CERTCC / SSVCLinks
Stakeholder-Specific Vulnerability Categorization
☆168Updated this week
Alternatives and similar repositories for SSVC
Users that are interested in SSVC are comparing it to the libraries listed below
Sorting:
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆215Updated this week
- A Risk-Based Prioritization Taxonomy for prioritizing CVEs (Common Vulnerabilities and Exposures).☆82Updated last year
- CISA CSAF Security Advisories☆93Updated this week
- Advisories, guidance, best practice documents and more issued by members of the EU CSIRTs network, a network composed of EU Member States…☆94Updated last month
- Mappings Explorer enables cyber defenders to understand how security controls and capabilities map onto the adversary behaviors catalogue…☆86Updated 3 weeks ago
- The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools…☆169Updated this week
- Global Security Database Tools☆43Updated 2 years ago
- OASIS CSAF TC: Supporting version control for Work Product artifacts developed by members of TC, including prose specifications and secon…☆204Updated this week
- ☆137Updated last week
- VulnCheck's official command line tool☆147Updated 3 weeks ago
- OASIS TC Open Repository: A GitHub repository for management of non-normative information about the work of the CSAF Technical Committee,…☆21Updated last month
- Documentation on the Cyber Defense Matrix☆24Updated 2 years ago
- Public static website for the D3FEND project. For the D3FEND ontology repo see: https://github.com/d3fend/d3fend-ontology☆90Updated last month
- OWASP Foundation Web Respository☆32Updated 3 months ago
- ☆120Updated 2 months ago
- ☆192Updated this week
- ☆65Updated last year
- ☆48Updated this week
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆97Updated 11 months ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆177Updated last month
- CVE.ICU code.☆50Updated this week
- OCSF Documentation☆151Updated 3 months ago
- ☆19Updated 5 months ago
- ☆16Updated 2 years ago
- ☆89Updated 4 months ago
- The principal objective of this project is to develop a knowledge base of the tactics, techniques, and procedures (TTPs) used by insiders…☆147Updated 6 months ago
- Exploit Prediction Scoring System (EPSS)☆31Updated 3 years ago
- This is a repository of vendor-agnostic workflows provided for those interested in deploying Security Orchestration, Automation, and Resp…☆89Updated 4 years ago
- Autoconfigured ELK Stack That Contains All EPSS and NVD CVE Data☆62Updated last week
- A tool that allows you to document and assess any security automation in your SOC☆48Updated last year