Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
-
Updated
Mar 17, 2022 - Shell
{{ message }}
Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices
Fast and customizable vulnerability scanner based on simple YAML based DSL.
WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites.
Describe the bug
A clear and concise description of what the bug is.
To Reproduce
Steps to reproduce the behavior:
.bandit file with content:[bandit]
tests: B101,B102,B301
bandit -c .bandit -r module/[main] ERROR .bandit : Error parsing file.Expected behavior
working as described in readme
Bandit version
ba
A source code analyzer built for surfacing features of interest and other characteristics to answer the question 'What's in the code?' quickly using static analysis with a json based rules engine. Ideal for scanning components before use or detecting feature level changes.
This hint has been around since 2018 and is documented on webhint.io (https://webhint.io/docs/user-guide/hints/hint-doctype/). However it's not enabled by default in any of webhint's configurations (likely an oversight).
We should turn this on by default and perform any necessary cleanup in the process (e.g. switching to get locations from webhint's location-aware DOM that was added after the
大型内网渗透扫描器&Cobalt Strike,Ladon9.1.4内置150个模块,包含信息收集/存活主机/端口扫描/服务识别/密码爆破/漏洞检测/漏洞利用。漏洞检测含MS17010/SMBGhost/Weblogic/ActiveMQ/Tomcat/Struts2,密码口令爆破(Mysql/Oracle/MSSQL)/FTP/SSH(Linux)/VNC/Windows(IPC/WMI/SMB/Netbios/LDAP/SmbHash/WmiHash/Winrm),远程执行命令(smbexec/wmiexe/psexec/atexec/sshexec/webshell),降权提权Runas、GetSystem,Poc/Exploit,支持Cobalt Strike 3.X-4.0
Source Code Security Audit (源代码安全审计)
Official Black Hat Arsenal Security Tools Repository
Advanced vulnerability scanning with Nmap NSE
A high performance offensive security tool for reconnaissance and vulnerability scanning
nodejsscan is a static security code scanner for Node.js applications.
A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, along with writing out recommendations for further testing.
GitHub Sensitive Information Leakage(GitHub敏感信息泄露监控)
kube-score is linted with golangci-lint, but some of the linters have been disabled.
.golangci.yml to enable more lintersgolangci-lint run to find the issues that the new linters find.Golang安全资源合集
Application Layer DoS attack simulator
A default credential scanner.
Discover Your Attack Surface!
X Attacker Tool
Semi-automatic OSINT framework and package manager
Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.
Is your feature request related to a problem? Please describe.
Since PR e-m-b-a/emba#213 EMBA supports reporting templates. These templates can be easily created for the different modules.
The better the templates are, the more useful is this feature.
Describe the solution you'd like
Include templates for every module. These templates should be generic an
ServerScan一款使用Golang开发的高并发网络扫描、服务探测工具。
A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.
Simple Golang HTTPS/TLS Examples
Add a description, image, and links to the security-scanner topic page so that developers can more easily learn about it.
To associate your repository with the security-scanner topic, visit your repo's landing page and select "manage topics."
Describe the bug
When you change the Policy Name more than two Time(e.g. from upper Case to Lower-Case) then the item got duplicated, after removing one item the other cannot be modified anymore but removed.
Steps to reproduce the behavior