H2th2t (HTTP Hardening Tool) scans a website and suggests security headers to apply
Stars: ✭ 268 (+332.26%)
cloudrasp-log4j2一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-44228) defense.
Stars: ✭ 105 (+69.35%)
Windows hardeningWindows Hardening settings and configurations
Stars: ✭ 148 (+138.71%)
cis benchmarks auditSimple command line tool to check for compliance against CIS Benchmarks
Stars: ✭ 182 (+193.55%)
Terraform Aws Secure BaselineTerraform module to set up your AWS account with the secure baseline configuration based on CIS Amazon Web Services Foundations and AWS Foundational Security Best Practices.
Stars: ✭ 596 (+861.29%)
Bunkerized Nginx🛡️ Make your web services secure by default !
Stars: ✭ 2,361 (+3708.06%)
apparmor.dFull set of AppArmor profiles (~ 1400 profiles)
Stars: ✭ 32 (-48.39%)
Chef Os HardeningThis chef cookbook provides numerous security-related configurations, providing all-round base protection.
Stars: ✭ 386 (+522.58%)
GraphenexAutomated System Hardening Framework
Stars: ✭ 665 (+972.58%)
metabadgerPrevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).
Stars: ✭ 123 (+98.39%)
ProwlerProwler is a security tool to perform AWS security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness. It contains more than 200 controls covering CIS, ISO27001, GDPR, HIPAA, SOC2, ENS and other security frameworks.
Stars: ✭ 4,561 (+7256.45%)
Puppet Os HardeningThis puppet module provides numerous security-related configurations, providing all-round base protection.
Stars: ✭ 234 (+277.42%)
Windows BaselineDevSec Windows Baseline - InSpec Profile
Stars: ✭ 160 (+158.06%)
SnuffleupagusSecurity module for php7 and php8 - Killing bugclasses and virtual-patching the rest!
Stars: ✭ 509 (+720.97%)
Chef Ssh HardeningThis chef cookbook provides secure ssh-client and ssh-server configurations.
Stars: ✭ 144 (+132.26%)
chef-mysql-hardeningThis chef cookbook provides security configuration for mysql.
Stars: ✭ 23 (-62.9%)
SysctlK4YT3X's Hardened sysctl Configuration
Stars: ✭ 128 (+106.45%)
SuhosinSUHOSIN [수호신] for PHP 5.x - The PHP security extension.
Stars: ✭ 466 (+651.61%)
nim-contraLightweight Self-Documenting Design by Contract Programming and Security Hardened mode.
Stars: ✭ 46 (-25.81%)
HardeningHardening Ubuntu. Systemd edition.
Stars: ✭ 705 (+1037.1%)
Curl For WinReproducible curl (and OpenSSL) binaries for Windows
Stars: ✭ 352 (+467.74%)
ZephyrusAuditing & Hardening script for Kubernetes
Stars: ✭ 45 (-27.42%)
Sshd configK4YT3X's Hardened OpenSSH Server Configuration
Stars: ✭ 49 (-20.97%)
sigilAWS SSM Session manager client
Stars: ✭ 67 (+8.06%)
ZeusAWS Auditing & Hardening Tool
Stars: ✭ 630 (+916.13%)
prowlerProwler is an Open Source Security tool for AWS, Azure and GCP to perform Cloud Security best practices assessments, audits, incident response, compliance, continuous monitoring, hardening and forensics readiness. It contains hundreds of controls covering CIS, PCI-DSS, ISO27001, GDPR, HIPAA, FFIEC, SOC2, AWS FTR, ENS and custom security frameworks.
Stars: ✭ 8,046 (+12877.42%)
Aws GateBetter AWS SSM Session manager CLI client
Stars: ✭ 294 (+374.19%)
Ssh BaselineDevSec SSH Baseline - InSpec Profile
Stars: ✭ 192 (+209.68%)
HayatHayat is a script for report and analyze Google Cloud Platform resources.
Stars: ✭ 55 (-11.29%)
Blue TeamBlue Team Scripts
Stars: ✭ 190 (+206.45%)
apache-baselineDevSec Apache Baseline - InSpec Profile
Stars: ✭ 37 (-40.32%)
Ansible Collection HardeningThis Ansible collection provides battle tested hardening for Linux, SSH, nginx, MySQL
Stars: ✭ 2,543 (+4001.61%)
Linux BaselineDevSec Linux Baseline - InSpec Profile
Stars: ✭ 524 (+745.16%)
CIS-Ubuntu-20.04-AnsibleAnsible Role to Automate CIS v1.1.0 Ubuntu Linux 18.04 LTS, 20.04 LTS Remediation
Stars: ✭ 150 (+141.94%)
HardentheworldHarden the world is a community driven project to develop hardening guidelines and checklists for common software and devices.
Stars: ✭ 158 (+154.84%)
StrongholdEasily configure macOS security settings from the terminal.
Stars: ✭ 813 (+1211.29%)
HardentoolsHardentools simply reduces the attack surface on Microsoft Windows computers by disabling low-hanging fruit risky features.
Stars: ✭ 2,100 (+3287.1%)
JshielderHardening Script for Linux Servers/ Secure LAMP-LEMP Deployer/ CIS Benchmark
Stars: ✭ 483 (+679.03%)
cis-dil-benchmarkCIS Distribution Independent Linux Benchmark - InSpec Profile
Stars: ✭ 120 (+93.55%)
Ssl BaselineDevSec SSL/TLS Baseline - InSpec Profile
Stars: ✭ 56 (-9.68%)
Harden.shSlackware hardening script
Stars: ✭ 53 (-14.52%)
Ansible Ssh Hardening This Ansible role provides numerous security-related ssh configurations, providing all-round base protection.
Stars: ✭ 746 (+1103.23%)
Hardened mallocHardened allocator designed for modern systems. It has integration into Android's Bionic libc and can be used externally with musl and glibc as a dynamic library for use on other Linux-based platforms. It will gain more portability / integration over time.
Stars: ✭ 472 (+661.29%)