Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
-
Updated
Jul 30, 2021 - Shell
{{ message }}
Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
Prowler is a security tool to perform AWS security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness. It contains all CIS controls listed here https://d0.awsstatic.com/whitepapers/compliance/AWS_CIS_Foundations_Benchmark.pdf and more than 100 additional checks that help on GDPR, HIPAA and other security requirements.
Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources
OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.
Security scanner for your Terraform code
This requires just some small improvements, the error itself being harmless, but annoying.
$ immuadmin-090 login immudb
ERROR 2021/01/28 09:46:25 Couldn't discover absolute path
ERROR 2021/01/28 09:46:25 getwd: no such file or directory
Password:
logged in
$immuadmin-090 is just a sym link:
$ which immuadmin-090
/home/{user}/apps/bin/immuadmin-090
$
$ ls Wazuh - The Open Source Security Platform
The command exist test always returns true regardless of if the command is invalid.
On Windows, we want to test if a command/cmdlet exists before running it. However, the 'command().exist?‘ test always returns true no matter what command t
cloudquery transforms your cloud infrastructure into SQL database for easy monitoring, governance and security.
Security automation content in SCAP, OSCAL, Bash, Ansible, and other formats
Configuration guidance for implementing the Windows 10 and Windows Server 2016 DoD Secure Host Baseline settings. #nsacyber
These files need some review as there are some weird licenses detected:
We should make it easier to install this plugin.
a lightweight, security focused, BDD test framework against terraform.
[DEPRECATED] Detect threats with log data and improve cloud security posture
Secure vault for customer records built to comply with GDPR
NIST Certified SCAP 1.2 toolkit
Describe the bug
When using parse-tree command, error information in printed twice with slightly different text.
To Reproduce
Please supply:
var status = ['ACTIVE']
NOTE: Please be sure that the templates, rules and logs you provide as part of your bug report do not contain any sensitive information.
Expected behavior
There should be one error log instead of dupli
Compliance automation framework, focused on SOC2
The GDPR Checklist
Description
This task is contingent on merging task #995 into main. Now that we have a list of tests to invoke, we will implement invoking them.
To Do
ci/release_tests.py to invoke each of the tests in the list tests.import subprocess # nosec
tests = [...] <-- changes to be included in #995
for t in tests:
subprocess.check_output(t, shell=Tr
The code at
can be simplified now that Stack 2.3.1 supports ls dependencies json.
In our continuous effort to automate Fossology workflows, we regularly check all uploads available on a given instance.
When the instance is under heavy utilization, listing all available uploads can consume lots of resources.
Having the possibility to filter the list uploads according to different criteria would help us a lot, e.g.:
Symmetric Encryption for Ruby Projects using OpenSSL
Continuous Auditing & Configuration
Wazuh - Ruleset
A common framework enabling companies to work together to protect consumers' privacy and data rights.
Add a description, image, and links to the compliance topic page so that developers can more easily learn about it.
To associate your repository with the compliance topic, visit your repo's landing page and select "manage topics."
Expected Behavior
Test pass
Actual Behavior
Test fail
Steps to Reproduce the Problem