
fix(allowlist): handle wildcard in account field ( #2577 )
2023-07-12 14:22:42 +02:00
Pepe Fagoaga
7ab8c6b154
fix(iam): Handle NoSuchEntityException when calling list_attached_role_policies ( #2571 )
2023-07-12 12:48:57 +02:00
Sergio Garcia
73017b14c3
chore(regions_update): Changes in regions for AWS services. ( #2574 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-12 11:17:00 +02:00
Sergio Garcia
f55495cd6a
chore(regions_update): Changes in regions for AWS services. ( #2572 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-11 11:45:43 +02:00
dependabot[bot]
e97146b5a3
build(deps): bump google-api-python-client from 2.91.0 to 2.92.0 ( #2570 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-11 11:45:21 +02:00
dependabot[bot]
58f056c76d
build(deps-dev): bump openapi-spec-validator from 0.5.7 to 0.6.0 ( #2569 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-11 11:16:23 +02:00
dependabot[bot]
338bbc7a1f
build(deps): bump pydantic from 1.10.9 to 1.10.11 ( #2568 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-11 09:59:01 +02:00
dependabot[bot]
4ba54738a9
build(deps): bump boto3 from 1.26.161 to 1.26.165 ( #2566 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-07-11 09:37:29 +02:00
Toni de la Fuente
235fd2adc4
docs: Update Compliance in README ( #2563 )
2023-07-11 09:12:11 +02:00
Toni de la Fuente
b15d518c94
feat(compliance): CIS Benchmark 2.0 for AWS ( #2562 )
2023-07-11 09:12:03 +02:00
dependabot[bot]
021e1c122c
build(deps-dev): bump pytest-randomly from 3.12.0 to 3.13.0 ( #2567 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-11 09:07:05 +02:00
Sergio Garcia
014b0dd6f6
chore(regions_update): Changes in regions for AWS services. ( #2561 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-10 08:28:09 +02:00
Sergio Garcia
f9f68f9b86
chore(regions_update): Changes in regions for AWS services. ( #2560 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-07 11:34:53 +02:00
Pepe Fagoaga
11a8ba131a
test(outputs): Remove debug ( #2559 )
2023-07-07 10:14:47 +02:00
Sergio Garcia
858de64f8e
chore(release): version 3.7.0 ( #2558 )
2023-07-06 21:17:21 +02:00
Sergio Garcia
676e60afb7
feat(gcp): add CIS checks ( #2544 )
2023-07-06 17:01:56 +02:00
Nacho Rivera
b1968f3f8b
fix(allowlist): reformat allowlist logic ( #2555 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-07-06 15:33:32 +02:00
Sergio Garcia
d2d077afaa
chore(regions_update): Changes in regions for AWS services. ( #2557 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-06 11:29:50 +02:00
Nacho Rivera
7097ca401d
feat(lambda allowlist): mapping lambda/awslambda in allowlist ( #2554 )
2023-07-05 11:49:42 +02:00
Antoine Cichowicz
73e9a1eb9e
docs: Update Amazon Linux 2 installation ( #2553 )
2023-07-05 07:54:18 +02:00
Nacho Rivera
0439d455fb
fix(reporting docs): fix S3 reporting desc ( #2551 )
2023-07-04 12:43:39 +02:00
Sergio Garcia
d57f665a78
docs(allowlist): update DynamoDB allowlist example ( #2552 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-07-04 11:55:33 +02:00
dependabot[bot]
859c731a13
build(deps): bump google-api-python-client from 2.90.0 to 2.91.0 ( #2548 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-04 11:08:13 +02:00
Sergio Garcia
2e7613ddec
docs(OCSF): add docs for OCSF output ( #2550 )
2023-07-04 10:37:42 +02:00
dependabot[bot]
57e9436783
build(deps): bump botocore from 1.29.161 to 1.29.165 ( #2547 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-04 10:23:03 +02:00
dependabot[bot]
2f153fda2e
build(deps): bump mkdocs-material from 9.1.17 to 9.1.18 ( #2546 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-04 09:02:25 +02:00
dependabot[bot]
cbcb5905a3
build(deps): bump boto3 from 1.26.156 to 1.26.161 ( #2545 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-07-04 08:46:49 +02:00
Sergio Garcia
6a2fb37615
fix(bigquery_dataset_public_access): handle status correctly ( #2542 )
2023-07-03 13:01:51 +02:00
Nacho Rivera
6403feaff9
fix(cloudwatch secrets): fix nonetype error handling ( #2543 )
2023-07-03 12:52:46 +02:00
Sergio Garcia
47736910ca
fix(list-checks): handle listing checks when -s ( #2540 )
2023-07-03 11:48:40 +02:00
Sergio Garcia
ead592a0bf
chore(regions_update): Changes in regions for AWS services. ( #2539 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-07-03 11:22:43 +02:00
Nacho Rivera
d5bdba9244
feat(lambda service): mapping lambda service to awslambda ( #2538 )
2023-07-03 11:19:02 +02:00
Sergio Garcia
4f033cec8d
feat(MITRE): add MITRE ATT&CK framework for AWS ( #2537 )
2023-06-30 12:24:05 +02:00
sssalim-aws
a58f4b2498
feat(compliance): AWS Well-Architected Framework Reliability Pillar v0.1 ( #2536 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-06-29 11:13:38 +02:00
Sergio Garcia
01522ed8c7
feat(ENS): complete ENS Compliance Framework mapping ( #2534 )
2023-06-27 15:22:25 +02:00
Sergio Garcia
fa99ee9d5b
feat(allowlist): add exceptions to allowlist ( #2527 )
2023-06-27 12:57:18 +02:00
Sergio Garcia
6efe634850
fix(iam): add StringLike condition in iam_role_cross_service_confused_deputy_prevention ( #2533 )
2023-06-27 10:06:46 +02:00
dependabot[bot]
60a1497eaf
build(deps-dev): bump moto from 4.1.11 to 4.1.12 ( #2530 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-27 09:07:44 +02:00
dependabot[bot]
1d0cbc08df
build(deps): bump google-api-python-client from 2.89.0 to 2.90.0 ( #2531 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-27 08:36:41 +02:00
dependabot[bot]
4d4280033b
build(deps-dev): bump pytest from 7.3.2 to 7.4.0 ( #2532 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-27 07:55:26 +02:00
dependabot[bot]
fd58775cae
build(deps): bump mkdocs-material from 9.1.16 to 9.1.17 ( #2529 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-27 07:39:58 +02:00
dependabot[bot]
ccb0e93da2
build(deps): bump botocore from 1.29.156 to 1.29.161 ( #2528 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-27 07:19:22 +02:00
Sergio Garcia
c2a05da908
chore(ec2): reduce noise in Security Groups checks ( #2525 )
2023-06-23 15:06:09 +02:00
Sergio Garcia
e1da9e60fc
chore(region): add get_default_region function in AWS Services ( #2524 )
2023-06-23 14:10:49 +02:00
Sergio Garcia
d044e535e0
fix(compliance): add version to ISO27001 ( #2523 )
2023-06-21 17:04:08 +02:00
Sergio Garcia
293560dcd4
fix(contrib): migrate multi-account-securityhub/run-prowler-securityhub.sh to v3 ( #2503 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-06-21 15:18:02 +02:00
Sergio Garcia
90ebb815d5
fix(security hub): solve Security Hub format requirements ( #2520 )
2023-06-21 13:04:14 +02:00
Sergio Garcia
3d3d418ee6
chore(regions_update): Changes in regions for AWS services. ( #2522 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-06-21 11:32:35 +02:00
Pedro Martín
f875cd05be
feat(compliance): add ISO27001 compliance framework ( #2517 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-06-20 16:57:28 +02:00
Sergio Garcia
435911489f
fix(gcp): update Prowler SDK info of GCP ( #2515 )
2023-06-20 14:32:24 +02:00
Sergio Garcia
5fcfcd53aa
fix(compliance): remove unnecessary Optional attributes ( #2514 )
2023-06-20 14:22:13 +02:00
dependabot[bot]
bc09215aad
build(deps): bump boto3 from 1.26.147 to 1.26.156 ( #2511 )
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-06-20 10:36:53 +02:00
dependabot[bot]
5f7e109e3d
build(deps-dev): bump openapi-spec-validator from 0.5.6 to 0.5.7 ( #2507 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-20 09:44:30 +02:00
Nacho Rivera
b75a5050d7
fix(apigw): Update metadata for API GW checks ( #2512 )
2023-06-20 09:22:00 +02:00
dependabot[bot]
be497f7083
build(deps): bump google-api-python-client from 2.88.0 to 2.89.0 ( #2510 )
2023-06-20 08:40:41 +02:00
dependabot[bot]
0ccae3e15b
build(deps): bump mkdocs-material from 9.1.15 to 9.1.16 ( #2508 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-20 08:08:17 +02:00
dependabot[bot]
d736c32aec
build(deps): bump botocore from 1.29.152 to 1.29.156 ( #2506 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-20 07:41:30 +02:00
Sergio Garcia
8ea5ba5d3f
chore(OCSF): improve OCSF logic ( #2502 )
2023-06-19 12:37:04 +02:00
Nacho Rivera
60c341befd
fix(vpc): handle ephemeral VPC endpoint services ( #2501 )
2023-06-19 12:23:52 +02:00
Sergio Garcia
be4f58ed8f
chore(regions_update): Changes in regions for AWS services. ( #2500 )
2023-06-19 07:59:42 +02:00
Sergio Garcia
d82d1abab6
chore(3.6.1): release version ( #2498 )
2023-06-16 12:34:17 +02:00
Sergio Garcia
0d81bd457c
fix(asff): handle empty Recommendation Url ( #2496 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-06-16 12:17:09 +02:00
Sergio Garcia
af2b19436f
fix(route53): correct Hosted Zone ARN ( #2494 )
2023-06-15 16:32:54 +02:00
Sergio Garcia
51beb3c7e4
chore(regions_update): Changes in regions for AWS services. ( #2497 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-06-15 15:56:23 +02:00
Chris Kelly
5061456735
fix(security hub): Adds logic to map to valid ASFF statuses ( #2491 )
2023-06-15 15:52:19 +02:00
Nacho Rivera
b01eb3af95
fix(rds checks): test if key exists prior checking it ( #2489 )
2023-06-14 12:15:33 +02:00
Sergio Garcia
328bebc168
chore(regions_update): Changes in regions for AWS services. ( #2487 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-06-14 11:52:11 +02:00
Sergio Garcia
fc63fffa15
chore(release): 3.6.0 ( #2485 )
2023-06-13 17:38:51 +02:00
Sebastian Nyberg
707584b2ef
feat(aws): Add MFA flag if try to assume role in AWS ( #2478 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-06-13 17:18:10 +02:00
Nacho Rivera
561459d93b
fix(dataevents checks): add trails home region ( #2484 )
2023-06-13 11:48:55 +02:00
Sergio Garcia
25e48ae546
chore(arn): include ARN of AWS accounts ( #2477 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-06-13 10:18:23 +02:00
dependabot[bot]
513bb3e8d0
build(deps): bump botocore from 1.29.147 to 1.29.152 ( #2482 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-13 10:07:57 +02:00
dependabot[bot]
04710ca908
build(deps): bump google-api-python-client from 2.86.0 to 2.88.0 ( #2483 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-13 09:50:10 +02:00
dependabot[bot]
fcf0fcf20c
build(deps): bump pydantic from 1.10.8 to 1.10.9 ( #2481 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-13 09:06:59 +02:00
dependabot[bot]
2ff40d8e37
build(deps): bump boto3 from 1.26.142 to 1.26.147 ( #2480 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-13 08:11:54 +02:00
dependabot[bot]
1bab5b06a4
build(deps-dev): bump pytest from 7.3.1 to 7.3.2 ( #2479 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-13 07:50:41 +02:00
Sergio Garcia
01cd4bcb47
chore(arn): add missing ARNs to AWS Services ( #2476 )
2023-06-12 13:33:12 +02:00
Sebastian Nyberg
49b2a559ae
feat(vpc): add check vpc_subnet_no_public_ip_by_default ( #2472 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-06-12 09:44:10 +02:00
Sergio Garcia
9212d24685
chore(regions_update): Changes in regions for AWS services. ( #2474 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-06-12 08:48:44 +02:00
Nacho Rivera
eb43b11202
fix(arn validator): include : in regex ( #2471 )
2023-06-09 13:24:29 +02:00
Sergio Garcia
5c4cae8c9d
feat(wellarchitected): add WellArchitected service and check ( #2461 )
2023-06-09 13:19:01 +02:00
Sergio Garcia
cfd7099743
chore(regions_update): Changes in regions for AWS services. ( #2469 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-06-09 13:09:30 +02:00
Sergio Garcia
19ae237d29
chore(regions_update): Changes in regions for AWS services. ( #2462 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-06-09 13:09:01 +02:00
Sergio Garcia
9cda78e561
chore(docs): improve allowlist suggestion ( #2466 )
2023-06-09 13:07:28 +02:00
Sergio Garcia
cc31872a7f
fix(kms): check only KMS CMK tags ( #2468 )
2023-06-09 13:06:06 +02:00
Sebastian Nyberg
3c2c896708
chore(vpc): add mapPublicIpOnLaunch attribute to VPC subnets ( #2470 )
2023-06-09 12:45:28 +02:00
Jit
b73da9c54c
feat(gcp): add 12 new checks for CIS Framework ( #2426 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-06-08 11:25:51 +02:00
Sergio Garcia
414a45bfb0
chore(quick inventory): add warning message ( #2460 )
2023-06-07 15:16:52 +02:00
Sergio Garcia
2a6f808bca
chore(boto3): update boto3 config ( #2459 )
2023-06-07 14:32:40 +02:00
Sergio Garcia
cdf2a13bbd
feat(oscf): add OCSF format as JSON output for AWS, Azure and GCP. Hello Amazon Security Lake! ( #2429 )
2023-06-07 14:28:43 +02:00
Sergio Garcia
3e3e8a14ee
fix(inventory): handle exception for every call ( #2457 )
2023-06-07 09:33:10 +02:00
Nacho Rivera
37e180827a
fix(azure): fix empty subscriptions case ( #2455 )
2023-06-06 17:31:43 +02:00
Pepe Fagoaga
b047b54545
fix(backup): Handle last_execution_date when None ( #2454 )
2023-06-06 16:57:17 +02:00
Pepe Fagoaga
b7bb4bbd57
fix(aws): Add missing resources ARN ( #2453 )
2023-06-06 16:56:59 +02:00
Pepe Fagoaga
86cf2cd233
fix(efs): Include resource ARN and handle from input ( #2452 )
2023-06-06 14:29:58 +02:00
Sergio Garcia
ab12c201b4
chore(docs): improve custom checks docs ( #2428 )
2023-06-06 11:58:20 +02:00
Sergio Garcia
a8f03d859c
feat(gcp): add --project-ids flag and scan all projects by default ( #2393 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-06-06 11:56:39 +02:00
Sergio Garcia
3c7580f024
fix(ec2): handle false positive in ec2_securitygroup_allow_ingress_from_internet_to_any_port ( #2449 )
2023-06-06 11:55:27 +02:00
Sergio Garcia
277833e388
fix(services): verify Route53 records and handle TrustedAdvisor error ( #2448 )
2023-06-06 11:50:44 +02:00
Sergio Garcia
eb16d7e6f9
chore(regions_update): Changes in regions for AWS services. ( #2450 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-06-06 11:20:03 +02:00
Pepe Fagoaga
1418068d2b
fix(services): Handle AWS service errors ( #2440 )
2023-06-06 09:23:03 +02:00
dependabot[bot]
774346f5f8
build(deps): bump botocore from 1.29.142 to 1.29.147 ( #2447 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-06 08:38:49 +02:00
dependabot[bot]
1aab88e6ca
build(deps): bump alive-progress from 3.1.1 to 3.1.4 ( #2446 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-06 08:25:06 +02:00
dependabot[bot]
613f49b8bb
build(deps-dev): bump docker from 6.1.2 to 6.1.3 ( #2445 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-06 08:03:03 +02:00
dependabot[bot]
5c95dc6e20
build(deps): bump boto3 from 1.26.138 to 1.26.142 ( #2444 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-06 07:45:14 +02:00
dependabot[bot]
cbc2713bee
build(deps-dev): bump moto from 4.1.10 to 4.1.11 ( #2443 )
2023-06-06 07:29:25 +02:00
christiandavilakoobin
2955975793
fix(cloudfront): fix DefaultCacheConfigBehaviour enum type( #2430 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-06-05 15:48:34 +02:00
Sergio Garcia
f8299d7f40
chore(regions_update): Changes in regions for AWS services. ( #2441 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-06-05 14:44:30 +02:00
Toni de la Fuente
e855d44523
docs: Create CONTRIBUTING.md ( #2416 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-06-05 08:52:57 +02:00
dependabot[bot]
64e7715480
build(deps): bump cryptography from 40.0.2 to 41.0.0 ( #2436 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-06-05 08:52:11 +02:00
Nacho Rivera
2e9a74f609
fix(README): add references to tenant-id when browser auth ( #2439 )
2023-06-05 08:39:59 +02:00
Sergio Garcia
11a1230738
chore(regions_update): Changes in regions for AWS services. ( #2437 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-06-05 08:09:21 +02:00
Sergio Garcia
298373742e
chore(regions_update): Changes in regions for AWS services. ( #2427 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-06-02 13:32:04 +02:00
Sergio Garcia
dc7aeecd85
chore(regions_update): Changes in regions for AWS services. ( #2434 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-06-02 13:24:47 +02:00
Nacho Rivera
15a7de7b24
fix(browser auth): fix browser auth in Azure to include tenant id ( #2415 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-06-02 13:22:43 +02:00
sssalim-aws
714d0d4092
Update aws_well_architected_framework_security_pillar_aws.json ( #2432 )
2023-06-02 11:58:31 +02:00
Jenny Kim
225d7f39d1
chore(logo): Add Prowler logo in SVG format & Propose to Prowler icon design ( #2423 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-06-01 12:03:49 +02:00
Sergio Garcia
0005798c83
chore(regions_update): Changes in regions for AWS services. ( #2424 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-31 18:22:44 +02:00
dependabot[bot]
1d9078f9be
build(deps): bump mkdocs-material from 9.1.12 to 9.1.15 ( #2420 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-30 12:51:50 +02:00
dependabot[bot]
510ac7005a
build(deps-dev): bump pytest-xdist from 3.3.0 to 3.3.1 ( #2421 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-30 11:00:11 +02:00
dependabot[bot]
c049b968a5
build(deps): bump pydantic from 1.10.7 to 1.10.8 ( #2418 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-30 10:45:13 +02:00
dependabot[bot]
858698f7cd
build(deps): bump botocore from 1.29.138 to 1.29.142 ( #2419 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-30 09:42:19 +02:00
dependabot[bot]
d104f6f8fc
build(deps-dev): bump coverage from 7.2.5 to 7.2.7 ( #2422 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-30 07:52:01 +02:00
Sergio Garcia
3ecf0d3230
chore(regions_update): Changes in regions for AWS services. ( #2414 )
2023-05-29 07:20:44 +02:00
Sergio Garcia
6e4131fee4
fix(ecr): handle LifecyclePolicyNotFoundException ( #2411 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-05-26 17:15:49 +02:00
Sergio Garcia
41fa6bc8ed
chore(regions_update): Changes in regions for AWS services. ( #2413 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-26 13:02:37 +02:00
Sergio Garcia
58a29bf058
fix(codebuild): handle FAIL in codebuild_project_user_controlled_buildspec ( #2410 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-05-25 13:30:01 +02:00
Sergio Garcia
7dac17de18
chore(regions_update): Changes in regions for AWS services. ( #2409 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-25 11:51:32 +02:00
Toni de la Fuente
799d7de182
fix: typo in README.md ( #2407 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-05-24 16:55:49 +02:00
Pedro Martín
735af02f59
feat(new_security_framework): AWS Well Architected Framework security pillar ( #2382 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-05-24 16:38:32 +02:00
Sergio Garcia
ad3f3799fa
fix(typo): typo in README.md ( #2406 )
2023-05-24 14:22:58 +02:00
Sergio Garcia
5f97df015e
chore(release): change release version to 3.5.3 ( #2405 )
2023-05-24 13:56:53 +02:00
Toni de la Fuente
ff18fd2c38
chore(docs): add summary table to README.md ( #2402 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-05-24 13:56:17 +02:00
Jit
3ab0cd02df
feat(checks-gcp): Include 4 new checks covering GCP CIS ( #2376 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-05-24 12:10:43 +02:00
Sergio Garcia
c31072f42f
chore(regions_update): Changes in regions for AWS services. ( #2403 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-24 11:59:15 +02:00
Sergio Garcia
c01c59023a
fix(ClientError): handle ClientErrors in DynamoDB and Directory Service ( #2400 )
2023-05-24 11:50:08 +02:00
Sergio Garcia
4329aac377
chore(quick-inventory): send quick inventory to output bucket ( #2399 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-05-24 11:48:49 +02:00
Sergio Garcia
c10b31e9d0
fix(categories): remove empty categories from metadata ( #2401 )
2023-05-24 10:44:51 +02:00
kij
71a789c0b4
fix(OSError): handle different OSErrors ( #2398 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-05-23 17:16:17 +02:00
Sergio Garcia
deb9847e2b
fix(route53_dangling_ip_subdomain_takeover): notify only IPs with AWS IP Ranges ( #2396 )
2023-05-23 16:35:13 +02:00
Pepe Fagoaga
9e9e7e1e96
fix(aws): Handle unique map keys ( #2390 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-05-23 15:54:22 +02:00
Sergio Garcia
d34e0341e2
chore(regions_update): Changes in regions for AWS services. ( #2392 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-23 12:28:38 +02:00
Sergio Garcia
aec254b05a
fix(inspector2): fix active findings count ( #2395 )
2023-05-23 12:26:09 +02:00
dependabot[bot]
f8b420047a
build(deps): bump boto3 from 1.26.125 to 1.26.138 ( #2389 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-23 11:15:42 +02:00
dependabot[bot]
7e6e4c0bc6
build(deps): bump shodan from 1.29.0 to 1.29.1 ( #2385 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-23 10:56:50 +02:00
dependabot[bot]
71fb59943c
build(deps): bump requests from 2.30.0 to 2.31.0 ( #2388 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-23 10:25:28 +02:00
dependabot[bot]
34419d0ca1
build(deps): bump azure-identity from 1.12.0 to 1.13.0 ( #2386 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-23 10:22:05 +02:00
dependabot[bot]
475a36f0d7
build(deps-dev): bump moto from 4.1.9 to 4.1.10 ( #2384 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-23 09:52:18 +02:00
Kevin Pullin
1234c1e7e2
fix(allowlist) - tags parameter is a string, not a list ( #2375 )
2023-05-23 09:51:50 +02:00
dependabot[bot]
a4a400facf
build(deps): bump botocore from 1.29.134 to 1.29.138 ( #2383 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-23 07:52:47 +02:00
Sergio Garcia
ed2ca4d896
chore(regions_update): Changes in regions for AWS services. ( #2378 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-19 11:36:08 +02:00
Pepe Fagoaga
ce42e4d1cd
fix(pypi-release): Push version change to the branch ( #2374 )
2023-05-18 18:46:11 +02:00
Sergio Garcia
b048128e77
chore(release): release version 3.5.2 ( #2373 )
2023-05-18 17:04:18 +02:00
Sergio Garcia
635c257502
fix(ssm incidents): check if service available in aws partition ( #2372 )
2023-05-18 16:44:52 +02:00
Pepe Fagoaga
58a38c08d7
docs: format regions-and-partitions ( #2371 )
2023-05-18 16:35:54 +02:00
Pepe Fagoaga
8fbee7737b
fix(resource_not_found): Handle error ( #2370 )
2023-05-18 16:26:08 +02:00
Pepe Fagoaga
e84f5f184e
fix(sts): Use the right region to validate credentials ( #2349 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-05-18 15:51:57 +02:00
Sergio Garcia
0bd26b19d7
chore(regions_update): Changes in regions for AWS services. ( #2368 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-18 11:17:28 +02:00
Sergio Garcia
64f82d5d51
chore(regions_update): Changes in regions for AWS services. ( #2366 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-17 11:52:16 +02:00
Sergio Garcia
f63ff994ce
fix(action): solve pypi-release action creating the release branch ( #2364 )
2023-05-16 13:32:46 +02:00
Sergio Garcia
a10ee43271
release: 3.5.1 ( #2363 )
2023-05-16 11:42:08 +02:00
Sergio Garcia
54ed29e08d
fix(route53): handle empty Records in Zones ( #2351 )
2023-05-16 10:51:43 +02:00
dependabot[bot]
cc097e7a3f
build(deps-dev): bump docker from 6.1.1 to 6.1.2 ( #2360 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-16 09:39:24 +02:00
dependabot[bot]
5de92ada43
build(deps): bump mkdocs-material from 9.1.8 to 9.1.12 ( #2359 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-16 09:24:39 +02:00
dependabot[bot]
0c546211cf
build(deps-dev): bump pytest-xdist from 3.2.1 to 3.3.0 ( #2358 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-16 08:09:55 +02:00
dependabot[bot]
4dc5a3a67c
build(deps): bump botocore from 1.29.125 to 1.29.134 ( #2357 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-16 07:51:19 +02:00
dependabot[bot]
c51b226ceb
build(deps): bump shodan from 1.28.0 to 1.29.0 ( #2356 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-16 07:34:51 +02:00
dependabot[bot]
0a5ca6cf74
build(deps): bump pymdown-extensions from 9.11 to 10.0 ( #2355 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-16 07:33:56 +02:00
Sergio Garcia
96957219e4
chore(regions_update): Changes in regions for AWS services. ( #2353 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-16 07:32:41 +02:00
Sergio Garcia
32b7620db3
chore(regions_update): Changes in regions for AWS services. ( #2350 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-12 11:37:53 +02:00
Sergio Garcia
347f65e089
chore(release): 3.5.0 ( #2346 )
2023-05-11 17:42:46 +02:00
Sergio Garcia
16628a427e
fix(README): update Architecture image and PyPi links ( #2345 )
2023-05-11 17:29:17 +02:00
Sergio Garcia
ed16034a25
fix(README): order providers alphbetically ( #2344 )
2023-05-11 16:30:04 +02:00
Pepe Fagoaga
0c5f144e41
fix(poetry): Skip updates during pre-commit ( #2342 )
2023-05-11 12:17:21 +02:00
Sergio Garcia
acc7d6e7dc
chore(regions_update): Changes in regions for AWS services. ( #2341 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-11 11:41:39 +02:00
Sergio Garcia
84b4139052
chore(iam): add new permissions ( #2339 )
2023-05-11 11:35:32 +02:00
Sergio Garcia
9943643958
fix(s3): improve error handling ( #2337 )
2023-05-10 16:43:06 +02:00
Pepe Fagoaga
9ceaefb663
fix(access-analyzer): Handle ResourceNotFoundException ( #2336 )
2023-05-10 15:44:14 +02:00
Gabriel Soltz
ec03ea5bc1
feat(workspaces): New check workspaces_vpc_2private_1public_subnets_nat ( #2286 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: n4ch04 <nachor1992@gmail.com >
2023-05-10 15:40:42 +02:00
Sergio Garcia
5855633c1f
fix(resourceexplorer2): add resource id ( #2335 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-05-10 14:48:34 +02:00
Pedro Martín
a53bc2bc2e
feat(rds): new check rds_instance_deprecated_engine_version ( #2298 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-05-10 14:48:12 +02:00
Sergio Garcia
88445820ed
feat(slack): add Slack App integration ( #2305 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-05-10 13:38:28 +02:00
Sergio Garcia
044ed3ae98
chore(regions_update): Changes in regions for AWS services. ( #2334 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-10 13:30:24 +02:00
Pepe Fagoaga
6f48012234
fix(ecr): Refactor service ( #2302 )
...
Co-authored-by: Gabriel Soltz <thegaby@gmail.com >
Co-authored-by: Kay Agahd <kagahd@users.noreply.github.com >
Co-authored-by: Nacho Rivera <nachor1992@gmail.com >
Co-authored-by: Kevin Pullin <kevin.pullin@gmail.com >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-05-09 17:04:21 +02:00
Sergio Garcia
d344318dd4
feat(allowlist): allowlist a specific service ( #2331 )
2023-05-09 15:43:04 +02:00
Sergio Garcia
6273dd3d83
chore(regions_update): Changes in regions for AWS services. ( #2330 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-09 12:21:07 +02:00
dependabot[bot]
0f3f3cbffd
build(deps-dev): bump moto from 4.1.8 to 4.1.9 ( #2328 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-05-09 11:38:41 +02:00
Pepe Fagoaga
3244123b21
fix(cloudfront_distributions_https_enabled): Add default case ( #2329 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-05-09 11:09:18 +02:00
dependabot[bot]
cba2ee3622
build(deps): bump boto3 from 1.26.115 to 1.26.125 ( #2327 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-09 08:48:15 +02:00
dependabot[bot]
25ed925df5
build(deps-dev): bump docker from 6.0.1 to 6.1.1 ( #2326 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-09 08:22:03 +02:00
dependabot[bot]
8c5bd60bab
build(deps-dev): bump pylint from 2.17.3 to 2.17.4 ( #2325 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-09 07:59:21 +02:00
dependabot[bot]
c5510556a7
build(deps): bump mkdocs from 1.4.2 to 1.4.3 ( #2324 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-09 07:38:43 +02:00
Sergio Garcia
bbcfca84ef
fix(trustedadvisor): avoid not_available checks ( #2323 )
2023-05-08 17:55:31 +02:00
Sergio Garcia
1260e94c2a
fix(cloudtrail): handle InsightNotEnabledException error ( #2322 )
2023-05-08 16:06:13 +02:00
Pepe Fagoaga
8a02574303
fix(sagemaker): Handle ValidationException ( #2321 )
2023-05-08 14:52:28 +02:00
Pepe Fagoaga
c930f08348
fix(emr): Handle InvalidRequestException ( #2320 )
2023-05-08 14:52:12 +02:00
Pepe Fagoaga
5204acb5d0
fix(iam): Handle ListRoleTags and policy errors ( #2319 )
2023-05-08 14:42:23 +02:00
Sergio Garcia
784aaa98c9
feat(iam): add iam_role_cross_account_readonlyaccess_policy check ( #2312 )
2023-05-08 13:27:51 +02:00
Sergio Garcia
745e2494bc
chore(docs): improve GCP docs ( #2318 )
2023-05-08 13:26:23 +02:00
Sergio Garcia
c00792519d
chore(docs): improve GCP docs ( #2318 )
2023-05-08 13:26:02 +02:00
Sergio Garcia
142fe5a12c
chore(regions_update): Changes in regions for AWS services. ( #2315 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-08 12:40:31 +02:00
Sergio Garcia
5b127f232e
fix(typo): typo in backup_vaults_exist check title ( #2317 )
2023-05-08 12:29:08 +02:00
Kevin Pullin
c22bf01003
feat(allowlist): Support regexes in Tags to allow "or"-like conditional matching ( #2300 )
...
Co-authored-by: Kevin Pullin <kevinp@nexttrucking.com >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-05-05 14:56:27 +02:00
Nacho Rivera
05e4911d6f
fix(vpc services): list to dicts in vpc and subnets ( #2310 )
2023-05-04 15:35:02 +02:00
Nacho Rivera
9b551ef0ba
feat(pre-commit): added trufflehog to pre-commit ( #2311 )
2023-05-04 15:33:11 +02:00
Sergio Garcia
56a8bb2349
chore(regions_update): Changes in regions for AWS services. ( #2309 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-04 12:30:10 +02:00
Pepe Fagoaga
8503c6a64d
fix(client_error): Handle errors ( #2308 )
2023-05-04 11:06:24 +02:00
Pepe Fagoaga
820f18da4d
release: 3.4.1 ( #2303 )
2023-05-03 19:24:17 +02:00
Kay Agahd
51a2432ebf
fix(typo): remove redundant lines ( #2307 )
2023-05-03 19:23:48 +02:00
Gabriel Soltz
6639534e97
feat(ssmincidents): Use regional_client region instead of audit_profile region ( #2306 )
2023-05-03 19:22:30 +02:00
Gabriel Soltz
0621577c7d
fix(backup): Return [] when None AdvancedBackupSettings ( #2304 )
2023-05-03 17:10:53 +02:00
Sergio Garcia
26a507e3db
feat(route53): add route53_dangling_ip_subdomain_takeover check ( #2288 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-05-03 11:47:36 +02:00
Sergio Garcia
244b540fe0
fix(s3): handle NoSuchBucket error ( #2289 )
2023-05-03 09:55:19 +02:00
Gabriel Soltz
030ca4c173
fix(backups): change severity and only check report_plans if plans exists ( #2291 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-05-03 09:00:15 +02:00
dependabot[bot]
88a2810f29
build(deps): bump botocore from 1.29.115 to 1.29.125 ( #2301 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-03 08:55:14 +02:00
dependabot[bot]
9164ee363a
build(deps-dev): bump coverage from 7.2.3 to 7.2.5 ( #2297 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-03 08:38:03 +02:00
dependabot[bot]
4cd47fdcc5
build(deps): bump google-api-python-client from 2.84.0 to 2.86.0 ( #2296 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-03 08:11:36 +02:00
dependabot[bot]
708852a3cb
build(deps): bump mkdocs-material from 9.1.6 to 9.1.8 ( #2294 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-05-03 07:49:52 +02:00
Sergio Garcia
4a93bdf3ea
chore(regions_update): Changes in regions for AWS services. ( #2293 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-05-03 07:49:27 +02:00
Gabriel Soltz
22e7d2a811
feat(Organizations): New check organizations_tags_policies_enabled_and_attached ( #2287 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-28 16:14:08 +02:00
Sergio Garcia
93eca1dff2
chore(regions_update): Changes in regions for AWS services. ( #2290 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-28 13:19:46 +02:00
Gabriel Soltz
9afe7408cd
feat(FMS): New Service FMS and Check fms_accounts_compliant ( #2259 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: Nacho Rivera <nacho@verica.io >
2023-04-28 11:47:55 +02:00
Sergio Garcia
5dc2347a25
docs(security hub): improve security hub docs ( #2285 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-27 16:22:49 +02:00
Pepe Fagoaga
e3a0124b10
fix(opensearch): Handle invalid JSON policy ( #2262 )
2023-04-27 12:05:43 +02:00
Gabriel Soltz
16af89c281
feat(autoscaling): new check autoscaling_group_multiple_az ( #2273 )
2023-04-26 15:10:04 +02:00
Sergio Garcia
621e4258c8
feat(s3): add s3_bucket_object_lock check ( #2274 )
2023-04-26 15:04:45 +02:00
Sergio Garcia
ac6272e739
fix(rds): check configurations for DB instances at cluster level ( #2277 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-26 13:51:07 +02:00
Sergio Garcia
6e84f517a9
fix(apigateway2): correct paginator name ( #2283 )
2023-04-26 13:43:15 +02:00
Pepe Fagoaga
fdbdb3ad86
fix(sns_topics_not_publicly_accessible): Change PASS behaviour ( #2282 )
2023-04-26 12:51:51 +02:00
Sergio Garcia
7adcf5ca46
chore(regions_update): Changes in regions for AWS services. ( #2280 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-26 11:59:34 +02:00
Gabriel Soltz
fe6716cf76
feat(NetworkFirewall): New Service and Check ( #2261 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-04-26 11:58:11 +02:00
dependabot[bot]
3c2096db68
build(deps): bump azure-mgmt-security from 4.0.0 to 5.0.0 ( #2270 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-25 11:59:30 +02:00
Pepe Fagoaga
58cad1a6b3
fix(log_group_retention): handle log groups that never expire ( #2272 )
2023-04-25 10:45:43 +02:00
dependabot[bot]
662e67ff16
build(deps): bump boto3 from 1.26.105 to 1.26.115 ( #2269 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-25 10:35:15 +02:00
dependabot[bot]
8d577b872f
build(deps-dev): bump moto from 4.1.7 to 4.1.8 ( #2268 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-25 10:12:25 +02:00
dependabot[bot]
b55290f3cb
build(deps-dev): bump pylint from 2.17.2 to 2.17.3 ( #2267 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-25 09:20:15 +02:00
dependabot[bot]
e8d3eb7393
build(deps-dev): bump pytest from 7.3.0 to 7.3.1 ( #2266 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-25 08:03:45 +02:00
Sergio Garcia
47fa16e35f
chore(test): add CloudWatch and Logs tests ( #2264 )
2023-04-24 17:05:05 +02:00
Gabriel Soltz
a87f769b85
feat(DRS): New DRS Service and Checks ( #2257 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-24 14:22:22 +02:00
Sergio Garcia
8e63fa4594
fix(version): execute check current version function only when -v ( #2263 )
2023-04-24 12:45:59 +02:00
Gabriel Soltz
63501a0d59
feat(inspector2): New Service and Check ( #2250 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-04-24 12:15:16 +02:00
Sergio Garcia
828fb37ca8
chore(regions_update): Changes in regions for AWS services. ( #2258 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-24 08:32:40 +02:00
Sergio Garcia
40f513d3b6
chore(regions_update): Changes in regions for AWS services. ( #2251 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-21 12:10:15 +02:00
Sergio Garcia
f0b8b66a75
chore(test): add rds_instance_transport_encrypted test ( #2252 )
2023-04-21 12:09:47 +02:00
Sergio Garcia
d51cdc068b
fix(iam_role_cross_service_confused_deputy_prevention): avoid service linked roles ( #2249 )
2023-04-21 10:42:05 +02:00
Sergio Garcia
f8b382e480
fix(version): update version to 3.4.0 ( #2247 )
2023-04-20 17:05:18 +02:00
Ronen Atias
1995f43b67
fix(redshift): correct description in redshift_cluster_automatic_upgrades ( #2246 )
2023-04-20 15:19:49 +02:00
Sergio Garcia
69e0392a8b
fix(rds): exclude Aurora in rds_instance_transport_encrypted check ( #2245 )
2023-04-20 14:28:12 +02:00
Sergio Garcia
1f6319442e
chore(docs): improve GCP docs ( #2242 )
2023-04-20 14:15:28 +02:00
Sergio Garcia
559c4c0c2c
chore(regions_update): Changes in regions for AWS services. ( #2243 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-20 11:43:02 +02:00
Sergio Garcia
feeb5b58d9
fix(checks): improve --list-checks function ( #2240 )
2023-04-19 17:00:20 +02:00
Sergio Garcia
7a00f79a56
fix(iam_policy_no_administrative_privileges): check attached policies and AWS-Managed ( #2200 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-19 14:34:53 +02:00
Sergio Garcia
10d744704a
fix(errors): solve ECR and CodeArtifact errors ( #2239 )
2023-04-19 13:27:19 +02:00
Gabriel Soltz
eee35f9cc3
feat(ssmincidents): New Service and Checks ( #2219 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-19 12:26:20 +02:00
Gabriel Soltz
b3656761eb
feat(check): New VPC checks ( #2218 )
2023-04-19 12:01:12 +02:00
Sergio Garcia
7b5fe34316
feat(html): add html to Azure and GCP ( #2181 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-18 16:13:57 +02:00
Sergio Garcia
4536780a19
feat(check): new check ecr_registry_scan_images_on_push_enabled ( #2237 )
2023-04-18 15:45:21 +02:00
Sergio Garcia
05d866e6b3
chore(regions_update): Changes in regions for AWS services. ( #2236 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-18 13:43:15 +02:00
dependabot[bot]
0d138cf473
build(deps): bump botocore from 1.29.105 to 1.29.115 ( #2233 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-18 13:42:50 +02:00
dependabot[bot]
dbe539ac80
build(deps): bump boto3 from 1.26.90 to 1.26.105 ( #2232 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-18 12:35:33 +02:00
dependabot[bot]
665a39d179
build(deps): bump azure-storage-blob from 12.15.0 to 12.16.0 ( #2230 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-18 11:02:39 +02:00
dependabot[bot]
5fd5d8c8c5
build(deps-dev): bump coverage from 7.2.2 to 7.2.3 ( #2234 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-18 08:03:44 +02:00
dependabot[bot]
2832b4564c
build(deps-dev): bump moto from 4.1.6 to 4.1.7 ( #2231 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-18 07:40:50 +02:00
dependabot[bot]
d4369a64ee
build(deps): bump azure-mgmt-security from 3.0.0 to 4.0.0 ( #2141 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-17 13:22:09 +02:00
Sergio Garcia
81fa1630b7
chore(regions_update): Changes in regions for AWS services. ( #2227 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-17 11:18:41 +02:00
Sergio Garcia
a1c4b35205
chore(regions_update): Changes in regions for AWS services. ( #2217 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-17 11:16:22 +02:00
Sergio Garcia
5e567f3e37
fix(iam tests): mock audit_info object ( #2226 )
...
Co-authored-by: n4ch04 <nachor1992@gmail.com >
2023-04-17 11:14:48 +02:00
Pepe Fagoaga
c4757684c1
fix(test): Mock audit into in SecurityHub CodeBuild ( #2225 )
2023-04-17 11:14:36 +02:00
Sergio Garcia
a55a6bf94b
fix(test): Mock audit info in EC2 ( #2224 )
2023-04-17 10:54:56 +02:00
Pepe Fagoaga
fa1792eb77
fix(test): Mock audit into in CloudWatch ( #2223 )
2023-04-17 10:54:01 +02:00
Nacho Rivera
93a8f6e759
fix(rds tests): mocked audit_info object ( #2222 )
2023-04-17 10:06:25 +02:00
Nacho Rivera
4a614855d4
fix(s3 tests): audit_info object mocked ( #2221 )
2023-04-17 10:04:28 +02:00
Pepe Fagoaga
8bdd47f912
fix(test): Mock audit info in KMS ( #2215 )
2023-04-14 14:34:55 +02:00
Nacho Rivera
f9e82abadc
fix(vpc tests): mock current_audit_info ( #2214 )
2023-04-14 14:31:34 +02:00
Gabriel Soltz
428fda81e2
feat(check): New GuardDuty check guardduty_centrally_managed ( #2195 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-14 14:30:51 +02:00
Pepe Fagoaga
29c9ad602d
fix(test): Mock audit into in Macie ( #2213 )
2023-04-14 14:29:19 +02:00
Pepe Fagoaga
44458e2a97
fix(test): Mock audit info codeartifact-config-ds ( #2210 )
2023-04-14 14:25:45 +02:00
Pepe Fagoaga
861fb1f54b
fix(test): Mock audit into in Glacier ( #2212 )
2023-04-14 14:20:03 +02:00
Pepe Fagoaga
02534f4d55
fix(test): Mock audit info DynamoDB ( #2211 )
2023-04-14 14:19:08 +02:00
Pepe Fagoaga
5532cb95a2
fix(test): Mock audit info in appstream and autoscaling ( #2209 )
2023-04-14 14:06:07 +02:00
Pepe Fagoaga
9176e43fc9
fix(test): Mock audit info API Gateway ( #2208 )
2023-04-14 13:49:38 +02:00
Pepe Fagoaga
cb190f54fc
fix(elb-test): Use a mocked current audit info ( #2207 )
2023-04-14 12:43:08 +02:00
Sergio Garcia
4be2539bc2
fix(resourceexplorer2): solve test and region ( #2206 )
2023-04-14 12:33:52 +02:00
Sergio Garcia
291e2adffa
chore(regions_update): Changes in regions for AWS services. ( #2205 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-14 12:32:58 +02:00
Gabriel Soltz
fa2ec63f45
feat(check): New Check and Service: resourceexplorer2_indexes_found ( #2196 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-04-14 10:18:36 +02:00
Nacho Rivera
946c943457
fix(global services): fixed global services region ( #2203 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-14 09:57:33 +02:00
Pepe Fagoaga
0e50766d6e
fix(test): call cloudtrail_s3_dataevents_write_enabled check ( #2204 )
2023-04-14 09:35:29 +02:00
Sergio Garcia
58a1610ae0
chore(regions_update): Changes in regions for AWS services. ( #2201 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-13 15:53:56 +02:00
Nacho Rivera
06dc21168a
feat(orgs checks region): added region to all orgs checks ( #2202 )
2023-04-13 14:41:18 +02:00
Gabriel Soltz
305b67fbed
feat(check): New check cloudtrail_bucket_requires_mfa_delete ( #2194 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-13 14:18:31 +02:00
Sergio Garcia
4da6d152c3
feat(custom checks): add -x/--checks-folder for custom checks ( #2191 )
2023-04-13 13:44:25 +02:00
Sergio Garcia
25630f1ef5
chore(regions): sort AWS regions ( #2198 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-12 13:24:14 +02:00
Sergio Garcia
9b01e3f1c9
chore(regions_update): Changes in regions for AWS services. ( #2197 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-12 12:53:03 +02:00
Sergio Garcia
99450400eb
chore(regions_update): Changes in regions for AWS services. ( #2189 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-12 10:47:21 +02:00
Gabriel Soltz
2f8a8988d7
feat(checks): New IAM Checks no full access to critical services ( #2183 )
2023-04-12 07:47:21 +02:00
Sergio Garcia
9104d2e89e
fix(kms): handle empty principal error ( #2192 )
2023-04-11 16:59:29 +02:00
Gabriel Soltz
e75022763c
feat(checks): New iam_securityaudit_role_created ( #2182 )
2023-04-11 14:15:39 +02:00
Gabriel Soltz
f0f3fb337d
feat(check): New CloudTrail check cloudtrail_insights_exist ( #2184 )
2023-04-11 13:49:54 +02:00
dependabot[bot]
f7f01a34c2
build(deps): bump google-api-python-client from 2.81.0 to 2.84.0 ( #2188 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-11 12:13:41 +02:00
dependabot[bot]
f9f9ff0cb8
build(deps): bump alive-progress from 3.1.0 to 3.1.1 ( #2187 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-11 08:13:17 +02:00
dependabot[bot]
522ba05ba8
build(deps): bump mkdocs-material from 9.1.5 to 9.1.6 ( #2186 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-11 07:54:41 +02:00
Gabriel Soltz
f4f4093466
feat(backup): New backup service and checks ( #2172 )
...
Co-authored-by: Nacho Rivera <nacho@verica.io >
2023-04-11 07:43:40 +02:00
dependabot[bot]
2e16ab0c2c
build(deps-dev): bump pytest from 7.2.2 to 7.3.0 ( #2185 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-11 07:39:09 +02:00
Sergio Garcia
6f02606fb7
fix(iam): handle no display name error in service account ( #2176 )
2023-04-10 12:06:08 +02:00
Sergio Garcia
df40142b51
chore(regions_update): Changes in regions for AWS services. ( #2180 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-10 12:05:48 +02:00
Sergio Garcia
cc290d488b
chore(regions_update): Changes in regions for AWS services. ( #2178 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-10 12:05:30 +02:00
Nacho Rivera
64328218fc
feat(banner): azure credential banner ( #2179 )
2023-04-10 09:58:28 +02:00
Sergio Garcia
8d1356a085
fix(logging): add default resource id when no resources ( #2177 )
2023-04-10 08:02:40 +02:00
Sergio Garcia
4f39dd0f73
fix(version): handle request response property ( #2175 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-05 15:17:30 +02:00
Pepe Fagoaga
54ffc8ae45
chore(release): 3.3.4 ( #2174 )
2023-04-05 14:18:07 +02:00
Sergio Garcia
78ab1944bd
chore(regions_update): Changes in regions for AWS services. ( #2173 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-05 12:32:25 +02:00
dependabot[bot]
434cf94657
build(deps-dev): bump moto from 4.1.5 to 4.1.6 ( #2164 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-04-05 12:31:58 +02:00
Nacho Rivera
dcb893e230
fix(elbv2 desync check): Mixed elbv2 desync and smuggling ( #2171 )
2023-04-05 11:36:06 +02:00
Sergio Garcia
ce4fadc378
chore(regions_update): Changes in regions for AWS services. ( #2170 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-05 08:47:19 +02:00
dependabot[bot]
5683d1b1bd
build(deps): bump botocore from 1.29.100 to 1.29.105 ( #2163 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-04 13:24:03 +02:00
dependabot[bot]
0eb88d0c10
build(deps): bump mkdocs-material from 9.1.4 to 9.1.5 ( #2162 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-04 11:07:41 +02:00
Nacho Rivera
eb1367e54d
fix(pipeline build): fixed wording when build and push ( #2169 )
2023-04-04 10:21:28 +02:00
dependabot[bot]
33a4786206
build(deps-dev): bump pylint from 2.17.0 to 2.17.2 ( #2161 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-04-04 09:35:10 +02:00
Pepe Fagoaga
8c6606ad95
fix(dax): Call list_tags using the cluster ARN ( #2167 )
2023-04-04 09:30:36 +02:00
Pepe Fagoaga
cde9519a76
fix(iam): Handle LimitExceededException when calling generate_credential_report ( #2168 )
2023-04-04 09:29:27 +02:00
Pepe Fagoaga
7b2e0d79cb
fix(cloudformation): Handle ValidationError ( #2166 )
2023-04-04 09:28:11 +02:00
Pepe Fagoaga
5b0da8e92a
fix(rds): Handle DBSnapshotNotFound ( #2165 )
2023-04-04 09:27:36 +02:00
Michael Göhler
0126d2f77c
fix(secretsmanager_automatic_rotation_enabled): Improve description for Secrets Manager secret rotation ( #2156 )
2023-04-03 11:01:29 +02:00
Sergio Garcia
0b436014c9
chore(regions_update): Changes in regions for AWS services. ( #2159 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-04-03 11:01:15 +02:00
Igor Ceron
2cb7f223ed
fix(docs): check extra_742 name adjusted in the V2 to V3 mapping ( #2154 )
2023-03-31 12:54:13 +02:00
Sergio Garcia
eca551ed98
chore(regions_update): Changes in regions for AWS services. ( #2155 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-31 12:53:49 +02:00
Gabriel Soltz
608fd92861
feat(new_checks): New AWS Organizations related checks ( #2133 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-03-30 17:36:23 +02:00
Sergio Garcia
e37d8fe45f
chore(release): update Prowler Version to 3.3.2 ( #2150 )
...
Co-authored-by: github-actions <noreply@github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-03-30 11:33:33 +02:00
Sergio Garcia
4cce91ec97
chore(regions_update): Changes in regions for AWS services. ( #2153 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-30 11:29:00 +02:00
Pepe Fagoaga
72fdde35dc
fix(pypi): Set base branch when updating release version ( #2152 )
2023-03-30 10:59:58 +02:00
Pepe Fagoaga
d425187778
fix(pypi): Build from release branch ( #2151 )
2023-03-30 10:14:49 +02:00
Sergio Garcia
e419aa1f1a
chore(regions_update): Changes in regions for AWS services. ( #2149 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-29 11:45:35 +02:00
Pepe Fagoaga
5506547f7f
fix(ssm): Handle ValidationException when retrieving documents ( #2146 )
2023-03-29 09:16:52 +02:00
Nacho Rivera
568ed72b3e
fix(audit_info): azure subscriptions parsing error ( #2147 )
2023-03-29 09:15:53 +02:00
Nacho Rivera
e8cc0e6684
fix(delete check): delete check ec2_securitygroup_in_use_without_ingress_filtering ( #2148 )
2023-03-29 09:13:43 +02:00
Sergio Garcia
4331f69395
chore(regions_update): Changes in regions for AWS services. ( #2145 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-28 13:08:02 +02:00
dependabot[bot]
7cc67ae7cb
build(deps): bump botocore from 1.29.90 to 1.29.100 ( #2142 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-28 13:07:23 +02:00
dependabot[bot]
244b3438fc
build(deps): bump mkdocs-material from 9.1.3 to 9.1.4 ( #2140 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-28 12:39:00 +02:00
Nacho Rivera
1a741f7ca0
fix(azure output): change default values of audit identity metadata ( #2144 )
2023-03-28 10:42:47 +02:00
dependabot[bot]
1447800e2b
build(deps): bump pydantic from 1.10.6 to 1.10.7 ( #2139 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-28 10:41:09 +02:00
Sergio Garcia
f968fe7512
fix(readme): add GCP provider to README introduction ( #2143 )
2023-03-28 10:40:56 +02:00
dependabot[bot]
0a2349fad7
build(deps): bump alive-progress from 3.0.1 to 3.1.0 ( #2138 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-28 09:55:18 +02:00
Sergio Garcia
941b8cbc1e
chore(docs): Developer Guide - how to create a new check ( #2137 )
2023-03-27 20:20:13 +02:00
Pepe Fagoaga
3b7b16acfd
fix(resource_not_found): Handle error ( #2136 )
2023-03-27 17:27:50 +02:00
Nacho Rivera
fbc7bb68fc
feat(defender service): retrieving key dicts with get ( #2129 )
2023-03-27 17:13:11 +02:00
Pepe Fagoaga
0d16880596
fix(s3): handle if ignore_public_acls is None ( #2128 )
2023-03-27 17:00:20 +02:00
Sergio Garcia
3b5218128f
fix(brew): move brew formula action to the bottom ( #2135 )
2023-03-27 11:24:28 +02:00
Pepe Fagoaga
cb731bf1db
fix(aws_provider): Fix assessment session name ( #2132 )
2023-03-25 00:11:16 +01:00
Sergio Garcia
7c4d6eb02d
fix(gcp): handle error when Project ID is None ( #2130 )
2023-03-24 18:30:33 +01:00
Sergio Garcia
c14e7fb17a
feat(gcp): add Google Cloud provider with 43 checks ( #2125 )
2023-03-24 13:38:41 +01:00
Sergio Garcia
fe57811bc5
chore(regions_update): Changes in regions for AWS services. ( #2126 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-24 10:18:33 +01:00
Sergio Garcia
e073b48f7d
chore(regions_update): Changes in regions for AWS services. ( #2123 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-23 15:58:47 +01:00
Ben Nugent
a9df609593
fix(quickinventory): AttributError when creating inventory table ( #2122 )
2023-03-23 10:22:14 +01:00
Sergio Garcia
6c3db9646e
fix(output bucket): solve IsADirectoryError using compliance flag ( #2121 )
2023-03-22 13:38:41 +01:00
Sergio Garcia
ff9c4c717e
chore(regions_update): Changes in regions for AWS services. ( #2120 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-22 12:18:44 +01:00
Sergio Garcia
182374b46f
docs: improve reporting documentation ( #2119 )
2023-03-22 10:02:52 +01:00
Sergio Garcia
0871cda526
docs: improve quick inventory section ( #2117 )
2023-03-21 18:09:40 +01:00
Toni de la Fuente
1b47cba37a
docs(developer-guide): added phase 1 of the developer guide ( #1904 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-03-21 15:35:26 +01:00
Pepe Fagoaga
e5bef36905
docs: Remove list severities ( #2116 )
2023-03-21 14:18:07 +01:00
Sergio Garcia
706d723703
chore(version): check latest version ( #2106 )
2023-03-21 11:16:13 +01:00
Sergio Garcia
51eacbfac5
feat(allowlist): add tags filter to allowlist ( #2105 )
2023-03-21 11:14:59 +01:00
dependabot[bot]
5c2a411982
build(deps): bump boto3 from 1.26.86 to 1.26.90 ( #2114 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-21 11:04:26 +01:00
Sergio Garcia
08d65cbc41
chore(regions_update): Changes in regions for AWS services. ( #2115 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-21 11:03:54 +01:00
dependabot[bot]
9d2bf429c1
build(deps): bump mkdocs-material from 9.1.2 to 9.1.3 ( #2113 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-21 10:18:36 +01:00
dependabot[bot]
d34f863bd4
build(deps-dev): bump moto from 4.1.4 to 4.1.5 ( #2111 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-03-21 09:27:44 +01:00
Sergio Garcia
b4abf1c2c7
chore(regions_update): Changes in regions for AWS services. ( #2104 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-21 08:32:26 +01:00
dependabot[bot]
68baaf589e
build(deps-dev): bump coverage from 7.2.1 to 7.2.2 ( #2112 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-21 08:18:47 +01:00
dependabot[bot]
be74e41d84
build(deps-dev): bump openapi-spec-validator from 0.5.5 to 0.5.6 ( #2110 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-21 07:52:50 +01:00
Sergio Garcia
848122b0ec
chore(release): update Prowler Version to 3.3.0 ( #2102 )
...
Co-authored-by: github-actions <noreply@github.com >
2023-03-16 22:30:02 +01:00
Nacho Rivera
0edcb7c0d9
fix(ulimit check): try except when checking ulimit ( #2096 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-03-16 17:39:46 +01:00
Pepe Fagoaga
cc58e06b5e
fix(providers): Move provider's logic outside main ( #2043 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-03-16 17:32:53 +01:00
Sergio Garcia
0d6ca606ea
fix(ec2_securitygroup_allow_wide_open_public_ipv4): correct check title ( #2101 )
2023-03-16 17:25:32 +01:00
Sergio Garcia
75ee93789f
chore(regions_update): Changes in regions for AWS services. ( #2095 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-16 17:14:40 +01:00
Sergio Garcia
05daddafbf
feat(SecurityHub): add compliance details to Security Hub findings ( #2100 )
2023-03-16 17:11:55 +01:00
Nacho Rivera
7bbce6725d
fix(ulimit check): test only when platform is not windows ( #2094 )
2023-03-16 08:38:37 +01:00
Nacho Rivera
789b211586
feat(lambda_cloudtrail check): improved logic and status extended ( #2092 )
2023-03-15 12:32:58 +01:00
Sergio Garcia
826a043748
chore(regions_update): Changes in regions for AWS services. ( #2091 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-15 12:28:03 +01:00
Sergio Garcia
6761048298
fix(cloudwatch): solve inexistent filterPattern error ( #2087 )
2023-03-14 14:46:34 +01:00
Sergio Garcia
738fc9acad
feat(compliance): add compliance field to HTML, CSV and JSON outputs including frameworks and reqs ( #2060 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-03-14 14:20:46 +01:00
Sergio Garcia
43c0540de7
chore(regions_update): Changes in regions for AWS services. ( #2085 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-14 13:11:02 +01:00
Sergio Garcia
2d1c3d8121
fix(emr): solve emr_cluster_publicly_accesible error ( #2086 )
2023-03-14 13:10:21 +01:00
dependabot[bot]
f48a5c650d
build(deps-dev): bump pytest-xdist from 3.2.0 to 3.2.1 ( #2084 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-14 10:21:17 +01:00
dependabot[bot]
66c18eddb8
build(deps): bump botocore from 1.29.86 to 1.29.90 ( #2083 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-14 10:01:23 +01:00
dependabot[bot]
fdd2ee6365
build(deps-dev): bump bandit from 1.7.4 to 1.7.5 ( #2082 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-14 09:03:46 +01:00
dependabot[bot]
c207f60ad8
build(deps): bump pydantic from 1.10.5 to 1.10.6 ( #2081 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-14 08:02:28 +01:00
dependabot[bot]
0eaa95c8c0
build(deps): bump mkdocs-material from 9.1.1 to 9.1.2 ( #2080 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-14 07:48:02 +01:00
Pepe Fagoaga
df2fca5935
fix(bug_report): typo in bug reporting template ( #2078 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-03-13 18:42:34 +01:00
Toni de la Fuente
dcaf5d9c7d
update(docs): update readme with new ECR alias ( #2079 )
2023-03-13 18:07:51 +01:00
Sergio Garcia
0112969a97
fix(compliance): add check to 2.1.5 CIS ( #2077 )
2023-03-13 09:25:51 +01:00
Sergio Garcia
3ec0f3d69c
chore(regions_update): Changes in regions for AWS services. ( #2075 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-13 07:51:13 +01:00
Pepe Fagoaga
5555d300a1
fix(bug_report): Update wording ( #2074 )
2023-03-10 12:21:51 +01:00
Nacho Rivera
8155ef4b60
feat(templates): New versions of issues and fr templates ( #2072 )
2023-03-10 10:32:17 +01:00
Sergio Garcia
a12402f6c8
chore(regions_update): Changes in regions for AWS services. ( #2073 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-10 10:27:29 +01:00
Sergio Garcia
cf28b814cb
fix(ec2): avoid terminated instances ( #2063 )
2023-03-10 08:11:35 +01:00
Pepe Fagoaga
b05f67db19
chore(actions): Missing cache in the PR ( #2067 )
2023-03-09 11:50:49 +01:00
Pepe Fagoaga
260f4659d5
chore(actions): Use GHA cache ( #2066 )
2023-03-09 10:29:16 +01:00
dependabot[bot]
9e700f298c
build(deps-dev): bump pylint from 2.16.4 to 2.17.0 ( #2062 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-08 15:41:22 +01:00
dependabot[bot]
56510734c4
build(deps): bump boto3 from 1.26.85 to 1.26.86 ( #2061 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-08 15:14:18 +01:00
Pepe Fagoaga
3938a4d14e
chore(dependabot): Change to weekly ( #2057 )
2023-03-08 14:41:34 +01:00
Sergio Garcia
fa3b9eeeaf
chore(regions_update): Changes in regions for AWS services. ( #2058 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-08 14:38:56 +01:00
dependabot[bot]
eb9d6fa25c
build(deps): bump botocore from 1.29.85 to 1.29.86 ( #2054 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-08 09:57:44 +01:00
Alex Nelson
b53307c1c2
docs: Corrected spelling mistake in multiacount ( #2056 )
2023-03-08 09:57:08 +01:00
dependabot[bot]
c3fc708a66
build(deps): bump boto3 from 1.26.82 to 1.26.85 ( #2053 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-08 09:03:00 +01:00
Sergio Garcia
b34ffbe6d0
feat(inventory): add tags to quick inventory ( #2051 )
2023-03-07 14:20:50 +01:00
Sergio Garcia
f364315e48
chore(iam): update Prowler permissions ( #2050 )
2023-03-07 14:14:31 +01:00
Sergio Garcia
3ddb5a13a5
fix(ulimit): handle low ulimit OSError ( #2042 )
...
Co-authored-by: Toni de la Fuente <toni@blyx.com >
2023-03-07 13:19:24 +01:00
dependabot[bot]
a24cc399a4
build(deps-dev): bump moto from 4.1.3 to 4.1.4 ( #2045 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-03-07 12:45:50 +01:00
Sergio Garcia
305f4b2688
chore(regions_update): Changes in regions for AWS services. ( #2049 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-07 11:27:28 +01:00
dependabot[bot]
9823171d65
build(deps-dev): bump pylint from 2.16.3 to 2.16.4 ( #2048 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-07 10:11:19 +01:00
dependabot[bot]
4761bd8fda
build(deps): bump mkdocs-material from 9.1.0 to 9.1.1 ( #2047 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-07 09:33:19 +01:00
dependabot[bot]
9c22698723
build(deps-dev): bump pytest from 7.2.1 to 7.2.2 ( #2046 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-07 08:32:19 +01:00
dependabot[bot]
e3892bbcc6
build(deps): bump botocore from 1.29.84 to 1.29.85 ( #2044 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-07 08:18:53 +01:00
Sergio Garcia
629b156f52
fix(quick inventory): add non-tagged s3 buckets to inventory ( #2041 )
2023-03-06 16:55:03 +01:00
Gary Mclean
c45dd47d34
fix(windows-path): --list-services bad split ( #2028 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-03-06 14:00:07 +01:00
Sergio Garcia
ef8831f784
feat(quick_inventory): add regions to inventory table ( #2026 )
2023-03-06 13:41:30 +01:00
Sergio Garcia
c5a42cf5de
feat(rds_instance_transport_encrypted): add new check ( #1963 )
...
Co-authored-by: Toni de la Fuente <toni@blyx.com >
2023-03-06 13:18:41 +01:00
dependabot[bot]
90ebbfc20f
build(deps-dev): bump pylint from 2.16.2 to 2.16.3 ( #2038 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-06 13:18:26 +01:00
Fennerr
17cd0dc91d
feat(new_check): cloudwatch_log_group_no_secrets_in_logs ( #1980 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: Jeffrey Souza <JeffreySouza@users.noreply.github.com >
2023-03-06 12:16:46 +01:00
dependabot[bot]
fa1f42af59
build(deps): bump botocore from 1.29.82 to 1.29.84 ( #2037 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-06 12:14:48 +01:00
Sergio Garcia
f45ea1ab53
fix(check): change cloudformation_outputs_find_secrets name ( #2027 )
2023-03-06 12:11:58 +01:00
Sergio Garcia
0dde3fe483
chore(poetry): add poetry checks to pre-commit ( #2040 )
2023-03-06 11:44:04 +01:00
dependabot[bot]
277dc7dd09
build(deps-dev): bump freezegun from 1.2.1 to 1.2.2 ( #2033 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-06 11:06:23 +01:00
dependabot[bot]
3215d0b856
build(deps-dev): bump coverage from 7.1.0 to 7.2.1 ( #2032 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-06 09:55:19 +01:00
dependabot[bot]
0167d5efcd
build(deps): bump mkdocs-material from 9.0.15 to 9.1.0 ( #2031 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-06 09:15:44 +01:00
Sergio Garcia
b48ac808a6
chore(regions_update): Changes in regions for AWS services. ( #2035 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-03 10:14:20 +01:00
dependabot[bot]
616524775c
build(deps-dev): bump docker from 6.0.0 to 6.0.1 ( #2030 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-03 10:02:11 +01:00
dependabot[bot]
5832849b11
build(deps): bump boto3 from 1.26.81 to 1.26.82 ( #2029 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-03 09:43:43 +01:00
Sergio Garcia
467c5d01e9
fix(cloudtrail): list tags only in owned trails ( #2025 )
2023-03-02 16:16:19 +01:00
Sergio Garcia
24711a2f39
feat(tags): add resource tags to S-W services ( #2020 )
2023-03-02 14:21:05 +01:00
Nacho Rivera
24e8286f35
feat(): 7 chars in dispatch commit message ( #2024 )
2023-03-02 14:20:31 +01:00
Sergio Garcia
e8a1378ad0
feat(tags): add resource tags to G-R services ( #2009 )
2023-03-02 13:56:22 +01:00
Sergio Garcia
76bb418ea9
feat(tags): add resource tags to E services ( #2007 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-03-02 13:55:26 +01:00
Nacho Rivera
cd8770a3e3
fix(actions): fixed dispatch commit message ( #2023 )
2023-03-02 13:55:03 +01:00
Sergio Garcia
da834c0935
feat(tags): add resource tags to C-D services ( #2003 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-03-02 13:14:53 +01:00
Nacho Rivera
024ffb1117
fix(head): Pass head commit to dispatch action ( #2022 )
2023-03-02 12:06:41 +01:00
Nacho Rivera
eed7ab9793
fix(iam): refactor IAM service ( #2010 )
2023-03-02 11:16:05 +01:00
Sergio Garcia
032feb343f
feat(tags): add resource tags in A services ( #1997 )
2023-03-02 10:59:49 +01:00
Pepe Fagoaga
eabccba3fa
fix(actions): push should be true ( #2019 )
2023-03-02 10:37:29 +01:00
Nacho Rivera
d86d656316
feat(dispatch): add tag info to dispatch ( #2002 )
2023-03-02 10:31:30 +01:00
Sergio Garcia
fa73c91b0b
chore(regions_update): Changes in regions for AWS services. ( #2018 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-02 10:23:59 +01:00
Pepe Fagoaga
2eee50832d
fix(actions): Stop using github storage ( #2016 )
2023-03-02 10:23:04 +01:00
Toni de la Fuente
b40736918b
docs(install): Add brew and github installation to quick start ( #1991 )
2023-03-02 10:21:57 +01:00
Sergio Garcia
ffb1a2e30f
chore(regions_update): Changes in regions for AWS services. ( #1995 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-02 10:21:41 +01:00
Sergio Garcia
d6c3c0c6c1
feat(s3_bucket_level_public_access_block): new check ( #1953 )
2023-03-02 10:18:27 +01:00
dependabot[bot]
ee251721ac
build(deps): bump botocore from 1.29.81 to 1.29.82 ( #2015 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-02 09:53:24 +01:00
dependabot[bot]
fdbb9195d5
build(deps-dev): bump moto from 4.1.2 to 4.1.3 ( #2014 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-02 09:23:48 +01:00
dependabot[bot]
c68b08d9af
build(deps-dev): bump black from 22.10.0 to 22.12.0 ( #2013 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-02 08:59:18 +01:00
dependabot[bot]
3653bbfca0
build(deps-dev): bump flake8 from 5.0.4 to 6.0.0 ( #2012 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-02 08:32:41 +01:00
dependabot[bot]
05c7cc7277
build(deps): bump boto3 from 1.26.80 to 1.26.81 ( #2011 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-02 07:54:33 +01:00
Sergio Garcia
5670bf099b
chore(regions_update): Changes in regions for AWS services. ( #2006 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-03-01 10:16:58 +01:00
Nacho Rivera
0c324b0f09
fix(awslambdacloudtrail): include advanced event and all lambdas in check ( #1994 )
2023-03-01 10:04:06 +01:00
dependabot[bot]
968557e38e
build(deps): bump botocore from 1.29.80 to 1.29.81 ( #2005 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-03-01 08:59:54 +01:00
dependabot[bot]
882cdebacb
build(deps): bump boto3 from 1.26.79 to 1.26.80 ( #2004 )
2023-03-01 08:40:41 +01:00
Sergio Garcia
07753e1774
feat(encryption): add new encryption category ( #1999 )
2023-02-28 13:42:11 +01:00
Pepe Fagoaga
5b984507fc
fix(emr): KeyError EmrManagedSlaveSecurityGroup ( #2000 )
2023-02-28 13:41:58 +01:00
Sergio Garcia
27df481967
chore(metadata): remove tags from metadata ( #1998 )
2023-02-28 12:27:59 +01:00
dependabot[bot]
0943031f23
build(deps): bump mkdocs-material from 9.0.14 to 9.0.15 ( #1993 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-28 11:02:59 +01:00
dependabot[bot]
2d95168de0
build(deps): bump botocore from 1.29.79 to 1.29.80 ( #1992 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-28 10:46:25 +01:00
Sergio Garcia
97cae8f92c
chore(brew): bump new version to brew ( #1990 )
2023-02-27 18:07:05 +01:00
github-actions
eb213bac92
chore(release): 3.2.4
2023-02-27 14:25:52 +01:00
Sergio Garcia
8187788b2c
fix(pypi-release.yml): create PR before replicating ( #1986 )
2023-02-27 14:16:53 +01:00
Sergio Garcia
c80e08abce
fix(compliance): solve AWS compliance dir path ( #1987 )
2023-02-27 14:16:17 +01:00
github-actions[bot]
42fd851e5c
chore(release): update Prowler Version to 3.2.3 ( #1985 )
...
Co-authored-by: github-actions <noreply@github.com >
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-02-27 13:59:28 +01:00
Pepe Fagoaga
70e4ebccab
chore(codeowners): Update team to OSS ( #1984 )
2023-02-27 13:31:16 +01:00
Sergio Garcia
140f87c741
chore(readme): add brew stats ( #1982 )
2023-02-27 13:17:48 +01:00
Pepe Fagoaga
b0d756123e
fix(action): Use PathContext to get version changes ( #1983 )
2023-02-27 13:17:09 +01:00
Pedro Martín González
6188c92916
chore(compliance): implements dynamic handling of available compliance frameworks ( #1977 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-02-27 10:47:47 +01:00
dependabot[bot]
34c6f96728
build(deps): bump boto3 from 1.26.74 to 1.26.79 ( #1981 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-27 09:45:45 +01:00
dependabot[bot]
50fd047c0b
build(deps): bump botocore from 1.29.78 to 1.29.79 ( #1978 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-27 09:14:29 +01:00
Sergio Garcia
5bcc05b536
chore(regions_update): Changes in regions for AWS services. ( #1972 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-24 12:10:27 +01:00
Sergio Garcia
ce7d6c8dd5
fix(service errors): solve EMR, VPC and ELBv2 service errors ( #1974 )
2023-02-24 10:49:54 +01:00
dependabot[bot]
d87a1e28b4
build(deps): bump alive-progress from 2.4.1 to 3.0.1 ( #1965 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-24 10:12:52 +01:00
Pepe Fagoaga
227306c572
fix(acm): Fix issues with list-certificates ( #1970 )
2023-02-24 10:12:38 +01:00
dependabot[bot]
45c2691f89
build(deps): bump mkdocs-material from 8.2.1 to 9.0.14 ( #1964 )
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-02-24 10:03:52 +01:00
Pepe Fagoaga
d0c81245b8
fix(directoryservice): tzinfo without _ ( #1971 )
2023-02-24 10:03:34 +01:00
dependabot[bot]
e494afb1aa
build(deps): bump botocore from 1.29.74 to 1.29.78 ( #1968 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-24 09:43:14 +01:00
dependabot[bot]
ecc3c1cf3b
build(deps): bump azure-storage-blob from 12.14.1 to 12.15.0 ( #1966 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-24 08:42:44 +01:00
dependabot[bot]
228b16416a
build(deps): bump colorama from 0.4.5 to 0.4.6 ( #1967 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-24 07:56:47 +01:00
Nacho Rivera
17eb74842a
fix(cloudfront): handle empty objects in checks ( #1962 )
2023-02-23 16:57:44 +01:00
Nacho Rivera
c01ff74c73
fix(kms): handle if describe_keys returns no value
2023-02-23 15:54:23 +01:00
Sergio Garcia
f88613b26d
fix(toml): add toml dependency to pypi release action ( #1960 )
2023-02-23 15:24:46 +01:00
Sergio Garcia
3464f4241f
chore(release): 3.2.2 ( #1959 )
...
Co-authored-by: github-actions <noreply@github.com >
2023-02-23 15:10:03 +01:00
Sergio Garcia
849b703828
chore(resource-based scan): execute only applicable checks ( #1934 )
2023-02-23 13:30:21 +01:00
Sergio Garcia
4b935a40b6
fix(metadata): remove us-east-1 in remediation ( #1958 )
2023-02-23 13:19:10 +01:00
Sergio Garcia
5873a23ccb
fix(key errors): solver EMR and IAM errrors ( #1957 )
2023-02-23 13:15:00 +01:00
Nacho Rivera
eae2786825
fix(cloudtrail): Handle when the CloudTrail bucket is in another account ( #1956 )
2023-02-23 13:04:32 +01:00
github-actions[bot]
6407386de5
chore(regions_update): Changes in regions for AWS services. ( #1952 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-23 12:24:36 +01:00
Sergio Garcia
3fe950723f
fix(actions): add README to docker action and filter steps for releases ( #1955 )
2023-02-23 12:22:41 +01:00
Sergio Garcia
52bf6acd46
chore(regions): add secret token to avoid stuck checks ( #1954 )
2023-02-23 12:11:54 +01:00
Sergio Garcia
9590e7d7e0
chore(poetry): make python-poetry as packaging and dependency manager ( #1935 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-02-23 11:50:29 +01:00
github-actions[bot]
7a08140a2d
chore(regions_update): Changes in regions for AWS services. ( #1950 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-23 08:42:36 +01:00
dependabot[bot]
d1491cfbd1
build(deps): bump boto3 from 1.26.74 to 1.26.76 ( #1948 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-22 08:01:13 +01:00
dependabot[bot]
695b80549d
build(deps): bump botocore from 1.29.75 to 1.29.76 ( #1946 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-22 07:50:39 +01:00
Sergio Garcia
11c60a637f
release: 3.2.1 ( #1945 )
2023-02-21 17:22:02 +01:00
Sergio Garcia
844ad70bb9
fix(cloudwatch): allow " in regex patterns ( #1943 )
2023-02-21 16:46:23 +01:00
Sergio Garcia
5ac7cde577
chore(iam_disable_N_days_credentials): improve checks logic ( #1923 )
2023-02-21 15:20:33 +01:00
Sergio Garcia
ce3ef0550f
chore(Security Hub): add status extended to Security Hub ( #1921 )
2023-02-21 15:11:43 +01:00
Sergio Garcia
813f3e7d42
fix(errors): handle errors when S3 buckets or EC2 instances are deleted ( #1942 )
2023-02-21 12:31:23 +01:00
Sergio Garcia
d03f97af6b
fix(regions): add unique branch name ( #1941 )
2023-02-21 11:53:36 +01:00
github-actions[bot]
019ab0286d
chore(regions_update): Changes in regions for AWS services. ( #1940 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-21 11:47:03 +01:00
Fennerr
c6647b4706
chore(secrets): Improve the status_extended with more information ( #1937 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-02-21 11:37:20 +01:00
Sergio Garcia
f913536d88
fix(services): solve errors in EMR, RDS, S3 and VPC services ( #1913 )
2023-02-21 11:11:39 +01:00
dependabot[bot]
640d1bd176
build(deps-dev): bump moto from 4.1.2 to 4.1.3 ( #1939 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-21 07:48:08 +01:00
dependabot[bot]
66baccf528
build(deps): bump botocore from 1.29.74 to 1.29.75 ( #1938 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-21 07:32:44 +01:00
Sergio Garcia
6e6dacbace
chore(security hub): add --skip-sh-update ( #1911 )
2023-02-20 09:58:00 +01:00
dependabot[bot]
cdbb10fb26
build(deps): bump boto3 from 1.26.72 to 1.26.74 ( #1933 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-20 07:56:40 +01:00
dependabot[bot]
c34ba3918c
build(deps): bump botocore from 1.29.73 to 1.29.74 ( #1932 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-20 07:34:20 +01:00
Fennerr
fa228c876c
fix(iam_rotate_access_key_90_days): check only active access keys ( #1929 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-02-17 12:53:28 +01:00
dependabot[bot]
2f4d0af7d7
build(deps): bump botocore from 1.29.72 to 1.29.73 ( #1926 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-17 12:14:23 +01:00
github-actions[bot]
2d3e5235a9
chore(regions_update): Changes in regions for AWS services. ( #1927 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-17 11:13:13 +01:00
dependabot[bot]
8e91ccaa54
build(deps): bump boto3 from 1.26.71 to 1.26.72 ( #1925 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-17 10:56:19 +01:00
Fennerr
6955658b36
fix(quick_inventory): handle ApiGateway resources ( #1924 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-02-16 18:29:23 +01:00
Fennerr
dbb44401fd
fix(ecs_task_definitions_no_environment_secrets): dump_env_vars is reintialised ( #1922 )
2023-02-16 15:59:53 +01:00
dependabot[bot]
b42ed70c84
build(deps): bump botocore from 1.29.71 to 1.29.72 ( #1919 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-16 14:21:46 +01:00
dependabot[bot]
a28276d823
build(deps): bump pydantic from 1.10.4 to 1.10.5 ( #1918 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-16 13:51:37 +01:00
Pepe Fagoaga
fa4b27dd0e
fix(compliance): Set Version as optional and fix list ( #1899 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-02-16 12:47:39 +01:00
dependabot[bot]
0be44d5c49
build(deps): bump boto3 from 1.26.70 to 1.26.71 ( #1920 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-16 12:38:10 +01:00
github-actions[bot]
2514596276
chore(regions_update): Changes in regions for AWS services. ( #1910 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-16 11:56:10 +01:00
dependabot[bot]
7008d2a953
build(deps): bump botocore from 1.29.70 to 1.29.71 ( #1909 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-15 07:39:16 +01:00
dependabot[bot]
2539fedfc4
build(deps): bump boto3 from 1.26.69 to 1.26.70 ( #1908 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-15 07:12:18 +01:00
Ignacio Dominguez
b453df7591
fix(iam-credentials-expiration): IAM password policy expires passwords fix ( #1903 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-02-14 13:54:58 +01:00
Pepe Fagoaga
9e5d5edcba
fix(codebuild): Handle endTime in builds ( #1900 )
2023-02-14 11:27:53 +01:00
Nacho Rivera
2d5de6ff99
fix(cross account): cloudtrail s3 bucket logging ( #1902 )
2023-02-14 11:23:31 +01:00
github-actions[bot]
259e9f1c17
chore(regions_update): Changes in regions for AWS services. ( #1901 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-14 10:28:04 +01:00
dependabot[bot]
daeb53009e
build(deps): bump botocore from 1.29.69 to 1.29.70 ( #1898 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-14 08:27:14 +01:00
dependabot[bot]
f12d271ca5
build(deps): bump boto3 from 1.26.51 to 1.26.69 ( #1897 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-14 07:55:26 +01:00
dependabot[bot]
965185ca3b
build(deps-dev): bump pylint from 2.16.1 to 2.16.2 ( #1896 )
2023-02-14 07:35:29 +01:00
Pepe Fagoaga
9c484f6a78
Release: 3.2.0 ( #1894 )
2023-02-13 15:42:57 +01:00
Fennerr
de18c3c722
docs: Minor changes to logging ( #1893 )
2023-02-13 15:31:23 +01:00
Fennerr
9be753b281
docs: Minor changes to the intro paragraph ( #1892 )
2023-02-13 15:20:48 +01:00
Pepe Fagoaga
d6ae122de1
docs: Boto3 configuration ( #1885 )
...
Co-authored-by: Toni de la Fuente <toni@blyx.com >
2023-02-13 15:20:33 +01:00
Pepe Fagoaga
c6b90044f2
chore(Dockerfile): Remove build files ( #1886 )
2023-02-13 15:19:05 +01:00
Nacho Rivera
14898b6422
fix(Azure_Audit_Info): Added audited_resources field ( #1891 )
2023-02-13 15:17:11 +01:00
Fennerr
26294b0759
docs: Update AWS Role Assumption ( #1890 )
2023-02-13 15:13:22 +01:00
Nacho Rivera
6da45b5c2b
fix(list_checks): arn filtering checks after audit_info set ( #1887 )
2023-02-13 14:57:42 +01:00
Acknosyn
674332fddd
update(logging): fix plural grammar for checks execution message ( #1680 )
...
Co-authored-by: Francesco Badraun <francesco.badraun@zxsecurity.co.nz >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-02-13 14:33:34 +01:00
Sergio Garcia
ab8942d05a
fix(service errors): solve errors in IAM, S3, Lambda, DS, Cloudfront services ( #1882 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-02-13 10:35:04 +01:00
github-actions[bot]
29790b8a5c
chore(regions_update): Changes in regions for AWS services. ( #1884 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-13 10:01:43 +01:00
dependabot[bot]
4a4c26ffeb
build(deps): bump botocore from 1.29.51 to 1.29.69 ( #1883 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-13 09:19:01 +01:00
Sergio Garcia
25c9bc07b2
chore(compliance): add manual checks to compliance CSV ( #1872 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-02-10 12:38:13 +01:00
Nacho Rivera
d22d4c4c83
fix(cloudtrail_multi_region_enabled): reformat check ( #1880 )
2023-02-10 12:34:53 +01:00
Sergio Garcia
d88640fd20
fix(errors): solve several services errors (AccessAnalyzer, AppStream, KMS, S3, SQS, R53, IAM, CodeArtifact and EC2) ( #1879 )
2023-02-10 12:26:00 +01:00
github-actions[bot]
57a2fca3a4
chore(regions_update): Changes in regions for AWS services. ( #1878 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-10 11:25:00 +01:00
Sergio Garcia
f796688c84
fix(metadata): typo in appstream_fleet_session_disconnect_timeout.metadata.json ( #1875 )
2023-02-09 16:22:19 +01:00
alexr3y
d6bbf8b7cc
update(compliance): ENS RD2022 Spanish security framework updates ( #1809 )
...
Co-authored-by: Sergio Garcia <sergargar1@gmail.com >
2023-02-09 14:14:38 +01:00
Nacho Rivera
37ec460f64
fix(hardware mfa): changed hardware mfa description ( #1873 )
2023-02-09 14:06:54 +01:00
Sergio Garcia
004b9c95e4
fix(key_errors): handle Key Errors in Lambda and EMR ( #1871 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-09 10:32:00 +01:00
github-actions[bot]
86e27b465a
chore(regions_update): Changes in regions for AWS services. ( #1870 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-09 10:17:18 +01:00
Nacho Rivera
5e9afddc3a
fix(permissive role assumption): actions list handling ( #1869 )
2023-02-09 10:06:53 +01:00
Pepe Fagoaga
de281535b1
feat(boto3-config): Use standard retrier ( #1868 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-02-09 09:58:47 +01:00
Pedro Martín González
9df7def14e
feat(compliance): Add 17 new security compliance frameworks for AWS ( #1824 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-09 07:39:57 +01:00
Sergio Garcia
5b9db9795d
feat(new check): add accessanalyzer_enabled check ( #1864 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-08 17:39:25 +01:00
Sergio Garcia
7d2ce7e6ab
fix(action): do not trigger action when editing release ( #1865 )
2023-02-08 17:34:02 +01:00
Oleksandr Mykytenko
3e807af2b2
fix(checks): added validation for non-existing VPC endpoint policy ( #1859 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-08 12:13:22 +01:00
Oleksandr Mykytenko
4c64dc7885
Fixed elbv2 service for GWLB resources ( #1860 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-08 10:38:34 +01:00
github-actions[bot]
e7a7874b34
chore(regions_update): Changes in regions for AWS services. ( #1863 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-08 10:36:03 +01:00
dependabot[bot]
c78a47788b
build(deps): bump cryptography from 39.0.0 to 39.0.1 ( #1862 )
2023-02-08 08:02:47 +01:00
dependabot[bot]
922698c5d9
build(deps-dev): bump pytest-xdist from 3.1.0 to 3.2.0 ( #1858 )
2023-02-07 18:04:30 +01:00
Sergio Garcia
8e8a490936
chore(release): 3.1.4 ( #1857 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-07 17:49:27 +01:00
Sergio Garcia
231bc0605f
fix(output_bucket): Use full path for -o option with output to S3 bucket ( #1854 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-02-07 17:28:25 +01:00
Carlos
0298ff9478
Change prowler additional policy json due errors in creation ( #1852 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2023-02-07 13:09:12 +01:00
Sergio Garcia
33a25dcf0e
fix(exit_code): change sys exit code to 1 in Critical Errors ( #1853 )
2023-02-07 11:43:14 +01:00
Sergio Garcia
54c16e3cdb
chore(security hub): improve securityhub_enabled check logic ( #1851 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-07 11:29:39 +01:00
github-actions[bot]
28a978acc2
chore(regions_update): Changes in regions for AWS services. ( #1849 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-07 10:58:10 +01:00
dependabot[bot]
bea26a461f
build(deps-dev): bump openapi-spec-validator from 0.5.4 to 0.5.5 ( #1846 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-07 09:58:56 +01:00
Sergio Garcia
ed54c5b8b9
feat(exit_code 3): add -z option ( #1848 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-07 09:51:46 +01:00
Sergio Garcia
13316b68aa
fix(checks): solve different errors in EFS, S3 and VPC ( #1841 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-07 09:42:10 +01:00
dependabot[bot]
043986f35b
build(deps-dev): bump sure from 2.0.0 to 2.0.1 ( #1847 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-07 09:28:26 +01:00
dependabot[bot]
2dc4421dd6
build(deps-dev): bump moto from 4.1.1 to 4.1.2 ( #1845 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-07 08:22:55 +01:00
Sergio Garcia
6c16e2bca2
fix(kms): call GetKeyRotationStatus only for Customer Keys ( #1842 )
2023-02-06 17:07:03 +01:00
Sergio Garcia
c2b4a8e115
fix(errors): solve CloudWatch, KMS, EMR and OpenSearch service errors ( #1843 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-06 16:59:46 +01:00
Toni de la Fuente
63b7bc8794
chore(issues): update bug_report.md ( #1844 )
2023-02-06 16:45:52 +01:00
github-actions[bot]
f41ae74ae2
chore(regions_update): Changes in regions for AWS services. ( #1840 )
2023-02-06 09:59:50 +01:00
Pepe Fagoaga
98689d223e
fix(lambda-runtime): Init value must be empty string ( #1837 )
2023-02-06 09:38:35 +01:00
Sergio Garcia
f19cf21146
fix(readme): correct PyPi download link ( #1836 )
2023-02-03 16:43:43 +01:00
Sergio Garcia
24e19e6b18
fix(errors): solve different errors in KMS, EFS and Lambda ( #1835 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-03 15:05:07 +01:00
Sergio Garcia
08376cb15e
chore(release): 3.1.3 ( #1832 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-03 14:32:15 +01:00
Pepe Fagoaga
5f6e4663c0
fix(action): Build from release branch ( #1834 )
2023-02-03 14:31:43 +01:00
Pepe Fagoaga
9b91c00fcc
fix(awslambda_function_no_secrets_in_code): Retrieve Code if set ( #1833 )
2023-02-03 14:28:31 +01:00
Sergio Garcia
229ab88c2f
fix(shub): update link to Security Hub documentation ( #1830 )
2023-02-03 14:10:27 +01:00
dependabot[bot]
8863d13578
build(deps-dev): bump pylint from 2.16.0 to 2.16.1 ( #1823 )
2023-02-03 14:03:20 +01:00
Nacho Rivera
e07fc9fbb9
fix(cloudtrail): included advanced data events selectors ( #1814 )
2023-02-03 14:02:16 +01:00
Sergio Garcia
0164574fdd
fix(KeyError): handle service key errors ( #1831 )
2023-02-03 12:28:23 +01:00
github-actions[bot]
98eec332d8
chore(regions_update): Changes in regions for AWS services. ( #1829 )
2023-02-03 11:30:01 +01:00
Oleksandr Mykytenko
3d2986fc64
fix(metadata) fixed typo in title for awslambda_function_not_publicly… ( #1826 )
2023-02-03 10:34:24 +01:00
dependabot[bot]
29e7f8581e
build(deps-dev): bump openapi-spec-validator from 0.5.2 to 0.5.4 ( #1821 )
2023-02-02 18:04:24 +01:00
dependabot[bot]
4ee3f6c87a
build(deps-dev): bump pylint from 2.15.10 to 2.16.0 ( #1815 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-02-02 11:39:32 +01:00
Sergio Garcia
b8c7440e1f
fix(KeyError): Handle service key errors ( #1819 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-02 11:34:19 +01:00
Sergio Garcia
d49ff8d9a4
chore(logs): improve check error logs ( #1818 )
2023-02-02 11:13:40 +01:00
github-actions[bot]
07198042bd
chore(regions_update): Changes in regions for AWS services. ( #1817 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-02 10:58:47 +01:00
Sergio Garcia
c7a9492e96
feat(scan-type): AWS Resource ARNs based scan ( #1807 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-02-01 14:09:22 +01:00
Sergio Garcia
360c6f3c1c
fix(cloudtrail): improve cloudtrail_cloudwatch_logging_enabled status extended ( #1813 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-02-01 14:08:11 +01:00
github-actions[bot]
89aab4acd5
chore(regions_update): Changes in regions for AWS services. ( #1812 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-02-01 10:15:10 +01:00
Nacho Rivera
d9b3e842d9
fix(accessanalyzer): no analyzers using pydantic ( #1806 )
2023-01-31 13:01:54 +01:00
Sergio Garcia
3ac4dc8392
feat(scanner): Tag-based scan ( #1751 )
...
Co-authored-by: Toni de la Fuente <toni@blyx.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-01-31 12:19:29 +01:00
Nacho Rivera
0d1a5318ec
feat(audit-metadata): retrieve audit metadata from execution ( #1803 )
2023-01-31 11:24:01 +01:00
Pepe Fagoaga
94b7a219fd
chore(regions): Change feat to chore ( #1805 )
2023-01-31 10:32:32 +01:00
github-actions[bot]
ba3eb71abd
feat(regions_update): Changes in regions for AWS services. ( #1804 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-01-31 10:22:05 +01:00
Sergio Garcia
bbc9e11205
fix(ec2_securitygroup_not_used): ignore default security groups ( #1800 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-30 16:51:07 +01:00
Sergio Garcia
75571e4266
fix(iam_avoid_root_usage): correct date logic ( #1801 )
2023-01-30 16:47:24 +01:00
Sergio Garcia
4e879271a0
fix(iam_policy_no_administrative_privileges): check only *:* permissions ( #1802 )
2023-01-30 16:47:09 +01:00
Nacho Rivera
552e0fefc3
fix(accessanalyzer_enabled_without_findings): fixed status findings ( #1799 )
2023-01-30 13:22:05 +01:00
Jose Luis Martinez
cb7439a831
feat(allowlist): AWS Lambda function support ( #1793 )
2023-01-30 11:30:29 +01:00
Sergio Garcia
35d6b8bbc6
chore(readme): add prowler PyPi stats ( #1798 )
2023-01-30 11:26:09 +01:00
Jose Luis Martinez
48b9220ffc
fix(allowlist): validate allowlist for any database format (file, dynamo, s3, etc) ( #1792 )
2023-01-30 10:30:46 +01:00
ifduyue
5537981877
Use docs.aws.amazon.com like other aws checks, not docs.amazonaws.cn ( #1790 )
2023-01-30 10:29:18 +01:00
Sergio Garcia
711f24a5b2
fix(partition): add dynamic partition in CloudTrail S3 DataEvents checks ( #1787 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-27 10:50:31 +01:00
Sergio Garcia
5d2b8bc8aa
fix(kms): add symmetric condition to kms_cmk_rotation_enabled check ( #1788 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-27 10:49:40 +01:00
github-actions[bot]
f6ea10db2d
feat(regions_update): Changes in regions for AWS services. ( #1786 )
2023-01-27 10:17:22 +01:00
Sergio Garcia
fc38ba3acb
docs(readme): correct compliance link ( #1780 )
2023-01-26 12:48:58 +01:00
Sergio Garcia
0830ad268f
chore(release): new version 3.1.2 ( #1779 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-26 12:44:43 +01:00
github-actions[bot]
e633664c2a
feat(regions_update): Changes in regions for AWS services. ( #1778 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-01-26 10:28:13 +01:00
Ozan-Ekinci
d4c7d9a60a
docs(grammar): Improved grammar in the Documentation paragraph #HSFDPMUW ( #1776 )
2023-01-26 10:18:42 +01:00
dependabot[bot]
5ee0d964f3
build(deps-dev): bump coverage from 7.0.5 to 7.1.0 ( #1777 )
2023-01-26 10:18:00 +01:00
Sergio Garcia
ba5e0f145f
fix(severity): update severities for Security Hub, GuardDuty and NACL related checks ( #1775 )
2023-01-25 15:03:43 +01:00
Nacho Rivera
34eb9cc063
fix(cloudtrail_multi_region_enabled.py): fixed region when no trails ( #1774 )
2023-01-25 14:33:24 +01:00
Sergio Garcia
a795fdc40d
fix(IAM): remove duplicate list_policies function ( #1763 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-25 13:58:58 +01:00
Sergio Garcia
24cba4c4ca
chore(contrib): CloudFormation of CodeBuild for v3 ( #1764 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Toni de la Fuente <toni@blyx.com >
2023-01-25 13:57:47 +01:00
Sergio Garcia
3d13f4bb9b
fix(apigatewayv2): correct apigatewayv2_access_logging_enabled check title ( #1769 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-25 13:56:28 +01:00
Sergio Garcia
e713d0d321
chore(readme): update pip package name ( #1768 )
2023-01-25 13:55:35 +01:00
Sergio Garcia
4e34be87a1
fix(json): close Json correctly when no findings ( #1773 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-25 13:54:48 +01:00
Sergio Garcia
07307d37a1
fix(iam): handle credential report errors ( #1765 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: n4ch04 <nacho@verica.io >
2023-01-25 10:31:58 +01:00
github-actions[bot]
81463181bc
feat(regions_update): Changes in regions for AWS services. ( #1772 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-01-25 10:31:04 +01:00
Acknosyn
02e57927fc
fix(): IAM status messages switched fail and pass text and some grammar ( #1756 )
...
Co-authored-by: Francesco Badraun <francesco.badraun@zxsecurity.co.nz >
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: n4ch04 <nachor1992@gmail.com >
2023-01-25 10:29:04 +01:00
Sergio Garcia
36925f0dbd
fix(): solve metadata replace ( #1755 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-24 13:45:46 +01:00
github-actions[bot]
f9b985e03d
feat(regions_update): Changes in regions for AWS services. ( #1761 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-24 10:39:49 +01:00
dependabot[bot]
598ad62b92
build(deps-dev): bump moto from 4.1.0 to 4.1.1 ( #1758 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-24 09:27:05 +01:00
github-actions[bot]
ea929ab713
feat(regions_update): Changes in regions for AWS services. ( #1748 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-01-23 12:43:51 +01:00
Ozan-Ekinci
04e56ced58
docs: Improved grammar in the AZ CLI / Browser / Managed Identity authentication paragraph #HSFDPMUW ( #1745 )
2023-01-23 10:24:23 +01:00
Vaibhav Bagaria
2278565b86
Update resource type for SQS and SNS ( #1747 )
2023-01-23 10:22:26 +01:00
Leon
afd0c56b44
fix(docs): Changed the azure subscription file text #HSFDPMUW ( #1749 )
2023-01-23 09:31:34 +01:00
Sergio Garcia
5ebdf66d22
release: 3.1.1 ( #1744 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-20 15:36:27 +01:00
Toni de la Fuente
177d8a72a7
docs: add mapping of v2 to v3 checks and update pip package name in docs ( #1742 )
2023-01-20 12:50:57 +01:00
Pepe Fagoaga
03ef80dd8e
fix(actions): Exclude docs folder in action ( #1743 )
2023-01-20 12:50:28 +01:00
Pepe Fagoaga
6f9825362a
chore(code-ql): test tool ( #1703 )
2023-01-20 12:31:53 +01:00
github-actions[bot]
2167154064
feat(regions_update): Changes in regions for AWS services. ( #1741 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-01-20 10:24:37 +01:00
Sergio Garcia
f88b35bd80
fix(rds): remove DocumentDB from RDS ( #1737 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-20 09:31:19 +01:00
Nacho Rivera
6b9520338e
fix(pipeline): fixed typo in main pipeline ( #1740 )
2023-01-20 09:30:53 +01:00
Sergio Garcia
438c087856
fix(arguments): improve quiet option ( #1723 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-20 09:14:38 +01:00
Nacho Rivera
2a43274b06
feat(dispatch): dispatch triggered actions ( #1739 )
2023-01-20 09:13:57 +01:00
github-actions[bot]
20a9336867
feat(regions_update): Changes in regions for AWS services. ( #1736 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-01-19 12:45:35 +01:00
Sergio Garcia
c921782714
feat(allowlist): add yaml structure validator ( #1735 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-18 17:49:13 +01:00
Sergio Garcia
776ac9e3d4
fix(lambda): solve lambda errors ( #1732 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-18 17:47:45 +01:00
Sergio Garcia
d02bd9b717
fix(allowlist): remove re.escape ( #1734 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-18 17:45:51 +01:00
Sergio Garcia
50070e8fe7
fix(IAM): add missing permissions for Prowler ( #1731 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-18 11:45:37 +01:00
github-actions[bot]
e3e3b3e279
feat(regions_update): Changes in regions for AWS services. ( #1730 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-01-18 11:01:46 +01:00
Pepe Fagoaga
38fba297e8
fix: remove old example ( #1728 )
2023-01-17 18:04:12 +01:00
Sergio Garcia
52d65ee4e8
feat(pypi): replicate PyPi package ( #1727 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-17 17:53:08 +01:00
Sergio Garcia
9ad2f33dd8
fix: remove check_sample.metadata.json ( #1725 )
2023-01-17 14:36:00 +01:00
Sergio Garcia
02ae23b11d
feat(release): add PyPi GitHub Action ( #1724 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-01-17 14:33:15 +01:00
Sergio Garcia
70c6d6e7ae
release: 3.1.0 ( #1722 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-17 13:15:07 +01:00
Sergio Garcia
8efebf992f
fix(metadata): fix recommendation in iam_role_cross_service_confused_deputy_prevention check ( #1721 )
2023-01-17 13:11:46 +01:00
Sergio Garcia
b9be94bcc5
feat(README): add pypi downloads ( #1720 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-17 13:05:44 +01:00
Sergio Garcia
e6310c32ac
feat(check): add iam_role_cross_service_confused_deputy_prevention check ( #1710 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-17 12:17:37 +01:00
Sergio Garcia
654b4702d0
fix(error): ecr_repositories_scan_vulnerabilities_in_latest_image report not found ( #1719 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-17 12:17:15 +01:00
dependabot[bot]
262b5a7ee5
build(deps-dev): bump openapi-spec-validator from 0.5.1 to 0.5.2 ( #1716 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-17 12:13:44 +01:00
Pepe Fagoaga
ef0d4fe34b
fix(fill_html_overview_statistics): Handle if file exists ( #1718 )
2023-01-17 11:40:05 +01:00
github-actions[bot]
c08342f40c
feat(regions_update): Changes in regions for AWS services. ( #1717 )
...
Co-authored-by: sergargar <sergargar@users.noreply.github.com >
2023-01-17 10:18:40 +01:00
Pepe Fagoaga
e7796268b5
feat(only_logs): New logging flag to only show execution logs ( #1708 )
2023-01-17 10:13:09 +01:00
Nacho Rivera
0cbe80d2ab
feat(report): conditional import ( #1702 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-01-17 10:00:31 +01:00
Ozan-Ekinci
11d3ba70a0
docs: missing comma in the Service Principal authentication paragraph ( #1713 )
...
Co-authored-by: Ozan-Can Ekinci <ozan-can.ekinci1@informatik.hs-fulda >
2023-01-17 08:50:52 +01:00
dependabot[bot]
c30e4c4867
build(deps-dev): bump pytest from 7.2.0 to 7.2.1 ( #1715 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-17 08:42:48 +01:00
Sergio Garcia
d1e5087c18
fix(): add permissions to Github action ( #1712 )
2023-01-16 16:04:57 +01:00
Gabriel Soltz
618dd442e3
Incorrect ResourceType for check ec2_elastic_ip_unassgined ( #1711 )
2023-01-16 14:16:35 +01:00
Sergio Garcia
7f26fdf2d0
feat(iam): add IAM Role Class ( #1709 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-16 11:47:23 +01:00
Gabriel Soltz
64090474e1
fix(apigateway): Add ApiGateway ResourceArn and check fixes ( #1707 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-16 10:23:14 +01:00
Leon
a69c28713a
fix(docs): Include multiple commas in the troubleshooting file #HSFDPMUW ( #1706 )
2023-01-16 09:05:24 +01:00
Leon
1d4b3095af
fix(docs): Include a new comma in the Basic Usage paragraph #HSFDPMUW ( #1705 )
2023-01-16 09:04:48 +01:00
Sergio Garcia
ff75125af8
fix(docs): correct permissions links ( #1701 )
2023-01-13 10:28:54 +01:00
Toni de la Fuente
aa0025abbe
fix(quick_inventory): Prowler quick inventory for US GovCloud and China ( #1698 )
2023-01-12 17:40:10 +01:00
Sergio Garcia
c9436da235
fix: Solve IAM policy Errors ( #1692 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-12 17:39:09 +01:00
Sergio Garcia
12f1eaace7
fix: VPC Key Error ( #1695 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-12 17:35:57 +01:00
Sergio Garcia
09ef8aba0f
fix(): set default region CloudWatch ( #1693 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-12 17:17:40 +01:00
Toni de la Fuente
08c094b8a5
docs(SECURITY.md): Include Security Policy ( #1697 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-01-12 17:16:46 +01:00
Sergio Garcia
e9fb4410cd
fix(docs): Add security section and solve images location ( #1696 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: Toni de la Fuente <toni@blyx.com >
2023-01-12 17:16:34 +01:00
Nacho Rivera
cbdda22a33
fix: deleted test exclusion in name loading checks ( #1694 )
2023-01-12 15:43:54 +01:00
Sergio Garcia
fe906477da
fix(aws_regions_by_service.json): FileNotFoundError[13] ( #1689 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-12 13:24:03 +01:00
dependabot[bot]
b03df619df
build(deps-dev): bump coverage from 7.0.4 to 7.0.5 ( #1688 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-12 11:32:41 +01:00
Sergio Garcia
53d89d8d17
fix: solve multiple errors ( #1690 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-12 11:29:33 +01:00
Sergio Garcia
1e5a1f3e1f
fix: remove unnecessary print ( #1686 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-12 08:58:15 +01:00
Nacho Rivera
6efe2979c6
fix(): Edit troubleshooting page ( #1685 )
2023-01-11 11:18:37 +01:00
Sergio Garcia
92cc2c8e69
fix(config): path error in Windows environment ( #1684 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-10 17:06:14 +01:00
dependabot[bot]
50dd2e4179
build(deps-dev): bump vulture from 2.6 to 2.7 ( #1677 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-10 08:26:44 +01:00
dependabot[bot]
7a8fd9c3d3
build(deps-dev): bump coverage from 7.0.3 to 7.0.4 ( #1678 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-10 08:15:55 +01:00
dependabot[bot]
d5a3fc490b
build(deps-dev): bump moto from 4.0.13 to 4.1.0 ( #1675 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-10 07:56:16 +01:00
dependabot[bot]
13f948062b
build(deps-dev): bump pylint from 2.15.9 to 2.15.10 ( #1676 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-10 07:43:54 +01:00
Fennerr
b965fda226
feat(ecs_task_definitions_no_environment_secrets): Update resource_id ( #1665 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-09 16:05:45 +01:00
Sergio Garcia
f9d67f0e9d
fix(compliance): Security Hub working with compliance ( #1673 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-09 14:18:12 +01:00
Sergio Garcia
4dfa20e40b
fix(Security Hub): associate resource_arn as resourceId ( #1672 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-09 14:16:57 +01:00
Gabriel Soltz
d5edbaa3a9
fix(s3): Add S3 ResourceArn ( #1666 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-09 11:04:09 +01:00
Leon
0cd5ce8c29
fix(docs): Include a comma in the permissions paragraph ( #1668 )
2023-01-09 09:52:36 +01:00
Sergio Garcia
1c50a87ca2
fix(trustedadvisor_errors_and_warnings): add region ( #1662 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-05 17:57:21 +01:00
Sergio Garcia
efa83e05e4
release: 3.0.2 ( #1660 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-05 14:01:24 +01:00
Fennerr
76a694d043
feat(): add ECS task revision number ( #1657 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-05 13:36:32 +01:00
Fennerr
571280f0cd
feat(): update recommendation of ecs_task_definitions_no_environment_secrets ( #1658 )
2023-01-05 13:11:05 +01:00
dependabot[bot]
c2fc01608e
build(deps-dev): bump moto from 4.0.12 to 4.0.13 ( #1656 )
2023-01-05 08:52:19 +01:00
dependabot[bot]
2ba144843a
build(deps-dev): bump coverage from 7.0.2 to 7.0.3 ( #1655 )
2023-01-05 07:57:49 +01:00
Sergio Garcia
458dadc9b6
fix(contrib): Update contrib folder ( #1635 )
2023-01-04 13:11:51 +01:00
Gabriel Soltz
6ed0c59762
feat(ec2): Add ResourceArn ( #1649 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-04 11:55:58 +01:00
Sergio Garcia
54fbaa808e
fix(glacier): handle no vault policy error ( #1650 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-04 11:41:56 +01:00
Nacho Rivera
f0db63da35
fix(): Refresh credentials when assuming role ( #1636 )
2023-01-04 08:48:00 +01:00
Sergio Garcia
9b8c80b74d
fix(codeartifact): set Namespace attribute as optional ( #1648 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-03 16:04:40 +01:00
github-actions[bot]
0c23b6af84
feat(regions_update): Changes in regions for AWS services. ( #1646 )
2023-01-03 14:00:09 +01:00
Sergio Garcia
1189177079
fix: GH Action permissions ( #1644 )
2023-01-03 13:58:49 +01:00
Sergio Garcia
794402e92d
fix: add Github Action permission ( #1643 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-01-03 13:32:09 +01:00
Sergio Garcia
0de6d87af5
feat(aws-regions): update refresh regions action ( #1641 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2023-01-03 12:59:08 +01:00
dependabot[bot]
567c150eaa
build(deps-dev): bump coverage from 7.0.1 to 7.0.2 ( #1640 )
2023-01-03 08:03:29 +01:00
Peter Dave Hello
7ea9225277
Remove additional apk update in Dockerfile ( #1617 )
2023-01-02 18:41:46 +01:00
Sergio Garcia
df25ead15a
fix(): update pipfile.lock ( #1639 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-02 17:25:07 +01:00
Nacho Rivera
5227d57a55
fix(): Delete old reqs from issue template ( #1638 )
2023-01-02 17:17:24 +01:00
Sergio Garcia
8db86992aa
fix(outputs): apply -q to security hub ( #1637 )
...
Co-authored-by: sergargar <sergio@verica.io >
2023-01-02 15:56:49 +01:00
Nacho Rivera
79c09e613b
fix(): password enabled issues in iam_user_mfa_enabled_console_access ( #1634 )
2023-01-02 14:08:45 +01:00
Pepe Fagoaga
99d1cea537
fix(output_filename): Use custom output filename when set ( #1632 )
2023-01-02 10:37:01 +01:00
Christian Clauss
98bc3f18fe
docs: Fix typo in Azure documentation ( #1619 )
2023-01-02 08:27:44 +01:00
github-actions[bot]
b007d01057
feat(regions_update): Changes in regions for AWS services. ( #1629 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2023-01-02 08:26:18 +01:00
dependabot[bot]
ea85e0824b
build(deps-dev): bump coverage from 7.0.0 to 7.0.1 ( #1618 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2023-01-02 08:22:49 +01:00
Toni de la Fuente
d75b48877d
docs(install): Add multiple ways to install Prowler ( #1627 )
2023-01-02 08:09:22 +01:00
Ikko Ashimine
94bda8c17d
docs(AWS-Role): fixed typo ( #1610 )
2022-12-26 12:06:29 +01:00
Pepe Fagoaga
f05cb2859e
fix(output-filename): Handle argument ( #1604 )
2022-12-23 14:11:32 +01:00
Sergio Garcia
3c6254f086
feat(3.0.1): 3.0.1 release ( #1601 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-23 12:51:35 +01:00
Sergio Garcia
d9dc6c0a49
fix(global_services): handle global regions correctly ( #1594 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-12-23 12:32:31 +01:00
Nacho Rivera
3cfe1b8376
docs: Include Azure requirements in README ( #1600 )
2022-12-23 12:31:16 +01:00
Nacho Rivera
83275c5fd0
fix(send to s3): fixed send to s3 feature ( #1599 )
2022-12-23 11:38:42 +01:00
Pepe Fagoaga
e4698b5843
fix(check_report): Init status field and fix stats output ( #1580 )
2022-12-23 11:16:39 +01:00
Pepe Fagoaga
c4b134c0b5
fix(refresh-aws-regions): Change branch ( #1598 )
2022-12-23 10:30:44 +01:00
Sergio Garcia
5065cdb9e6
fix(sqs): Get SQS encryption ( #1596 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-23 10:24:10 +01:00
Sergio Garcia
f72be9a1e4
feat(errors): prettify unknown service errors ( #1592 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-22 17:02:28 +01:00
Sergio Garcia
a53f9eb294
fix(aws-cn partition): solve aws-cn partition errors ( #1576 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-12-22 15:39:50 +01:00
Sergio Garcia
44e0eedac2
fix(efs): handle PolicyNotFound error ( #1591 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-22 15:38:16 +01:00
Sergio Garcia
d894556191
fix(shub): Handle Security Hub InvalidAccessException error ( #1590 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-22 15:13:20 +01:00
Nacho Rivera
00cac892a7
fix(list services): Solve list services issue ( #1587 )
2022-12-22 15:00:08 +01:00
Sergio Garcia
167d332257
fix(vpc): endpoint policy error ( #1588 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-22 14:50:55 +01:00
Sergio Garcia
258abf6fe3
fix(iam): handle NoSuchEntity error ( #1589 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-22 14:49:41 +01:00
Sergio Garcia
451b362c52
fix(ECR): handle ECR errors that are not AccessDenied ( #1586 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-22 13:29:59 +01:00
Sergio Garcia
ff6b433661
fix(errors): Handle S3 errors that are not Access Denied ( #1585 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-22 13:26:22 +01:00
dependabot[bot]
3af2a44c70
build(deps-dev): bump pylint from 2.15.8 to 2.15.9 ( #1569 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-12-22 13:10:21 +01:00
dependabot[bot]
7f712e4d72
build(deps-dev): bump moto from 4.0.11 to 4.0.12 ( #1570 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2022-12-22 13:02:17 +01:00
Jonty Behr
28dee33e4f
docs(links): Update broken links to permissions folder ( #1584 )
2022-12-22 12:59:04 +01:00
dependabot[bot]
2d0b503f9f
build(deps-dev): bump coverage from 6.5.0 to 7.0.0 ( #1568 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2022-12-22 12:51:52 +01:00
Pepe Fagoaga
b0b706e2f4
feat(dependabot): Daily check ( #1582 )
2022-12-22 12:34:23 +01:00
Pepe Fagoaga
0391fad32b
feat(issues): Disable blank issues ( #1583 )
2022-12-22 12:32:19 +01:00
Pepe Fagoaga
167902616c
test(credential_report): Improve credential report tests ( #1579 )
2022-12-22 12:20:54 +01:00
Sergio Garcia
ea42a6274b
fix(logs): add check_name to logs ( #1574 )
2022-12-22 11:48:44 +01:00
Pepe Fagoaga
65e72d6937
fix(issue_template): Update for Prowler v3 ( #1581 )
2022-12-22 11:02:25 +01:00
Sergio Garcia
bb5ba8c37c
fix(description): pyproject.toml description ( #1567 )
2022-12-21 12:08:46 +01:00
Pepe Fagoaga
f5e5921abc
feat(dependabot): Automatic updates ( #1564 )
2022-12-21 12:02:29 +01:00
Pepe Fagoaga
80a8cfb6a6
fix(build-push): Update for 3.0 ( #1563 )
2022-12-21 11:47:32 +01:00
Pepe Fagoaga
4e34040e62
docs(usage): Format epilog ( #1562 )
2022-12-21 10:42:19 +01:00
github-actions[bot]
ba2620d91d
feat(regions_update): Changes in regions for AWS services. ( #1561 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-12-21 10:15:51 +01:00
Pepe Fagoaga
c2ae4a5efd
docs(README): Chame img relative paths to permalinks ( #1560 )
2022-12-21 09:25:20 +01:00
Toni de la Fuente
62c1ce73bb
feat(docs): added AWS CloudShell and rename FAQ to Troubleshooting ( #1559 )
2022-12-21 08:39:07 +01:00
Sergio Garcia
bab6380d68
fix: Refactor Outputs ( #1548 )
2022-12-20 18:23:30 +01:00
github-actions[bot]
9502355d22
feat(regions_update): Changes in regions for AWS services. ( #1557 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-12-20 13:09:12 +01:00
Pepe Fagoaga
a82d9591ab
fix(Dockerfile): Build from source ( #1555 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-20 13:08:53 +01:00
Pepe Fagoaga
d8fe11f393
docs(AWS-Role): Include section and remove CLI ( #1556 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-12-20 13:01:26 +01:00
Toni de la Fuente
df5963082c
docs: Add multiaccount scan in docs ( #1554 )
2022-12-20 11:47:52 +01:00
Toni de la Fuente
c3980e4f27
docs: General changes ( #1552 )
...
Co-authored-by: Sergio Garcia <sergio@verica.io >
2022-12-19 18:29:26 +01:00
Toni de la Fuente
a7155300d3
update(docs): update compliance and links ( #1551 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-12-19 17:00:33 +01:00
Pepe Fagoaga
b622fe7229
feat(HTML): Fix layout and include stats ( #1549 )
2022-12-19 14:34:41 +01:00
Sergio Garcia
2ddf3c8881
feat(docs): add Powler config.yaml information to docs ( #1546 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-19 14:27:25 +01:00
Pepe Fagoaga
38ba009794
delete: Old Dockerfile ( #1550 )
2022-12-19 14:23:16 +01:00
Pepe Fagoaga
a55649b3e1
feat(outputs): Unify classes to generate outputs dynamically based on the provider ( #1545 )
...
Co-authored-by: n4ch04 <nachor1992@gmail.com >
Co-authored-by: sergargar <sergio@verica.io >
2022-12-19 13:03:04 +01:00
github-actions[bot]
fdf80ed89d
feat(regions_update): Changes in regions for AWS services. ( #1544 )
2022-12-16 12:20:44 +01:00
Pepe Fagoaga
2da27d59b6
fix: Release fixes ( #1543 )
2022-12-15 15:16:29 +01:00
Sergio Garcia
b67e718412
feat(config): add comments to config ( #1542 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-15 10:41:21 +01:00
github-actions[bot]
b05286f455
feat(regions_update): Changes in regions for AWS services. ( #1541 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-12-15 10:22:37 +01:00
Pepe Fagoaga
2a5f032a52
feat(args): Global and provider-specific arguments ( #1540 )
2022-12-14 17:39:05 +01:00
github-actions[bot]
27a79d9c8c
feat(regions_update): Changes in regions for AWS services. ( #1524 )
2022-12-14 15:06:02 +01:00
Nacho Rivera
7ff72c048a
feat(Audit_Info): Unifying import set audit info for different providers ( #1538 )
2022-12-14 11:34:14 +01:00
Sergio Garcia
388c0b2b9f
feat(parse_regions): Add AWS regions parser && Dockerfile ( #1537 )
2022-12-13 19:00:43 +01:00
Sergio Garcia
bb09267f2a
feat(pip): Prepare for PyPI ( #1531 )
2022-12-13 09:07:55 +01:00
Sergio Garcia
0cd13b90f4
feat(docs): Add compliance and inventory docs ( #1534 )
2022-12-12 17:20:45 +01:00
Sergio Garcia
fbb39a364e
feat(quick_inventory): add quick inventory ( #1533 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-07 19:02:05 +01:00
Sergio Garcia
7bffe6b2d5
fix(html): fix error html generator ( #1530 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Toni de la Fuente <toni@blyx.com >
2022-12-07 13:04:38 +01:00
Sergio Garcia
df4b89366c
feat(docs): add new docs and readme ( #1529 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: n4ch04 <nachor1992@gmail.com >
2022-12-07 12:08:30 +01:00
Sergio Garcia
05075d6508
feat(cis_ouput): add csv output and table ( #1532 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-12-07 12:06:28 +01:00
Nacho Rivera
5e40d93d63
feat(Azure): Include multiple authentication ( #1528 )
2022-12-02 09:20:56 +01:00
Pepe Fagoaga
c2f5177afa
fix(list-groups): Delete option ( #1527 )
2022-11-29 16:51:06 +01:00
Nacho Rivera
e5e01e51a9
feat(azure): subscription as parameter ( #1526 )
2022-11-29 13:46:38 +01:00
Sergio Garcia
8f802f1241
feat(html): add html output ( #1525 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-11-29 13:44:52 +01:00
Pepe Fagoaga
a54372e05e
feat(categories): Remove old groups and use categories from metadata ( #1523 )
2022-11-29 11:09:50 +01:00
Nacho Rivera
f964439a15
fix(Pipfile): pipfile azure packages from dev to general ( #1522 )
2022-11-28 13:25:00 +01:00
github-actions[bot]
309c1e004b
feat(regions_update): Changes in regions for AWS services. ( #1516 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-11-28 12:19:02 +01:00
Pepe Fagoaga
9d91250f05
fix(globalaccelerator): Region must be us-west-2 ( #1518 )
2022-11-28 12:12:49 +01:00
Pepe Fagoaga
1f7262aaaa
fix(route53domains): Set us-east-1 as region ( #1521 )
2022-11-28 12:12:20 +01:00
Nacho Rivera
9a5e433489
fix(outputs): Table and Azure metadata ( #1520 )
2022-11-28 11:16:13 +01:00
Pepe Fagoaga
d1f5d58eeb
fix(directoryservice): Use ID instead of Name ( #1519 )
2022-11-28 11:08:52 +01:00
Nacho Rivera
e3d118f5bc
feat(): Azure provider and checks ( #1517 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-11-28 10:07:25 +01:00
Pepe Fagoaga
1a11f5777a
fix(compliance): List Compliance Requirements ( #1514 )
2022-11-23 17:53:49 +01:00
Pepe Fagoaga
b3e57ca3e5
feat(compliance): Loader and Execute ( #1465 )
2022-11-23 15:53:53 +01:00
github-actions[bot]
1a70a45805
feat(regions_update): Changes in regions for AWS services. ( #1508 )
2022-11-23 15:11:22 +01:00
Sergio Garcia
989638a42d
feat(RDS): Service and missing checks ( #1513 )
2022-11-23 14:34:51 +01:00
Sergio Garcia
9204142eaf
feat(display): add progress bar and summary table ( #1512 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-11-22 11:18:43 +01:00
alexr3y
af1d85ae75
feat(compliance): ENS RD2022 first draft and json converter ( #1502 )
2022-11-21 12:13:24 +01:00
Toni de la Fuente
25d92ca4b0
feat(CIS): Compliance for CIS AWS 1.4 and 1.5 ( #1509 )
2022-11-21 11:30:21 +01:00
Sergio Garcia
52a3e990c6
feat(shield): Service and checks ( #1504 )
2022-11-21 10:18:54 +01:00
Pepe Fagoaga
1370e0dec4
fix(directoryservice): Errors related to the DS Type ( #1506 )
2022-11-21 09:59:37 +01:00
github-actions[bot]
f99a89eae2
feat(regions_update): Changes in regions for AWS services. ( #1484 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-11-21 07:54:13 +01:00
Pepe Fagoaga
9954763356
feat(Lambda): Service and checks ( #1491 )
2022-11-17 22:59:28 +01:00
Nacho Rivera
538496ed6b
feat(): workspace service and checks ( #1503 )
2022-11-17 22:59:14 +01:00
Nacho Rivera
7d80a9d048
feat(): ECS service and checks ( #1476 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: sergargar <sergio@verica.io >
2022-11-17 22:54:38 +01:00
Nacho Rivera
a0ef56f245
feat(): sqs service and checks ( #1501 )
2022-11-17 22:51:36 +01:00
Sergio Garcia
e016fb2d6b
feat(TrustedAvisor): add TrustedAvisor tests and checks ( #1498 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-11-17 22:36:06 +01:00
Sergio Garcia
62081cb399
feat(ec2): add extra7124 ( #1500 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-11-17 22:34:56 +01:00
Sergio Garcia
bfc8c90abb
feat(Glue): add Glue tests and checks ( #1495 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-11-17 21:06:15 +01:00
Sergio Garcia
967990b76d
feat(EC2): add EC2 tests and checks ( #1482 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-11-17 21:01:47 +01:00
Pepe Fagoaga
6ff9f30473
feat(ssm): Service and checks ( #1496 )
2022-11-17 20:59:55 +01:00
Nacho Rivera
025b0547cd
feat(): redshift service and checks ( #1497 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-11-17 20:50:30 +01:00
Sergio Garcia
3370475fe9
feat(ELB): add ELB and ELBv2 tests and checks ( #1489 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-11-17 20:30:27 +01:00
Pepe Fagoaga
12896cceaa
feat(Route53): Service and checks ( #1493 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-11-17 19:57:20 +01:00
Nacho Rivera
62ffe26b42
feat(): sns checks and services ( #1494 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-11-17 19:45:41 +01:00
Nacho Rivera
c83c4d0892
feat(): ECR service and checks ( #1475 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: sergargar <sergio@verica.io >
2022-11-17 19:41:03 +01:00
Nacho Rivera
9ff9b68d91
feat(): guardduty checks and service ( #1492 )
2022-11-17 19:29:36 +01:00
Nacho Rivera
daa299c7a6
feat(): Sagemaker service and checks ( #1490 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-11-17 12:56:36 +01:00
Nacho Rivera
67b5de205b
feat(): EKS service and checks ( #1479 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: sergargar <sergio@verica.io >
2022-11-17 11:50:13 +01:00
Nacho Rivera
5a9c064943
feat(): opensearch service and checks ( #1487 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-11-17 11:48:18 +01:00
Pepe Fagoaga
24ca19d502
feat(EMR): Service and checks ( #1486 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-11-17 11:31:20 +01:00
Pepe Fagoaga
d2d2c75967
feat(directoryservice): Service and checks ( #1477 )
2022-11-17 11:16:36 +01:00
Pepe Fagoaga
684b7fe0b8
feat(secretsmanager): Service and check ( #1483 )
2022-11-16 10:23:05 +01:00
Pepe Fagoaga
2c5320a0b0
feat(CloudFront): Service and Checks ( #1470 )
2022-11-16 10:21:43 +01:00
Pepe Fagoaga
30738d7810
feat(Glacier): Service and check ( #1480 )
2022-11-15 17:41:58 +01:00
Sergio Garcia
5281d521f4
feat(DynamoDB): add DynamoDB service and checks ( #1468 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-11-15 14:21:09 +01:00
github-actions[bot]
58bdbadb11
feat(regions_update): Changes in regions for AWS services. ( #1478 )
2022-11-15 11:16:28 +01:00
github-actions[bot]
e9b2f1d2fb
feat(regions_update): Changes in regions for AWS services. ( #1466 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-11-14 17:54:46 +01:00
Sergio Garcia
8c8763a620
feat(CIS checks): Complete CIS checks ( #1461 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Nacho Rivera <59198746+n4ch04@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-11-14 17:50:26 +01:00
Pepe Fagoaga
6497f7bfe8
fix(codebuild_project_user_controlled_buildspec): regex ( #1474 )
2022-11-14 17:35:23 +01:00
Pepe Fagoaga
9b035230ac
feat(CodeArtifact): Service and checks ( #1473 )
2022-11-14 16:28:00 +01:00
Pepe Fagoaga
9d3bff9e54
fix: Linter issues ( #1471 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-11-14 16:21:51 +01:00
Nacho Rivera
3b86b3ac77
feat(codebuild): codebuild service and checks ( #1467 )
2022-11-14 15:09:56 +01:00
Nacho Rivera
c87327bb77
feat(EFS): Service and checks ( #1469 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: sergargar <sergio@verica.io >
2022-11-14 15:05:41 +01:00
github-actions[bot]
c9880b953f
feat(regions_update): Changes in regions for AWS services. ( #1457 )
2022-11-10 18:13:20 +01:00
Sergio Garcia
b187bf12c2
feat(CloudWatch): add CloudWatch service and checks ( #1456 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Nacho Rivera <59198746+n4ch04@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-11-10 13:29:46 +01:00
Sergio Garcia
19ab29628f
feat(S3): add S3 service and checks ( #1450 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-11-08 18:06:06 +01:00
github-actions[bot]
bbecd505eb
feat(regions_update): Changes in regions for AWS services. ( #1453 )
2022-11-08 12:26:57 +01:00
Pepe Fagoaga
69d3a9e363
feat(cloudformation): Service and Checks ( #1454 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-11-07 16:17:38 +01:00
Pepe Fagoaga
f5873fe0d7
feat(appstream): Service and Checks ( #1452 )
2022-11-07 16:16:58 +01:00
Nacho Rivera
4762e1cc4c
feat(test): Remaining IAM tests ( #1451 )
2022-11-04 13:38:22 +01:00
Nacho Rivera
8ae989cce8
feat(cloudtrail): cloudtrail service and checks ( #1449 )
...
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-11-03 15:39:41 +01:00
Sergio Garcia
c6adf3a6d8
feat(account): Aaccount service and manual checks ( #1446 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-11-02 11:36:57 +01:00
Pepe Fagoaga
976e07c125
feat(services): Sort services alphabetically ( #1443 )
2022-10-31 15:06:01 +01:00
Sergio Garcia
7c1dc1c977
feat(count): add number of services and checks ( #1442 )
2022-10-31 14:49:54 +01:00
Sergio Garcia
3e749dd652
feat(config): add config service and checks and check43 ( #1441 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-10-31 14:37:59 +01:00
Sergio Garcia
adf04ba632
feat(apigateway): Service and checks for APIGW v1 and v2 ( #1415 )
2022-10-31 14:13:11 +01:00
Sergio Garcia
f7842fdcdd
feat(kms): add service, checks and tests ( #1439 )
2022-10-28 12:30:34 +02:00
Sergio Garcia
b2976984d3
feat(vpc): add service, checks and tests ( #1432 )
2022-10-28 12:15:15 +02:00
Sergio Garcia
7e1b0d13c7
feat(autoscaling): Add AutoScaling service, check and test ( #1426 )
2022-10-28 09:33:29 +02:00
Pepe Fagoaga
8487777f96
fix(typo): FPT -> FTP ( #1431 )
2022-10-26 08:57:45 +02:00
Nacho Rivera
2d86254549
fix(allowlist): allowlist file default value ( #1425 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-10-24 09:29:24 +02:00
github-actions[bot]
e77486f771
feat(regions_update): Changes in regions for AWS services. ( #1424 )
2022-10-24 09:14:28 +02:00
Sergio Garcia
53f8a9698f
feat(allowlist): Add Allowlist feature ( #1395 )
2022-10-21 11:33:23 +02:00
Sergio Garcia
bd6eb723dd
feat(ACM): Add check and service for ACM ( #1365 )
2022-10-20 17:17:12 +02:00
Sergio Garcia
5c78e6b171
feat(line_no): Add line number to errors ( #1422 )
2022-10-20 14:32:35 +02:00
github-actions[bot]
44ce95979b
feat(regions_update): Changes in regions for AWS services. ( #1421 )
2022-10-20 11:54:22 +02:00
Nacho Rivera
44ce00d6e9
fix(iam_user_two_active_access_key_test): fix tests ( #1418 )
2022-10-20 08:34:28 +02:00
Nacho Rivera
df0925394b
feat(extra7100): Migrate check extra7100 -> iam_no_custom_policy_permissive_role_assumption ( #1417 )
2022-10-20 08:10:54 +02:00
Sergio Garcia
5b5b0b0405
feat(securityhub_check): Add check and service for SecurityHub ( #1360 )
...
Co-authored-by: Toni de la Fuente <toni@blyx.com >
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-10-19 15:21:07 +02:00
github-actions[bot]
6e73321a95
feat(regions_update): Changes in regions for AWS services. ( #1416 )
2022-10-19 12:11:28 +02:00
Nacho Rivera
d09020d144
feat(iam): Add IAM checks ( #1407 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-10-19 09:51:25 +02:00
Nacho Rivera
e2a8fa8738
feat(iam_check_saml_providers_sts): Check and test ( #1413 )
2022-10-18 13:23:50 +02:00
Toni de la Fuente
1119ee54af
feat(accessanalyzer): Check accessanalyzer_enabled_without_findings ( #1359 )
...
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-10-18 12:26:42 +02:00
github-actions[bot]
e6cd7c838f
feat(regions_update): Changes in regions for AWS services. ( #1414 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-10-18 12:21:39 +02:00
Nacho Rivera
2b59068e50
feat(password_policy_checks): Include password policy checks ( #1364 )
2022-10-18 10:15:15 +02:00
github-actions[bot]
5cc3888022
feat(regions_update): Changes in regions for AWS services. ( #1406 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-10-17 08:09:53 +02:00
github-actions[bot]
78975c286a
feat(regions_update): Changes in regions for AWS services. ( #1404 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-10-14 11:20:08 +02:00
github-actions[bot]
7a40d9c44b
feat(regions_update): Changes in regions for AWS services. ( #1392 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-10-07 11:57:42 +02:00
github-actions[bot]
460b71e3d9
feat(regions_update): Changes in regions for AWS services. ( #1387 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-10-06 11:08:26 +02:00
Sergio Garcia
107070e6e2
feat(shodan_integration): add ec2_elastic_ip_shodan check and config yaml ( #1356 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-10-05 13:48:34 +02:00
github-actions[bot]
fb176f56d0
feat(regions_update): Changes in regions for AWS services. ( #1378 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-09-30 11:11:07 +02:00
github-actions[bot]
f67dc57384
feat(regions_update): Changes in regions for AWS services. ( #1373 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-09-22 11:08:50 +02:00
github-actions[bot]
dc7c0cd981
feat(regions_update): Changes in regions for AWS services. ( #1371 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-09-16 11:07:52 +02:00
github-actions[bot]
5cda2ad19f
feat(regions_update): Changes in regions for AWS services. ( #1367 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-09-15 12:10:27 +02:00
github-actions[bot]
470b2ae369
feat(regions_update): Changes in regions for AWS services. ( #1366 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-09-13 11:07:28 +02:00
github-actions[bot]
14ee08ce6d
feat(regions_update): Changes in regions for AWS services. ( #1363 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-09-09 13:55:50 +02:00
github-actions[bot]
c85b2567f7
feat(regions_update): Changes in regions for AWS services. ( #1361 )
2022-09-08 14:22:34 +02:00
github-actions[bot]
ef110128f2
feat(regions_update): Changes in regions for AWS services. ( #1358 )
2022-09-05 10:42:50 +02:00
github-actions[bot]
1fc249e772
feat(regions_update): Changes in regions for AWS services. ( #1355 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-09-01 16:59:34 +02:00
Pepe Fagoaga
7388cb33d4
test(iam_user_two_active_access_key_test): Create unit tests ( #1354 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-09-01 13:35:00 +02:00
Sergio Garcia
f40c8f2dc5
feat(output-bucket-no-assume): add -D flag ( #1353 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-08-31 16:40:59 +02:00
Sergio Garcia
eb914d03ce
feat(services_testing): Add tests for EC2, IAM and S3 services ( #1352 )
...
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
Co-authored-by: sergargar <sergio@verica.io >
2022-08-31 13:40:28 +02:00
StylusFrost
e087f2e1b6
fix(check_network_acl): check with all rules together ( #1350 )
2022-08-30 13:58:50 +01:00
github-actions[bot]
f0c24d5152
feat(regions_update): Changes in regions for AWS services. ( #1351 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-08-30 11:12:01 +02:00
Sergio Garcia
44f514f02c
feat(s3_output): send outputs to S3 bucket ( #1343 )
2022-08-29 08:43:34 +02:00
Sergio Garcia
a63c42f59c
feat(custom_filename): custom output filename ( #1345 )
...
* feat(s3_output): send outputs to S3 bucket
* feat(custom_filename): custom output filename
Co-authored-by: sergargar <sergio@verica.io >
2022-08-26 13:08:34 +02:00
Sergio Garcia
65185943ca
feat(shub_compatibility): send finding to filter regions and change checkType to list ( #1341 )
2022-08-26 11:24:12 +01:00
github-actions[bot]
de1f707434
feat(regions_update): Update regions for AWS services. ( #1349 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-08-26 12:01:53 +02:00
github-actions[bot]
0d0e00a8bd
feat(regions_update): Update regions for AWS services. ( #1344 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-08-25 11:48:40 +02:00
Sergio Garcia
5054b82030
feat(api_banner): remove API region from banner ( #1342 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-08-25 08:06:03 +02:00
Nacho Rivera
182d0381c3
chore(tests): Add tests to output generation ( #1340 )
...
* chore(tests): added tests to outputs
* fix(timestamp): change timestamp coming from config
2022-08-23 11:51:40 +02:00
Sergio Garcia
fb0429b2a5
fix(mkdir_security-hub): mkdir when using security-hub ( #1339 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-08-22 12:26:40 +02:00
Pepe Fagoaga
c7a43b09ce
chore: Move shared to lib/ for AWS ( #1321 )
...
* chore: Move shared to lib/
* chore: Move shared to lib/ for AWS
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-08-22 10:41:09 +01:00
Sergio Garcia
d18b430c16
feat(new_checks): add check for ec2 and iam ( #1337 )
...
* fix(key_error): remove KeyError.
* feat(ftp_check): add ec2_securitygroup_allow_ingress_from_internet_to_tcp_ftp_port_20_21 check.
* feat(password_check): iam_password_policy_expires_passwords_within_15_days_or_less added.
* change days to 90
Co-authored-by: sergargar <sergio@verica.io >
2022-08-22 10:33:43 +02:00
Sergio Garcia
9b4415f7b3
fix(s3_regions): verify if there are filter regions ( #1338 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-08-22 10:30:26 +02:00
github-actions[bot]
6c36c599a5
feat(regions_update): Update regions for AWS services. ( #1336 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-08-22 08:11:05 +01:00
github-actions[bot]
a6fb000266
feat(regions_update): Update regions for AWS services. ( #1325 )
2022-08-18 12:47:45 +01:00
Sergio Garcia
92024e2b0e
feat(iam_password_policy): add password policy class. ( #1330 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-08-09 09:08:00 -07:00
Sergio Garcia
b229c01450
fix(key_error): remove KeyError. ( #1326 )
2022-08-08 22:26:50 +02:00
Sergio Garcia
15867d3ef6
fix(version): Update version to beta ( #1327 )
2022-08-08 22:24:03 +02:00
github-actions[bot]
5abd7817af
feat(regions_update): Update regions for AWS services. ( #1324 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-08-05 11:19:45 +02:00
Pepe Fagoaga
fa0fdbf0d1
fix(output): No resources ( #1320 )
2022-08-04 18:46:03 +02:00
Pepe Fagoaga
f30245bb15
fix(nacls): Handle IPv6 source ingress ( #1319 )
2022-08-04 16:33:16 +02:00
Pepe Fagoaga
bc5df671dd
feat(check): handle errors ( #1318 )
2022-08-04 16:09:30 +02:00
Sergio Garcia
a796545da5
feat(regions): add regions to resources ( #1285 )
2022-08-04 13:35:13 +02:00
Pepe Fagoaga
6e58991986
fix(time_comparison): Correct time formats ( #1317 )
2022-08-04 11:41:54 +02:00
Pepe Fagoaga
85a6634a56
feat(check): iam-policy-allows-privilege-escalation ( #1315 )
...
* feat(check): iam-policy-allows-privilege-escalation
* feat(metadata): Enrich check metadata
Co-authored-by: Toni de la Fuente <toni@blyx.com >
Co-authored-by: Toni de la Fuente <toni@blyx.com >
2022-08-04 11:26:42 +02:00
Pepe Fagoaga
5541ec0763
fix(ec2_instance_public_ip): format resource_id ( #1316 )
2022-08-04 11:22:50 +02:00
github-actions[bot]
a9aabd0082
feat(regions_update): Update regions for AWS services. ( #1314 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-08-04 11:04:42 +02:00
Pepe Fagoaga
cbd375f5d0
fix(iam): Set user's region in findings ( #1312 )
2022-08-04 10:04:00 +02:00
Pepe Fagoaga
de96894a4d
feat(metadata): Include EC2 subservices ( #1311 )
2022-08-03 17:29:43 +02:00
Pepe Fagoaga
5e40fc28c9
feat(output): Report generation data, color legend and assumed role information ( #1300 )
...
* feat(color-code): include legend
* chore(version): alfa -> alpha
* chore: remove comments
* feat(credentials): Include report generation data
2022-08-03 17:09:38 +02:00
Pepe Fagoaga
0b34940e20
feat(output): Include tab for better reading ( #1310 )
2022-08-03 16:55:11 +02:00
Pepe Fagoaga
f93dfe5e78
feat(version): Include -V ( #1309 )
2022-08-03 16:45:57 +02:00
Pepe Fagoaga
b59042d9e9
fix(check_name): Remove check_name ( #1307 )
2022-08-03 16:38:53 +02:00
Pepe Fagoaga
0c2ed53c54
refactor(security_groups): general function ( #1306 )
2022-08-03 16:38:29 +02:00
Pepe Fagoaga
fe474ae9df
chore: change default log level ( #1303 )
2022-08-03 12:21:10 +02:00
Pepe Fagoaga
6f0d42a881
fix: Sort checks ( #1302 )
...
* fix: sort checks
* fix(metadata): Include missing provider
2022-08-03 12:14:23 +02:00
Pepe Fagoaga
5e479a5050
Prwlr 750 exclude metadata json order ( #1301 )
...
* chore: exclude metadata
* chore: exclude metadata
* chore: no prettify
* chore: no prettify
2022-08-03 12:07:36 +02:00
Pepe Fagoaga
dfbc618d44
chore(metadata): Remove CheckName and CheckAlias field ( #1299 )
2022-08-03 10:12:34 +02:00
Pepe Fagoaga
9f82a8a6d6
feat(provider): Set AWS as the default provider ( #1298 )
2022-08-02 13:43:42 +02:00
github-actions[bot]
476d93b33e
feat(regions_update): Update regions for AWS services. ( #1295 )
2022-08-02 11:46:12 +02:00
github-actions[bot]
9895f9f595
feat(regions_update): Update regions for AWS services. ( #1292 )
2022-08-02 09:05:47 +02:00
github-actions[bot]
510cca6b29
feat(regions_update): Update regions for AWS services. ( #1288 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-07-28 13:30:51 -04:00
Sergio Garcia
66d2b7b4d9
feat(ec2_checks): add several checks for ec2 ( #1268 )
...
* feat(checks): add extra718
* feat(checks): add extra763
* feat(checks): add extra748, extra749, extra72
* feat(checks): add extra750
* feat(checks): add check45
* feat(checks): add check46, check45, check42, check41
* feat(metadata_sample): add sample of check metadata
* feat(pci-group): add pci group.
* feat(cloud9): environment setup.
* fix(protocol): add protocol conditions
Co-authored-by: sergargar <sergio@verica.io >
2022-07-27 00:21:40 +02:00
Sergio Garcia
da76f69e51
feat(s3_checks): add several checks for s3 ( #1266 )
...
* feat(checks): add extra718
* feat(checks): add extra763
Co-authored-by: sergargar <sergio@verica.io >
2022-07-25 19:45:31 +02:00
Sergio Garcia
ed1572d2d9
feat(iam_checks): add several checks for iam ( #1264 )
...
* feat(extra71): add iam_administrator_access_with_mfa check.
* feat(checks): add extra7125 and extra7123
* feat(checks): add check14
* feat(checks): add check112
* feat(checks): add check11
* feat(checks): add check114 and check113
* feat(checks): add check12
* feat(classes): add IAM classess.
* Update iam_root_hardware_mfa_enabled.py
* fix(comments): Resolve comments.
Co-authored-by: sergargar <sergio@verica.io >
2022-07-22 12:14:49 +02:00
Sergio Garcia
7d0a95e98f
feat(shub): add Security Hub integration ( #1255 )
2022-07-21 12:22:56 +02:00
github-actions[bot]
67834c3f8b
feat(regions_update): Update regions for AWS services. ( #1273 )
2022-07-21 11:27:54 +02:00
github-actions[bot]
a5e58ad9ce
feat(regions_update): Update regions for AWS services. ( #1267 )
2022-07-15 11:15:17 +02:00
github-actions[bot]
5cb363c389
feat(regions_update): Update regions for AWS services. ( #1263 )
2022-07-13 16:21:26 +02:00
github-actions[bot]
b80c7222ea
feat(regions_update): Update regions for AWS services. ( #1256 )
2022-07-08 11:04:50 +02:00
Sergio Garcia
611bd909ef
feat(json-asff): add json-asff ouput ( #1252 )
...
* feat(json): add json output
* feat(pydantic): add pydantic model to json output
* feat(json-asff): add json-asff ouput
* Update config/config.py
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
* Update models.py
* fix(comments): Resolve comments.
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-07-08 09:37:32 +02:00
Sergio Garcia
db3de2d69e
feat(sort_exec): Sort checks execution ( #1253 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-07-07 09:12:15 +02:00
Sergio Garcia
7b9fae5605
feat(json): add json output ( #1251 )
...
* feat(json): add json output
* feat(pydantic): add pydantic model to json output
Co-authored-by: sergargar <sergio@verica.io >
2022-07-06 14:35:15 +02:00
Sergio Garcia
d47bb09b2a
feat(organizations): Extract Metadata from Management Account ID (-O) ( #1248 )
...
* feat(organizations): add organizations funtion to provider
* feat(organizations): add organizations -O option
* fix(comments): Resolve comments.
* feat(test): add test
* fix(pipfile): update pipfile
Co-authored-by: sergargar <sergio@verica.io >
2022-07-05 12:00:14 +02:00
Pepe Fagoaga
b2899bda69
test(aws-provider): First tests ( #1231 )
...
* test(pre-commit): Include security checks
* test(pre-commit): Include dependencies
* test(aws-provider): First unit tests
* test(arn-parsing): Include first tests
* chore(providers): Remove old comments
2022-07-04 12:51:31 +02:00
Nacho Rivera
11652838e2
feat(outputS): Output generation format CSV ( #1230 )
...
* chore(csv): first version csv output
* chore(pytest): added pytest dependency
* chore(outputs): organizations demo
* chore(compliance): Added new dataclass for each compliance framework
* fix(test org values): deleted test values in orgs instantiation
* fix(csv): formatted to match output format
* fix(csv output): Reformulation of check report and minor changes
* fix(minor issues): Fix various issues coming from PR comments
* fix(csv): Renamed csv output data model
* fix(output dir): create default if not present
* fix(typo): remove s
* fix(oldcode)
* fix(typo)
* fix(output): Only send to csv when -M is passed
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-07-04 10:30:47 +02:00
github-actions[bot]
a1dcc1310a
feat(regions_update): Update regions for AWS services. ( #1246 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-07-01 11:11:58 +02:00
github-actions[bot]
7e2303a732
feat(regions_update): Update regions for AWS services. ( #1243 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-06-30 11:12:07 +02:00
github-actions[bot]
0d7214a4a6
feat(regions_update): Update regions for AWS services. ( #1241 )
...
Co-authored-by: jfagoagas <jfagoagas@users.noreply.github.com >
2022-06-29 12:54:23 +02:00
github-actions[bot]
cbd23c7fb1
feat(regions_update): Update regions for AWS services. ( #1234 )
2022-06-28 09:07:57 +02:00
Sergio Garcia
a2b40caeda
feat(default_regions): Set profile region as default for global regions. ( #1228 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-06-23 17:28:01 +02:00
Pepe Fagoaga
66d57a3d36
feat(severity): Run checks by severity ( #1223 )
2022-06-23 16:56:06 +02:00
Pepe Fagoaga
2288702d26
feat(list-services): List Prowler available services by provider ( #1222 )
2022-06-23 16:53:44 +02:00
github-actions[bot]
cdbf62a9e5
feat(regions_update): Update regions for AWS services. ( #1226 )
2022-06-23 11:20:11 +02:00
Sergio Garcia
25dc6c4a20
feat(refresh_aws_regions): Auto refresh of AWS regions for services. ( #1221 )
...
* feat(refresh_aws_regions): Auto refresh of AWS regions for services.
* Update refresh_aws_services_regions.yml
* Delete aws_regions_by_service.json
* Update refresh_aws_services_regions.yml
Co-authored-by: sergargar <sergio@verica.io >
2022-06-23 10:47:43 +02:00
Pepe Fagoaga
af2bdc37ea
fix(quit): Replace with sys.exit() ( #1220 )
2022-06-22 16:48:10 +02:00
Pepe Fagoaga
438ef9f348
feat(logger): Logs to file with custom log level ( #1217 )
2022-06-22 13:26:29 +02:00
Pepe Fagoaga
6ac6ef359f
feat(validate-metadata): Validate Check's metadata and list checks ( #1215 )
2022-06-22 10:12:55 +02:00
Pepe Fagoaga
b07b7f3f26
feat(list-groups): List available groups ( #1213 )
2022-06-22 09:59:48 +02:00
Sergio Garcia
ecefda11c7
feat(quiet): Add -q option. ( #1211 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-06-22 09:45:03 +02:00
Pepe Fagoaga
21f8f56c18
feat(exclude-groups-and-services) ( #1205 )
2022-06-21 08:05:32 +02:00
Nacho Rivera
e52ab12696
feat(global_aws_session): Global data structure for the current AWS audit ( #1212 )
...
* fix(audit info): Common data structure for current audit
* fix(iam): iam session audit fixed
* feat(aws_session): Include else block
Co-authored-by: Pepe Fagoaga <pepe@verica.io >
2022-06-21 07:53:49 +02:00
Sergio Garcia
b89b883741
feat(regions): Filter Audited Regions (-f) ( #1202 )
...
* feat(filter-regions): Added -f and ebs encryption check.
* feat(filter-regions): Added -f and ebs encryption check.
* feat(regional_clients): add regional_clients.
* fix(global variables): created global variables
* chore(role option): Mixed -A/-R option including error handling
* fix(arn): import errors from error.py file
* fix(review_comments): Review PR comments.
Co-authored-by: sergargar <sergio@verica.io >
Co-authored-by: n4ch04 <nachor1992@gmail.com >
2022-06-20 11:25:26 +02:00
Pepe Fagoaga
f694a6d12a
feat(groups): Launch specific checks from groups and services ( #1204 )
2022-06-16 13:27:25 +02:00
Pepe Fagoaga
8abcc5988d
feat(checks): Exclude checks with -e/--exclude-checks
...
* feat(checks): Select checks to run
* feat(checks): Include tests
* feat(checks): Exclude checks with -e
* fix(checks): Include missing path
* fix(checks): Include comments
2022-06-16 12:57:36 +02:00
Pepe Fagoaga
9d5e43e6a2
feat(checks): Select checks to run from provider using -C/--checks-file ( #1200 )
2022-06-16 12:49:55 +02:00
Pepe Fagoaga
162852634e
feat(checks): Select checks to run from provider using -c/--checks ( #1197 )
...
* feat(checks): Select checks to run
* Update providers/aws/services/iam/iam_disable_30_days_credentials/iam_disable_30_days_credentials.py
Co-authored-by: Sergio Garcia <38561120+sergargar@users.noreply.github.com >
2022-06-16 12:20:03 +02:00
Nacho Rivera
33c6801501
feat(core): AWS Role Assumption support ( #1199 )
...
* chore(assuming role): assume role logic and exceptions demo
* chore(exceptions): Exception handling
* fix(get_caller_identity): Deleted duplicate get_caller_identity and add info entries
* chore(creds renewal): Added support to credential renewal
* chore(assume options): Added condition for -I/-T options
* fix(typo/comments): Deleted f in logger config and comments
* chore(session_duration): limits for -T option
* fix(log messages): Changed -A/-R log messages
* fix(critical error): Errors in input options are critical
* fix(ClientError): IAM service ClientError exception support
2022-06-16 12:00:46 +02:00
Sergio Garcia
eb679f50f1
feat(reorganize_folders): Merge checks. ( #1196 )
...
Co-authored-by: sergargar <sergio@verica.io >
2022-06-14 13:10:26 +02:00
Pepe Fagoaga
36fcab17f3
feat(prowler3): pipenv usage
2022-06-14 12:51:53 +02:00
Pepe Fagoaga
b22faa01ea
feat(prowler3): first commit
2022-06-14 12:22:54 +02:00
Pepe Fagoaga
9b05a9c334
delete(prowler): Main file
2022-06-14 12:19:31 +02:00
Pepe Fagoaga
0f39ee9b34
rename(provider): keep old version
2022-06-14 12:19:10 +02:00
Pepe Fagoaga
9a0088c84e
delete(include): Old bash libraries
2022-06-14 12:15:39 +02:00
Toni de la Fuente
c533d48cf5
New folder structure phase 3
2022-05-25 16:45:23 +02:00
Toni de la Fuente
6a3ceb6bc0
New folder structure phase 2
2022-05-25 16:43:54 +02:00
Toni de la Fuente
5ad517ce83
New folder structure phase 1
2022-05-25 12:54:15 +02:00