The primary purpose of this prpject is to showcase the deployment of a containerized application within an AWS environment, emphasizing security vulnerabilities for educational purposes.
An interactive wizard for launching EC2 instances that simplifies applying security best practices, by automatically creating limited security group / instance profile with SSM access to prevent misconfigurations.
Signing CloudFormation templates by creating a sha256 hash of the file, encrypted with the user's private key and stored in a base64 form in the CloudFormation template Metadata section.
I have nothing against Capital One, but I must say that Netflix published this article in November 2018: https://medium.com/netflix-techblog/netflix-information-secu...
I would expect folks to be prepared for this kind of vulnerability. Anyway the repo is for educational purposes and it's sarcastic name is, well, saracastic. Cap One is a great technology company.