Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
-
Updated
Oct 15, 2021 - Shell
{{ message }}
Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
Prowler is a security tool to perform AWS security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness. It contains all CIS controls and many more additional checks that help on GDPR, HIPAA and other security frameworks.
Rules engine for cloud security, cost optimization, and governance, DSL in yaml for policies to query, filter, and take actions on resources
OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.
Security scanner for your Terraform code
Describe the bug
Check: CKV2_AWS_1: "Ensure that all NACL are attached to subnets"
FAILED for resource: aws_network_acl.elasticache
File: /tfplan.json:2623-2683
Guide: https://docs.bridgecrew.io/docs/ensure-that-all-nacl-are-attached-to-subnets
2624 | "values": {
2625 | "arn": "arn:aws:ec2:us-east-1:907320361432:network-acl/acl-0ed5xxxx42a675e",
2626 |
What happened
I was able to successfully login and operate using default credentials
What you expected to happen
After a successful login using default admin credentials immuadmin does request a password change but if confirmation password does not match the newly introduced one, I'd expect to be blocked but it was possible to operate.
**How to reproduce it (as minimally and pr
Wazuh - The Open Source Security Platform
The command exist test always returns true regardless of if the command is invalid.
On Windows, we want to test if a command/cmdlet exists before running it. However, the 'command().exist?‘ test always returns true no matter what command t
Join our new Discord Channel to say Hi and get live support from the team or from the community.
The bash remediation of selinux_state runs:
fixfiles onboot
fixfiles -f relabel
whereas the Ansible remediation doe
Configuration guidance for implementing the Windows 10 and Windows Server 2016 DoD Secure Host Baseline settings. #nsacyber
We should make it easier to install this plugin.
a lightweight, security focused, BDD test framework against terraform.
Secure SDK/vault for personal records/PII built to comply with GDPR
[DEPRECATED] Detect threats with log data and improve cloud security posture
NIST Certified SCAP 1.2 toolkit
Describe the bug
When using parse-tree command, error information in printed twice with slightly different text.
To Reproduce
Please supply:
var status = ['ACTIVE']
NOTE: Please be sure that the templates, rules and logs you provide as part of your bug report do not contain any sensitive information.
Expected behavior
There should be one error log instead of dupli
Compliance automation framework, focused on SOC2
The GDPR Checklist
WARNING
If this is your first tern contribution, please update your local git settings using these instructions.
DO NOT USE THE GITHUB UI!
When creating your commit message for your PR, make sure to use git commit -s rather than git commit -m
Remember to add a Fixes: #1044 line in your commit message.
**Description
It might be helpful to inform people in the guide some hints on setting up private repos such as github using the docker container.
git config --global url."https://$GITHUB_USERNAME:$GITHUB_PASSWORD@github.com".insteadOf /"https://github.com"
ls -l ~/.gitconfigdocker run -e -v $(pwd):/project \
-v ~/.gitconfig:/root/.gitconfig \
ort:latest --info anWhile testing PR #1955, found following thing.
For an upload, there are only 2 failed jobs (readmeoss and ojo) but the REST API says "status": "Failed" for every single job even when all child job has "status": "Completed".
Maybe the "status" of a job can be limited only to its child jobs' statuses.
![image](https://user-images.githubusercontent.
Symmetric Encryption for Ruby Projects using OpenSSL
Rudder is a configuration and security automation platform. Manage your Cloud, hybrid or on-premises infrastructure in a simple, scalable and dynamic way.
Wazuh - Ruleset
A common framework enabling companies to work together to protect consumers' privacy and data rights.
Add a description, image, and links to the compliance topic page so that developers can more easily learn about it.
To associate your repository with the compliance topic, visit your repo's landing page and select "manage topics."
Expected Behavior
At https://github.com/open-policy-agent/opa/blob/main/bundle/bundle_test.go#L31, the result of function
Equalnot used:while this function has no side effect: