aquasecurity / windows-bench
Checks whether a Windows server according to security best practices as defined in the CIS Distribution-Independent Windows Benchmark
☆21Updated 2 weeks ago
Alternatives and similar repositories for windows-bench:
Users that are interested in windows-bench are comparing it to the libraries listed below
- Microsoft Defender for Cloud threat matrix for Kubernetes☆24Updated 2 years ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆27Updated 2 months ago
- Tool for generating a report from results of oscap scan.☆20Updated 6 months ago
- NIST OSCAL SDK and CLI☆19Updated 9 months ago
- EPSS(Exploit Prediction Scoring System) API client☆18Updated this week
- Defending IaaS with ATT&CK is a project to create a collection of ATT&CK techniques relevant to a Linux IaaS environment, as well as a me…☆14Updated last year
- GitHub action to run Threagile, the agile threat modeling toolkit, on a repo's threagile.yaml file☆13Updated 11 months ago
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated 2 years ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆70Updated 2 years ago
- (WIP) CIS Microsoft Azure Foundations Benchmark☆16Updated 3 years ago
- ☆22Updated 3 weeks ago
- A collection of dashboards, templates, API's and Power BI code for vulnerability management and analysis☆17Updated 2 months ago
- ☆86Updated last month
- ☆15Updated 3 years ago
- DefectDojo Community Content☆18Updated 6 months ago
- ☆10Updated 2 years ago
- Markdown Version of the DHS/CISA Secure Software Development Self Attestation Form.☆21Updated last year
- Fun tools around the EBS Direct API☆18Updated 4 years ago
- YES3 Scanner: S3 Security Scanner for Access and Ransomware Protection☆50Updated this week
- A meta-database collecting resources that compile lists of breaches☆18Updated 5 months ago
- Sharing software supply chain security open source projects☆48Updated 2 years ago
- PowerShell based STIG Scanner.☆11Updated 2 years ago
- Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug☆9Updated 4 years ago
- ☆14Updated last year
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.☆21Updated 6 months ago
- Wazuh Agent as Docker Image☆23Updated 11 months ago
- Security-focused Chaos Experiments for DevSecOps Teams☆25Updated 3 months ago
- Explore the GOAD Active Directory lab in 5 minutes with Adalanche☆36Updated 3 months ago
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆30Updated 6 months ago
- Osquery Packs we use for customer security hardening☆12Updated 6 months ago