All Projects → zhaoweiho → Securitymanageframwork

zhaoweiho / Securitymanageframwork

Licence: gpl-3.0
Security Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management, account management, knowledge base management, security scanning automation function modules, and can be used for internal security management. This platform is designed to help Party A with fewer security personnel, complicated business lines, difficult periodic inspection and low automation to better achieve internal safety management.

Programming Languages

python
139335 projects - #7 most used programming language

Projects that are alternatives of or similar to Securitymanageframwork

Xunfeng
巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。
Stars: ✭ 3,131 (+728.31%)
Mutual labels:  pentesting, scanner, infosec, security-audit, vulnerability-scanners, exploits, vulnerability-detection, vulnerability-assessment
Hellraiser
Vulnerability scanner using Nmap for scanning and correlating found CPEs with CVEs.
Stars: ✭ 413 (+9.26%)
Mutual labels:  scanner, security-audit, vulnerability-scanners, vulnerability-detection, vulnerability-assessment
Sec Admin
分布式资产安全扫描核心管理系统(弱口令扫描,漏洞扫描)
Stars: ✭ 222 (-41.27%)
Mutual labels:  scanner, infosec, security-audit, vulnerability-scanners, exploits
Vailyn
A phased, evasive Path Traversal + LFI scanning & exploitation tool in Python
Stars: ✭ 103 (-72.75%)
Mutual labels:  pentesting, vulnerability-scanners, vulnerability-detection, vulnerability-assessment
Faraday
Faraday introduces a new concept - IPE (Integrated Penetration-Test Environment) a multiuser Penetration test IDE. Designed for distributing, indexing, and analyzing the data generated during a security audit.
Stars: ✭ 3,198 (+746.03%)
Mutual labels:  pentesting, infosec, security-audit, vulnerability-scanners
Vuls
Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
Stars: ✭ 8,844 (+2239.68%)
Mutual labels:  security-audit, vulnerability-scanners, vulnerability-detection, vulnerability-assessment
Gourdscanv2
被动式漏洞扫描系统
Stars: ✭ 740 (+95.77%)
Mutual labels:  pentesting, scanner, infosec, security-audit
Lynis
Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
Stars: ✭ 9,137 (+2317.2%)
Mutual labels:  security-audit, vulnerability-scanners, vulnerability-detection, vulnerability-assessment
Arissploit
Arissploit Framework is a simple framework designed to master penetration testing tools. Arissploit Framework offers simple structure, basic CLI, and useful features for learning and developing penetration testing tools.
Stars: ✭ 114 (-69.84%)
Mutual labels:  pentesting, vulnerability-scanners, exploits, vulnerability-detection
Purify
All-in-one tool for managing vulnerability reports from AppSec pipelines
Stars: ✭ 72 (-80.95%)
Mutual labels:  infosec, security-audit, vulnerability-scanners, vulnerability-assessment
sec-scannode
SEC分布式资产扫描系统
Stars: ✭ 8 (-97.88%)
Mutual labels:  security-audit, scanner, infosec, vulnerability-scanners
Vulscan
Advanced vulnerability scanning with Nmap NSE
Stars: ✭ 2,305 (+509.79%)
Mutual labels:  security-audit, vulnerability-scanners, vulnerability-detection, vulnerability-assessment
Rapidscan
🆕 The Multi-Tool Web Vulnerability Scanner.
Stars: ✭ 775 (+105.03%)
Mutual labels:  scanner, vulnerability-scanners, vulnerability-detection, vulnerability-assessment
Openvas Scanner
Open Vulnerability Assessment Scanner - Scanner for Greenbone Vulnerability Management (GVM)
Stars: ✭ 1,056 (+179.37%)
Mutual labels:  scanner, vulnerability-scanners, vulnerability-detection, vulnerability-assessment
V3n0m Scanner
Popular Pentesting scanner in Python3.6 for SQLi/XSS/LFI/RFI and other Vulns
Stars: ✭ 847 (+124.07%)
Mutual labels:  pentesting, scanner, vulnerability-scanners
Perun
Perun是一款主要适用于乙方安服、渗透测试人员和甲方RedTeam红队人员的网络资产漏洞扫描器/扫描框架
Stars: ✭ 773 (+104.5%)
Mutual labels:  pentesting, scanner, vulnerability-scanners
Resources
A Storehouse of resources related to Bug Bounty Hunting collected from different sources. Latest guides, tools, methodology, platforms tips, and tricks curated by us.
Stars: ✭ 62 (-83.6%)
Mutual labels:  pentesting, infosec, security-audit
Hackerenv
Stars: ✭ 309 (-18.25%)
Mutual labels:  pentesting, vulnerability-scanners, vulnerability-assessment
Raccoon
A high performance offensive security tool for reconnaissance and vulnerability scanning
Stars: ✭ 2,312 (+511.64%)
Mutual labels:  pentesting, scanner, vulnerability-assessment
Raptor
Web-based Source Code Vulnerability Scanner
Stars: ✭ 314 (-16.93%)
Mutual labels:  scanner, security-audit, vulnerability-scanners

SecurityManageFramwork-SeMF

Travis Github License GitHub stars

README English | 中文

Introduction

SEMF is a security management platform for enterprise intranet, which includes functions of asset management, vulnerability management, account management, knowledge base management and security scanning automation. It can be used for internal security management.

This platform aims to help Party A with fewer security personnel, complicated business lines, difficult periodic inspection and low automation to better achieve internal safety management. This software is only used for internal IT asset management, no aggressive behavior. Users are requested to abide by the Network Security Law of the People's Republic of China (http://www.npc.gov.cn/npc/xinwen/2016-11/07/content_2001605.htm). They are not required to use SEMF for unauthorized testing. The authors are not liable for any joint and several legal responsibilities.

If you like it, please click Star. If you don't intend to contribute, don't Fork. The later version of Fork will not automatically update the latest version synchronously. You won't enjoy the pleasure and surprise of the latest version.

The original address of this project: https://gitee.com/gy071089/SecurityManageFramwork

Author:残源

Architecture

posterior : python3 + django2 + rabbitmq

Front-end : layui + bootstarp,

Using Open Source Templates X-admin:http://x.xuebingsi.com/

Characteristic

  • User type and privilege information can be customized, and four types of security personnel, operation and maintenance personnel, network personnel and business personnel can be generated in initialization.

  • Enterprise IT asset types and asset attributes can be customized in the background and extended as needed.

  • Intranet asset discovery and port scanning can be automated

  • Complete vulnerability tracking and scanner vulnerability filtering

  • Network mapping, for large enterprise intranet and extranet mapping management is complex, reservation function

  • Knowledge base management, for security information sharing, is divided into announcement category and popular science category.

  • Vulnerability library management, this module docks with cnvd vulnerability Library

  • Plug-in-based vulnerability scanning function can be added by itself

  • Weak Password Detection for Multiple Protocols

  • AWVS (Acunetix Web Vulnerability Scanner) Interface Call

  • Nessus (6/7) interface call

Installation

Installation Guide

User Guide

Screenshot

  • Login Registration Page Login Registration Page
  • System Home Page System Home Page
  • Asset management Asset management
  • Details of assets Details of assets
  • Vulnerability management Vulnerability management
  • Report Center Report Center

Contribution

  1. This project is currently only self-maintenance, hope that people with lofty ideals can help improve the system, details can be added to the QQ group, contact the group owner can be. qq交流群
  2. If you have other customization requirements, you can contact me by email at [email protected].
Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].