
ansible-collection-hardening
This Ansible collection provides battle tested hardening for Linux, SSH, nginx, MySQL

This Ansible collection provides battle tested hardening for Linux, SSH, nginx, MySQL

Scan systems and docker images for potential log4j vulnerabilities. Able to patch (remove JndiLookup.class) from layered archives. Will detect…

Semantic Observability for UNIX Systems - A lightweight C-based system prober with AI-powered analysis

Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports…


Runtime vulnerability scanner: finds CVEs in the services actually running on a host and ranks them by network exposure.

AI coding agents that can't exfiltrate secrets or merge their own PRs.

Runtime application self-protection engine that hooks into application servers to monitor and block malicious database queries, file operations, and…