All Projects → crocup → FSEC-VM

crocup / FSEC-VM

Licence: GPL-3.0 license
Backend logic implementation for Vulnerability Management System

Programming Languages

python
139335 projects - #7 most used programming language
Dockerfile
14818 projects

Projects that are alternatives of or similar to FSEC-VM

H4cker
This repository is primarily maintained by Omar Santos and includes thousands of resources related to ethical hacking / penetration testing, digital forensics and incident response (DFIR), vulnerability research, exploit development, reverse engineering, and more.
Stars: ✭ 10,451 (+54905.26%)
Mutual labels:  hackers, cybersecurity, exploits, vulnerability-management, vulnerability-scanners
Faraday
Faraday introduces a new concept - IPE (Integrated Penetration-Test Environment) a multiuser Penetration test IDE. Designed for distributing, indexing, and analyzing the data generated during a security audit.
Stars: ✭ 3,198 (+16731.58%)
Mutual labels:  infosec, vulnerability-management, vulnerability-scanners
Xunfeng
巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。
Stars: ✭ 3,131 (+16378.95%)
Mutual labels:  exploits, infosec, vulnerability-scanners
Purify
All-in-one tool for managing vulnerability reports from AppSec pipelines
Stars: ✭ 72 (+278.95%)
Mutual labels:  infosec, vulnerability-management, vulnerability-scanners
Securitymanageframwork
Security Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management, account management, knowledge base management, security scanning automation function modules, and can be used for internal security management. This platform is designed to help Party A with fewer security personnel, complicated business lines, difficult periodic inspection and low automation to better achieve internal safety management.
Stars: ✭ 378 (+1889.47%)
Mutual labels:  exploits, infosec, vulnerability-scanners
Sec Admin
分布式资产安全扫描核心管理系统(弱口令扫描,漏洞扫描)
Stars: ✭ 222 (+1068.42%)
Mutual labels:  exploits, infosec, vulnerability-scanners
AttackSurfaceManagement
Discover the attack surface and prioritize risks with our continuous Attack Surface Management (ASM) platform - Sn1per Professional #pentest #redteam #bugbounty
Stars: ✭ 45 (+136.84%)
Mutual labels:  cybersecurity, vulnerability-management, vulnerability-scanners
Vuldash
Vulnerability Dashboard
Stars: ✭ 16 (-15.79%)
Mutual labels:  cybersecurity, infosec, vulnerability-management
Vuls
Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
Stars: ✭ 8,844 (+46447.37%)
Mutual labels:  cybersecurity, vulnerability-management, vulnerability-scanners
Wordlists
Infosec Wordlists
Stars: ✭ 271 (+1326.32%)
Mutual labels:  discovery, infosec
Getaltname
Extract subdomains from SSL certificates in HTTPS sites.
Stars: ✭ 320 (+1584.21%)
Mutual labels:  discovery, infosec
inthewilddb
Hourly updated database of exploit and exploitation reports
Stars: ✭ 127 (+568.42%)
Mutual labels:  vulnerability-management, vulnerability-scanners
Docker Security Images
🔐 Docker Container for Penetration Testing & Security
Stars: ✭ 172 (+805.26%)
Mutual labels:  cybersecurity, infosec
Python Honeypot
OWASP Honeypot, Automated Deception Framework.
Stars: ✭ 160 (+742.11%)
Mutual labels:  cybersecurity, infosec
Intrigue Core
Discover Your Attack Surface!
Stars: ✭ 1,013 (+5231.58%)
Mutual labels:  discovery, vulnerability-scanners
Slack Watchman
Monitoring your Slack workspaces for sensitive information
Stars: ✭ 159 (+736.84%)
Mutual labels:  cybersecurity, infosec
restincode
A memorial site for Hackers and Infosec people who have passed
Stars: ✭ 62 (+226.32%)
Mutual labels:  hackers, infosec
Findsploit
Find exploits in local and online databases instantly
Stars: ✭ 1,160 (+6005.26%)
Mutual labels:  hackers, exploits
Pyiris Backdoor
PyIris-backdoor is a modular, stealthy and flexible remote-access-toolkit written completely in python used to command and control other systems. It is now in the beta stage, possibly perpetually. There are bugs still present in the framework, feel free to contribute or help me out with this project its still under active development >_>
Stars: ✭ 145 (+663.16%)
Mutual labels:  cybersecurity, infosec
tugarecon
Pentest: Subdomains enumeration tool for penetration testers.
Stars: ✭ 142 (+647.37%)
Mutual labels:  hackers, infosec

GitHub Logo

Система управления уязвимостями, разрабатываемая в Республике Беларусь

Vulnerability Management System, developed in the Republic of Belarus

Table of contents

Поддержите проект!(Give a Star!)

Если вам нравится проект, поставьте ему звездочку, чтобы привлечь внимание!

If you like the project, please consider giving it a star to raise awareness!

General info

"FENIX VM" — это система управления уязвимостями нового поколения и с подходом, отличающимся от разработанных решений. Решение позволяет выстроить полноценный процесс управления уязвимостями, поиска информации об организации в открытых источниках, оценивать состояние защищенности в режиме реального времени, делать прогноз защищенности организации на перспективу, а также провести анализ соблюдения требований нормативных правовых актов регулятора в Республике Беларусь.

ВАЖНО! Это не сканер уязвимостей!

"FENIX VM" is a new generation vulnerability Management System. The solution allows you to build a full-fledged vulnerability management process, search for information about the organization in open sources, assess the state of security in real time, make a forecast of the security of the organization for the future, as well as to analyze compliance with the requirements of the regulatory legal acts of the regulator in the Republic of Belarus. This is not a Vulnerability scanner!

Возможности

  • Непрерывный контроль инфраструктуры организации посредством автоматической инвентаризации сети;
  • Выявление и ежедневное автоматическое сканирование важных активов в сети, направленное на своевременное реагирование при обнаружении уязвимостей;
  • Выявление и приоритизация обнаруженных уязвимостей и эксплойтов. Это достигается за счет использования модуля аналитики, входящего в состав программного продукта;
  • Ежедневный отчет о состоянии безопасности инфраструктуры;
  • Немедленное уведомление (телеграмма, электронная почта) системного администратора: об обнаружении или изменении активов в сети, обнаружении новых уязвимостей и появлении новых эксплойтов для ранее обнаруженных уязвимостей;
  • Контроль устранения уязвимостей;
  • Создание пользовательских плагинов для поиска уязвимостей.
  • Контроль за соблюдением требований нормативных правовых актов регулятора в Республике Беларусь.
  • Поиск информации о компании в открытых источниках (OSINT);
  • Анализ всех полученных данных в реальном времени для получения комплексной оценки состояния безопасности информационной системы.

Possible

  • Continuous control of the organization's infrastructure through automatic network inventory;
  • Identification and daily automatic scanning of important assets in the network, aimed at timely response when vulnerabilities are found;
  • Identification and prioritization of discovered vulnerabilities and exploits. This is achieved through the use of the analytics module, which is part of the software product;
  • Daily report on the state of infrastructure security;
  • Immediate notification (telegram, email) to the system administrator: about the discovery or change of assets in the network, the discovery of new vulnerabilities and the emergence of new exploits for previously discovered vulnerabilities;
  • Control of elimination of vulnerabilities;
  • Creating custom plugins for searching for vulnerabilities.
  • Monitoring compliance with the requirements of regulatory legal acts of the regulator in the Republic of Belarus.
  • Search for information about the company in open sources (OSINT);
  • Analysis of all received data in real time to obtain a comprehensive assessment of the security status of the information system.

Предупреждение

Разработка представляет интерес для сообщества, но просьба дождаться предварительной бета-версии и не использовать ее в производственной среде.

Система активно разрабатывается одним человеком и впереди много идей, но подумайте о том, чтобы поддержать проект и поставить звезду, чтобы повысить охват аудитории!

UDP: Предварительный выпуск первой бета-версии в конце сентября 2022 г.

Warning

The development is of interest to the community, but please wait for the preliminary beta and do not use it in a production environment.

The system is under active development by one person and there are many ideas ahead, but consider supporting it and giving it a star to raise awareness!

UDP: Pre-release of the first beta version at the end of September 2022

Maintainers

This repository is currently maintained by @Crocup.

Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].