Find and Fix Insecure AWS IAM Permissions before Others Do!
CodeShield uncovers how attackers can abuse over-privileged IAM policies and vulnerabilities to move within your cloud and reach your critical assets.
CodeShield helps you fend off IAM privilege escalation attacks by detecting all open vulnerabilities in your current IAM permissions setup. Scan your entire cloud infrastructure with cutting-edge algorithms in less than 15 minutes and see all possible attack scenarios in a shocking step-by-step visualization. CodeShield comes with a user-friendly dashboard and simple guidance how to fix every issue.
Empower your team to guard against critical attack vectors effortlessly.
Highlights
Finally get on top of your AWS IAM Permissions and Access Management
Detect AWS IAM Privilege Escalation Vulnerabilities in your AWS account before others do! See real, possible step-by-step attack scenarios based on your current security posture and get actionable advice on how to fix every issue
Employ and maintain a simple and reliable IAM security posture across all your AWS accounts
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You buy this product as a contract based on the number of scans you need. Two package sizes are available. The 2 Scans package includes one technical discussion call covering results and mitigation proposals. The 10 Scans package includes a technical call to discuss results and mitigation proposals. Both dimensions are priced by scan volume, so you pick the package matching how many scans you expect to run. The larger package gives you more scans under a single contract.
Top-of-mind questions for buyers
What counts as one scan for billing purposes?
One scan connects to your AWS account and analyzes your cloud environment for IAM privilege escalation vulnerabilities and attack paths. Each scan runs against your account using a read-only cross-account role. The package quantity sets how many scans you can trigger under the contract.
What happens when I use up all the scans in my package?
Each package includes a fixed number of scans, either 2 or 10. Once you run those scans, you have used your contracted amount. To run more scans, you would need additional capacity. Contact the vendor about extending your contract if you exceed your package total.
Can I still view past scan results after my contract ends?
Yes. If your subscription is canceled, you can still log into the dashboard and view your old scan results. However, you cannot trigger any new scans once the contract ends.
codeshield.io
Helpful?
Vendor refund policy
None
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
We support onboarding and usage of our product to the fullest. For questions or feature requests, please contact support@codeshield.io. If preferred, we are happy to jump into a call with you to resolve all your questions and help you onboard!
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
We Find and Fix Insecure AWS IAM Permissions before Others Do!
CodeShield uncovers how attackers can abuse over-privileged IAM policies and vulnerabilities to move within your cloud and reach your critical assets.
Book an audit to get your findings, including consulting on how to fix vulnerabilities in you IAM!
Great architectural overview, greatly helps me understand security leaks from an attacker's perspective
Reviewed on Nov 13, 2024
Review from a verified AWS customer
I tried out the product myself, and I really like it. In just 10 minutes after connecting my account I got the results.
My two takeaways: 1) The overview of all the cloud assets and the effective permissions each resource has to any other resource is mind-blowing. I now understand my design and architecture much better and know over-privileged resources and accesses to data. 2) The privilege-escalation attack scenarios are next-level. They find critical combinations of permissions that I could have never found manually. The findings are prioritized by attack goal and impact, which is a good way to start fixing them.
I haven't tried out the API or integration into CI/CD yet. I’ll do it later.