{"id":18876662,"url":"https://github.com/illumiolabs/illumio-guard-duty-shield","last_synced_at":"2026-03-12T21:32:37.686Z","repository":{"id":44995239,"uuid":"205089658","full_name":"illumiolabs/illumio-guard-duty-shield","owner":"illumiolabs","description":"This repo contains the lambda function code that can leverage AWS GuardDuty findings to prevent malicious IPs and domains from accessing your AWS hosted applications by using threat intel from the GuardDuty findings and using it to complement Illumio policy rules","archived":false,"fork":false,"pushed_at":"2022-01-14T22:36:40.000Z","size":400,"stargazers_count":4,"open_issues_count":0,"forks_count":1,"subscribers_count":6,"default_branch":"master","last_synced_at":"2025-04-14T18:48:12.261Z","etag":null,"topics":["aws","aws-guardduty","aws-lambda","illumiolabs"],"latest_commit_sha":null,"homepage":null,"language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"apache-2.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/illumiolabs.png","metadata":{"files":{"readme":"README.md","changelog":"CHANGELOG.md","contributing":"CONTRIBUTING.md","funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":"security.md","support":null}},"created_at":"2019-08-29T05:46:53.000Z","updated_at":"2022-01-14T23:02:53.000Z","dependencies_parsed_at":"2022-09-24T21:51:56.742Z","dependency_job_id":null,"html_url":"https://github.com/illumiolabs/illumio-guard-duty-shield","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"purl":"pkg:github/illumiolabs/illumio-guard-duty-shield","repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/illumiolabs%2Fillumio-guard-duty-shield","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/illumiolabs%2Fillumio-guard-duty-shield/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/illumiolabs%2Fillumio-guard-duty-shield/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/illumiolabs%2Fillumio-guard-duty-shield/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/illumiolabs","download_url":"https://codeload.github.com/illumiolabs/illumio-guard-duty-shield/tar.gz/refs/heads/master","sbom_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/illumiolabs%2Fillumio-guard-duty-shield/sbom","scorecard":null,"host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":286080680,"owners_count":30445073,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2026-03-12T21:31:01.033Z","status":"ssl_error","status_checked_at":"2026-03-12T21:30:43.161Z","response_time":114,"last_error":"SSL_connect returned=1 errno=0 peeraddr=140.82.121.5:443 state=error: unexpected eof while reading","robots_txt_status":"success","robots_txt_updated_at":"2025-07-24T06:49:26.215Z","robots_txt_url":"https://github.com/robots.txt","online":false,"can_crawl_api":true,"host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["aws","aws-guardduty","aws-lambda","illumiolabs"],"created_at":"2024-11-08T06:14:45.097Z","updated_at":"2026-03-12T21:32:37.658Z","avatar_url":"https://github.com/illumiolabs.png","language":"Python","funding_links":[],"categories":[],"sub_categories":[],"readme":"# Illumio Guard Duty Shield\n\n[![Slack](images/slack.svg)](http://slack.illumiolabs.com)\n[![License](images/license.svg)](LICENSE)\n\n**Project Description**\n\nThis repo provides an AWS Lambda Function designed to monitor\nAWS GuardDuty for malicious IPs, and import them into an Illumio PCE IP list.\nThis allows Illumio customers to prevent malicious IPs and domains from accessing\nAWS-hosted applications by using threat intel from GuardDuty findings to\ncomplement Illumio policy rules.\n\n**Project Technology stack**\n\nThe application is written for Python 3 and tested up to v3.9; it is designed to be run as an AWS Lambda function as a container or loaded into the Python runtime.\nFor more details on packaging Lambda functions please visit https://docs.aws.amazon.com/lambda/latest/dg/lambda-functions.html\n\n**Project workflow**\n\n![](images/guard-duty-workflow.jpg)\n\n\n## Installation\n\nDetailed instructions on how to deploy the Lambda Function are located\nin the [INSTALL](INSTALL.md) document.\n\n## Support\n\nThe AWS Lambda Function is released and distributed as open source software subject to the\n[LICENSE](LICENSE). Illumio has no obligation or responsibility related to the AWS Lambda\nFunction with respect to support, maintenance, availability, security or otherwise. Please\nread the entire [LICENSE](LICENSE) for additional information regarding the permissions and\nlimitations. You can engage with the author \u0026 contributors team and community on SLACK.\n\n## Help or Docs\n\nYou can visit us at https://labs.illumio.com\nIf you have questions, please use slack or email to contact us directly.\nIf you have issues, bug reports, etc, please file an issue in this repository's Issue Tracker.\n\n## Contributing\n\nInstructions on how to contribute:  [CONTRIBUTING](CONTRIBUTING.md).\n\n## Links\n\n * Illumio documentation page for configuring Illumio ASP https://support.illumio.com/public/documentation/index.html\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fillumiolabs%2Fillumio-guard-duty-shield","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fillumiolabs%2Fillumio-guard-duty-shield","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fillumiolabs%2Fillumio-guard-duty-shield/lists"}