
puppet-os-hardening
This puppet module provides numerous security-related configurations, providing all-round base protection.

This puppet module provides numerous security-related configurations, providing all-round base protection.

This puppet module provides secure ssh-client and ssh-server configurations.

Module PowerShell de réponse à l'incident CVE-2025-59287 — WSUS Remote Code Execution (RCE)

Automated SSH-based scanner and patcher for Linux kernel LPE vulnerabilities CVE-2026-43284 and CVE-2026-43500, with multi-host discovery, privilege…

Shell script that detects vulnerable Open vSwitch kernel modules, blocks automatic loading, removes the affected module, and verifies mitigation…

This module is used to exploit startup script execution through Windows Group Policy settings when configured to run off of a remote SMB share.

Java-based mission control framework with YAML configuration, supporting telemetry, commanding, and simulation for spacecraft operations. Includes…

This is a little Python script to detect the "EvilSun" vulnerability (CVE-2020-14871) on Solaris systems. The vulnerability is a buffer overflow in…

Shell script to detect and mitigate CVE-2022-2639 in Open vSwitch kernel module. Checks module status, provides remediation steps, and recommends…

Python script to detect bluekeep vulnerability (CVE-2019-0708) with TLS/SSL and x509 support

Scanner PoC for CVE-2026-42530 -- nginx 1.31.0-1.31.1 HTTP/3 QPACK encoder stream Use-After-Free (CVSS 9.2)

CVE-2025-26466 - SSH Ping DoS Ruby module for Metasploit Framework

CVE-2019-0708, A tool which mass hunts for bluekeep vulnerability for exploitation.

Proof-of-concept exploit for CVE-2019-11477, demonstrating a denial-of-service attack against Linux kernel TCP SACK panic via crafted netfilter…

This module sniff username and password of unprotected protocols.

Systematic Linux kernel hardening project implementing KSPP-recommended settings, module blacklisting, and restricted environment configuration for…

Metasploit Auxiliary module for scanning and detecting CVE-2020-0796 (SMBGhost) vulnerability in Windows SMBv3 implementations.

Behavioral detection script for CVE-2026-42945 (NGINX Rift) — heap overflow in ngx_http_rewrite_module. No RCE, crash-based detection only.