cloud-security-guides
Cloud Security Guides is a cloud computing security knowledge base maintained by Tencent Security YUNDING LAB. It collects high-quality resources, literature, typical cloud security vulnerabilities, and knowledge graphs discovered during cloud security research, organized around a cloud reference model architecture to serve as a reference guide for cloud security capability building. The repository includes the YUNDING LAB cloud security panorama and attack-defense matrix, which provide knowledge graphs and abstract attack-defense models for cloud products to guide security work and support product security development. The project covers cloud computing reference architectures, cloud security guidance including compliance standards such as CSA STAR, ISO/IEC 27017 and 27018, benchmarks like NIST SP 800-190, CIS Kubernetes and Docker benchmarks, and whitepapers from major cloud providers. It also features threat modeling resources, top cloud security risks such as OWASP Cloud Top 10 and CSA Top Threats, contai