CERTCC / SSVCLinks
Stakeholder-Specific Vulnerability Categorization
☆170Updated last week
Alternatives and similar repositories for SSVC
Users that are interested in SSVC are comparing it to the libraries listed below
Sorting:
- A Risk-Based Prioritization Taxonomy for prioritizing CVEs (Common Vulnerabilities and Exposures).☆83Updated last year
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆215Updated last week
- CISA CSAF Security Advisories☆93Updated last week
- ☆48Updated this week
- Mappings Explorer enables cyber defenders to understand how security controls and capabilities map onto the adversary behaviors catalogue…☆88Updated last week
- The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools…☆171Updated this week
- Advisories, guidance, best practice documents and more issued by members of the EU CSIRTs network, a network composed of EU Member States…☆95Updated last month
- ☆138Updated this week
- VulnCheck's official command line tool☆150Updated 3 weeks ago
- OASIS CSAF TC: Supporting version control for Work Product artifacts developed by members of TC, including prose specifications and secon…☆206Updated last week
- Global Security Database Tools☆43Updated 2 years ago
- Autoconfigured ELK Stack That Contains All EPSS and NVD CVE Data☆64Updated last month
- Repository for the Open Information Security Risk Universe☆64Updated 3 years ago
- VINCE is the Vulnerability Information and Coordination Environment developed and used by the CERT Coordination Center to improve coordin…☆89Updated this week
- ☆19Updated 6 months ago
- ☆192Updated last week
- ☆65Updated last year
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.☆179Updated last month
- CVE.ICU code.☆50Updated this week
- One Conference 2024☆111Updated last year
- ☆20Updated 6 months ago
- The principal objective of this project is to develop a knowledge base of the tactics, techniques, and procedures (TTPs) used by insiders…☆147Updated 6 months ago
- Security Control Knowledge Graph☆31Updated last year
- An application allowing users to explore, create, annotate, and share extensions of the MITRE ATT&CK® knowledge base. This repository con…☆53Updated this week
- ☆16Updated 2 years ago
- Code that implements Factor Analysis of Information Risk (FAIR) in combination with MITRE ATT&CK using Markov Chain Monte Carlo (via PyMC…☆44Updated last month
- Documentation on the Cyber Defense Matrix☆24Updated 2 years ago
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆97Updated 11 months ago
- OWASP Foundation Web Respository☆32Updated 3 months ago
- Tool to guess CPE name based on common software name☆114Updated 4 months ago