OVAL-Community / OVAL
Official repository for the Open Vulnerability and Assessment Language
☆43Updated this week
Alternatives and similar repositories for OVAL:
Users that are interested in OVAL are comparing it to the libraries listed below
- The OVAL Language Schemas☆87Updated 5 months ago
- An open-source JAXB data model for SCAP specification formats.☆57Updated 2 years ago
- Python API for vFeed Vulnerability & Threat Intelligence Database Enterprise & Pro Editions☆99Updated last year
- CVSS v4.0 calculator☆28Updated 6 months ago
- Understand OVAL results in a blink of an eye☆35Updated 2 years ago
- Tools for security content automation, baseline tailoring, and overlay development.☆43Updated 6 months ago
- List of sigma for a variety of threats for multiple log sources.☆11Updated 6 years ago
- OWASP Foundation Web Respository☆28Updated 2 years ago
- ☆275Updated last year
- A Crowdsourcing Exchange for mapping various sources of security vulnerabilities, exposures, threats, and controls data☆26Updated 5 years ago
- CVE Vulnerability scanner of your software bill of materials (SBOM). ASCII text input.☆17Updated 4 years ago
- Landing Page Content/Builder for MITRE Security Automation Framework☆28Updated this week
- A Python library and command line interface for CVE Services.☆61Updated last month
- Kestrel Jupyter Notebook Kernel☆9Updated last year
- OWASP Ontology-driven Threat Modelling framework☆37Updated last year
- OCA-wide documentation shared by all sub-projects and repositories☆33Updated 4 months ago
- OASIS TC Open Repository: A GitHub repository for management of non-normative information about the work of the CSAF Technical Committee,…☆20Updated this week
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆62Updated 11 months ago
- OASIS TC Open Repository: CSAF Parser tool for parsing and checking the syntax of the Common Vulnerability Reporting Framework (CVRF) con…☆23Updated 2 years ago
- A ComplianceAsCode blog☆27Updated last week
- CVSS v4.0 calculator☆37Updated 4 months ago
- Joystick is a tool that gives you the ability to transform the ATT&CK Evaluations data into concise views that brings forward the nuances…☆64Updated last year
- DefectDojo Community Content☆17Updated 4 months ago
- Controls Assessment Specification☆69Updated 9 months ago
- Stakeholder-Specific Vulnerability Categorization☆137Updated this week
- GitHub action to run Threagile, the agile threat modeling toolkit, on a repo's threagile.yaml file☆13Updated 10 months ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆55Updated 5 months ago
- Generic Signature Format for SIEM Systems☆14Updated 3 years ago
- Global Security Database Tools☆42Updated last year
- CVE.ICU code.☆39Updated this week