
packetfence
PacketFence is a fully supported, trusted, Free and Open Source network access control (NAC) solution. Boasting an impressive feature set including a…

PacketFence is a fully supported, trusted, Free and Open Source network access control (NAC) solution. Boasting an impressive feature set including a…

GitHub App to set and enforce security policies

Comprehensive set of over 1500 AppArmor profiles to confine Linux system processes, desktops, and services, with support for multiple distributions…

The Symfony PHP framework

Kubernetes RBAC static analysis & visualisation tool

This application gives Mac users in enterprise environments control over the administration of their machines by elevating their access level to…

Trace every shell environment variable to its exact file and line origin. Audit shell configs for dead entries, duplicates, and orphaned files across…

Terraform module to set up your AWS account with the secure baseline configuration based on CIS Amazon Web Services Foundations and AWS Foundational…

Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier

An AWS CloudFormation template used to provision and manage AWS WAFv2 resources, including a Web ACL, managed rule groups, a custom regex pattern…

OWASP Thick Client Application Security Verification Standard

Local read-only scanner for CVE-2026-42945 (NGINX Rift) that checks NGINX, OpenResty, and Tengine instances for vulnerable rewrite configurations…

Best Practice Auditd Configuration

Configuration Hardening Assessment PowerShell Script (CHAPS)

provides a Firewall Manager API designed to centralize and streamline the management of firewall configurations

Blue Team detection lab created with Terraform and Ansible in Azure.

The remediation script should set the reg entries described in https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36884 . The detection…

MDE relies on some of the Audit settings to be enabled