
lunar
A UNIX security auditing tool based on several security frameworks

A UNIX security auditing tool based on several security frameworks

Audits software supply chain security compliance against the CIS benchmark, scanning SCM settings, branch protections, dependencies, and CI/CD…

Integration of Clair and Docker Registry

Security Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management,…

SUHOSIN [수호신] for PHP 5.x - The PHP security extension.

h2t (HTTP Hardening Tool) scans a website and suggests security headers to apply

Automated System Hardening Framework

Offline AD/Entra attack-path analyzer for SharpHound/AzureHound JSON. Surfaces prioritized privilege escalation, credential, and misconfiguration…

A security scanner for HTTP response headers.

Automated Cisco SNMP Enumeration, Brute Force, Configuration Download and Password Cracking

CVE-2019-1652 /CVE-2019-1653 Exploits For Dumping Cisco RV320 Configurations & Debugging Data AND Remote Root Exploit!

The world's most powerful System Activity Monitor Engine · 一款功能强大的终端行为采集防御开发套件 ~ 旨在帮助EDR、零信任、数据安全、审计管控等终端安全软件可以快速实现产品功能,…

OWASP IoT Security Verification Standard (ISVS)

A python tool to map the access rights of network shares into a BloodHound OpenGraphs easily

Audit Windows Security with best Practice

Gixy-Next: NGINX Configuration Security Scanner & Performance Checker

🛡️Awesome lists about all kinds of interesting topics of Wazuh XDR/SIEM

Next-generation SQL static analyzer written in Rust. 282+ rules. Zero false positives. Security, performance, reliability, cost, compliance, quality.…