HardentheworldHarden the world is a community driven project to develop hardening guidelines and checklists for common software and devices.
Stars: ✭ 158 (-72.43%)
prowlerProwler is an Open Source Security tool for AWS, Azure and GCP to perform Cloud Security best practices assessments, audits, incident response, compliance, continuous monitoring, hardening and forensics readiness. It contains hundreds of controls covering CIS, PCI-DSS, ISO27001, GDPR, HIPAA, FFIEC, SOC2, AWS FTR, ENS and custom security frameworks.
Stars: ✭ 8,046 (+1304.19%)
VulsAgent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
Stars: ✭ 8,844 (+1443.46%)
ProwlerProwler is a security tool to perform AWS security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness. It contains more than 200 controls covering CIS, ISO27001, GDPR, HIPAA, SOC2, ENS and other security frameworks.
Stars: ✭ 4,561 (+695.99%)
LynisLynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
Stars: ✭ 9,137 (+1494.59%)
Golang TlsSimple Golang HTTPS/TLS Examples
Stars: ✭ 857 (+49.56%)
Btle SnifferPassively scan for Bluetooth Low Energy devices and attempt to fingerprint them
Stars: ✭ 87 (-84.82%)
ad-privileged-auditProvides various Windows Server Active Directory (AD) security-focused reports.
Stars: ✭ 42 (-92.67%)
ElectriceyeContinuously monitor your AWS services for configurations that can lead to degradation of confidentiality, integrity or availability. All results will be sent to Security Hub for further aggregation and analysis.
Stars: ✭ 255 (-55.5%)
MarsnakeSystem Optimizer and Monitoring, Security Auditing, Vulnerability scanner for Linux, macOS, and UNIX-based systems
Stars: ✭ 16 (-97.21%)
Rails Security Checklist🔑 Community-driven Rails Security Checklist (see our GitHub Issues for the newest checks that aren't yet in the README)
Stars: ✭ 1,265 (+120.77%)
nerfballWant to see how something like Internet Chemotherapy works without bricking your own vms? This is a jail to reduce the python runtime from doing bad things on the host when running untrusted code. Nerf what you do not need 👾 + 🐛 ⚽ 🏈 🐳
Stars: ✭ 19 (-96.68%)
Audit scriptsScripts to gather system configuration information for offline/remote auditing
Stars: ✭ 55 (-90.4%)
assimilation-officialThis is the official main repository for the Assimilation project
Stars: ✭ 47 (-91.8%)
awesome-rails-securityA curated list of security resources for a Ruby on Rails application
Stars: ✭ 36 (-93.72%)
TlsfuzzerSSL and TLS protocol test suite and fuzzer
Stars: ✭ 335 (-41.54%)
HellraiserVulnerability scanner using Nmap for scanning and correlating found CPEs with CVEs.
Stars: ✭ 413 (-27.92%)
FirestrThe Grass Computing Platform
Stars: ✭ 329 (-42.58%)
RaptorWeb-based Source Code Vulnerability Scanner
Stars: ✭ 314 (-45.2%)
Security ScriptsScripts built from our Guide to User Data Security
Stars: ✭ 436 (-23.91%)
Advisory DbSecurity advisory database for Rust crates published through crates.io
Stars: ✭ 396 (-30.89%)
CsetCybersecurity Evaluation Tool
Stars: ✭ 304 (-46.95%)
WsltoolsWeb Scan Lazy Tools - Python Package
Stars: ✭ 288 (-49.74%)
Quick SecureQuickly secure UNIX/Linux systems
Stars: ✭ 379 (-33.86%)
FaradayFaraday introduces a new concept - IPE (Integrated Penetration-Test Environment) a multiuser Penetration test IDE. Designed for distributing, indexing, and analyzing the data generated during a security audit.
Stars: ✭ 3,198 (+458.12%)
DependencycheckOWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.
Stars: ✭ 3,571 (+523.21%)
Rhel7 CisAnsible role for Red Hat 7 CIS Baseline
Stars: ✭ 337 (-41.19%)
Xss Listener🕷️ XSS Listener is a penetration tool for easy to steal data with various XSS.
Stars: ✭ 414 (-27.75%)
ThgtoaThe Hitchhiker’s Guide to Online Anonymity
Stars: ✭ 326 (-43.11%)
Dradis CeDradis Framework: Colllaboration and reporting for IT Security teams
Stars: ✭ 443 (-22.69%)
Webapp ChecklistTechnical details that a programmer of a web application should consider before making the site public.
Stars: ✭ 320 (-44.15%)
ArchstrikeAn Arch Linux repository for security professionals and enthusiasts. Done the Arch Way and optimized for i686, x86_64, ARMv6, ARMv7 and ARMv8.
Stars: ✭ 401 (-30.02%)
Csp BuilderBuild Content-Security-Policy headers from a JSON file (or build them programmatically)
Stars: ✭ 496 (-13.44%)
Fwanalyzera tool to analyze filesystem images for security
Stars: ✭ 382 (-33.33%)
Xunfeng巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。
Stars: ✭ 3,131 (+446.42%)
NfcgateAn NFC research toolkit application for Android
Stars: ✭ 425 (-25.83%)
SerialkillerLook-Ahead Java Deserialization Library
Stars: ✭ 277 (-51.66%)
SecuritymanageframworkSecurity Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management, account management, knowledge base management, security scanning automation function modules, and can be used for internal security management. This platform is designed to help Party A with fewer security personnel, complicated business lines, difficult periodic inspection and low automation to better achieve internal safety management.
Stars: ✭ 378 (-34.03%)
ArachniWeb Application Security Scanner Framework
Stars: ✭ 2,942 (+413.44%)
Npq🎖safely* install packages with npm or yarn by auditing them as part of your install process
Stars: ✭ 513 (-10.47%)
W5Security Orchestration, Automation and Response (SOAR) Platform. 安全编排与自动化响应平台,无需编写代码的安全自动化,使用 SOAR 可以让团队工作更加高效
Stars: ✭ 367 (-35.95%)
Salt ScannerLinux vulnerability scanner based on Salt Open and Vulners audit API, with Slack notifications and JIRA integration
Stars: ✭ 261 (-54.45%)
AirshipSecure Content Management for the Modern Web - "The sky is only the beginning"
Stars: ✭ 422 (-26.35%)
Go SafewebSecure-by-default HTTP servers in Go.
Stars: ✭ 366 (-36.13%)
KraneKubernetes RBAC static Analysis & visualisation tool
Stars: ✭ 254 (-55.67%)
UBUNTU18-CISCIS Baseline Ansible Role for Ubuntu 18
Stars: ✭ 20 (-96.51%)
TaipanWeb application vulnerability scanner
Stars: ✭ 359 (-37.35%)
Smart-Contract-Security-AuditsCertified Smart Contract Audits (Ethereum, Hyperledger, xDAI, Huobi ECO Chain, Binance Smart Chain, Fantom, EOS, Tezos) by Chainsulting
Stars: ✭ 325 (-43.28%)
django-security-checkHelps you continuously monitor and fix common security vulnerabilities in your Django application.
Stars: ✭ 69 (-87.96%)
JshielderHardening Script for Linux Servers/ Secure LAMP-LEMP Deployer/ CIS Benchmark
Stars: ✭ 483 (-15.71%)
0xsp Mongoosea unique framework for cybersecurity simulation and red teaming operations, windows auditing for newer vulnerabilities, misconfigurations and privilege escalations attacks, replicate the tactics and techniques of an advanced adversary in a network.
Stars: ✭ 419 (-26.88%)
aws-enumeratorThe AWS Enumerator was created for service enumeration and info dumping for investigations of penetration testers during Black-Box testing. The tool is intended to speed up the process of Cloud review in case the security researcher compromised AWS Account Credentials.
Stars: ✭ 94 (-83.6%)
gcp-firewall-enforcerA toolbox to enforce firewall rules across multiple GCP projects.
Stars: ✭ 77 (-86.56%)