
Harden-Windows-Security
Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build…

Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build…

Hardening Script for Linux Servers/ Secure LAMP-LEMP Deployer/ CIS Benchmark

Comprehensive set of over 1500 AppArmor profiles to confine Linux system processes, desktops, and services, with support for multiple distributions…

Systematic Linux kernel hardening project implementing KSPP-recommended settings, module blacklisting, and restricted environment configuration for…

Fast and secure initramfs generator

Gixy-Next: NGINX Configuration Security Scanner & Performance Checker

Permanent fix for Intel NUC WinRing0 vulnerable driver (CVE-2020-14979) reinstallation via Windows Update


Microsoft's curated repository of secure boot objects (KeK, Db, Dbx) for firmware and runtime, enabling transparent revocation updates and…

Detects Windows and Linux systems with enabled Trusted Platform Modules (TPM) vulnerable to CVE-2017-15361. #nsacyber

A tool for checking the security hardening options of the Linux kernel

Collection of Linux hardening scripts and security configurations for system auditing, access control, and defensive posture improvement. Includes…

OWASP IoT Security Verification Standard (ISVS)

BitLocker TPM+PIN Hardening Against CVE-2026-45585 (YellowKey)

USB port access control tool for Debian with whitelist management, automatic background scanning daemon, and CLI interface to block or allow USB…

Assesses a system for the "speculative execution" vulnerabilities described in CVE-2017-5715, CVE-2017-5753, CVE-2017-5754


English translation