
trivy
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Static analysis scanner for infrastructure-as-code that detects security vulnerabilities, compliance violations, and misconfigurations across…

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

can find, analyse and patch Log4J files because of CVE-2021-44228, CVE-2021-45046

Trace every shell environment variable to its exact file and line origin. Audit shell configs for dead entries, duplicates, and orphaned files across…

Scans SSL/TLS certificates for expiry dates, issuer details, and OCSP status. Sends notifications via webhook, Telegram, or Slack. Supports proxy per…

Use this tool to prioritize cluster patching for the recent VMware advisory VMSA-2018-0027 related to CVE-2018-6981 and CVE-2018-6982.

Find the plaintext secrets on your Mac and move them behind Touch ID, injected just in time without breaking the tools that read them. Free and…

Pulled Pork for Snort and Suricata rule management (from Google code)

Open source templates you can use to bootstrap your security programs

A very simple way to find out which SSL ciphersuites are supported by a target.

Audits Azure AD and Exchange Online configurations for hard-to-find permissions, federation trusts, mail forwarding rules, and delegated access to…

Automated Linux security auditing tool that checks 130+ CIS benchmark items for RHEL-based systems, generating detailed XML reports on system…

Enterprise vulnerability management on Azure — Terraform-deployed Nessus scanner, credentialed scanning, CVE-2013-3900 remediation with verified…

Group Policy Eater is a PowerShell module that aims to gather information about Group Policies but also allows fixing issues that you may find in…

A PowerShell script for helping to find vulnerable settings in AD Group Policy. (deprecated, use Grouper2 instead!)

Find vulnerabilities in AD Group Policy

Useful access control entries (ACE) on system access control list (SACL) of securable objects to find potential adversarial activity