RiskScanner 是开源的多云安全合规扫描平台,基于 Cloud Custodian 和 Nuclei 引擎,实现对主流公(私)有云资源的安全合规扫描和漏洞扫描。
☆1,152Apr 14, 2023Updated 3 years ago
Alternatives and similar repositories for riskscanner
Users that are interested in riskscanner are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 分布式端口(漏洞)扫描、资产安全管理、实时威胁监控与通知、高效漏洞闭环、漏洞wiki、邮件报告通知、poc框架☆572Mar 24, 2023Updated 3 years ago
- 傻瓜式漏洞PoC测试框架☆1,440Oct 30, 2023Updated 2 years ago
- 安全、快捷、高交互、企业级的蜜罐管理系统,护网;支持多种协议蜜罐、蜜签、诱饵等功能。A safe, fast, highly interactive and enterprise level honeypot management system, supports mult…☆1,270Oct 17, 2023Updated 2 years ago
- 边界打点后的自动化渗透工具☆1,892Jul 19, 2021Updated 5 years ago
- 合规审计平台☆469Apr 8, 2026Updated 3 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- 一款甲方资产巡航扫描系统。系统定位是发现资产,进行端口爆破。帮助企业更快发现弱口令问题。主要功能包括: 资产探测、端口爆破、定时任务、管理后台识别、报表展示☆1,840Apr 19, 2022Updated 4 years ago
- KunLun-M — Open-source static code analysis for PHP, Nodejs/JavaScript, Python, Golang, Java and C/C++, with AST-based semantic scanning …☆2,403Updated this week
- 安全编排与自动化响应平台☆62Dec 16, 2020Updated 5 years ago
- 本程序旨在为安全应急响应人员对Linux主机排查时提供便利,实现主机侧Checklist的自动全面化检测,根据检测结果自动数据聚合,进行黑客攻击路径溯源。☆2,823Aug 7, 2022Updated 3 years ago
- bayonet是一款src资产管理系统,从子域名、端口服务、漏洞、爬虫等一体化的资产管理系统☆1,515Nov 22, 2022Updated 3 years ago
- veinmind-tools 是由长亭科技自研,基于 veinmind-sdk 打造的容器安全工具集☆1,654Jan 10, 2024Updated 2 years ago
- 飞刃是一套完整的企业级黑盒漏洞扫描系统,集成漏洞扫描、漏洞管理、扫描资产、爬虫等服务。 拥有强大的漏洞检测引擎和丰富的插件库,覆盖多种漏洞类型和应用程序框架。☆1,169Jun 30, 2023Updated 3 years ago
- Elkeid is an open source solution that can meet the security requirements of various workloads such as hosts, containers and K8s, and ser…☆2,660May 11, 2026Updated 2 months ago
- Passive Security Scanner (被动式安全扫描器)☆1,947Feb 8, 2023Updated 3 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- 溯光 (TrackRay) 3 beta⚡渗透测试框架(资产扫描|指纹识别|暴力破解|网页爬虫|端口扫描|漏洞扫描|代码审计|AWVS|NMAP|Metasploit|SQLMap)☆2,076Dec 16, 2023Updated 2 years ago
- 一款适用于红蓝对抗中的仿真钓鱼系统☆1,539May 30, 2023Updated 3 years ago
- Java Agent is a Java application probe of DongTai IAST, which collects method invocation data during runtime of Java application by dynam…☆699Dec 25, 2023Updated 2 years ago
- Medusa是一个红队武器库平台,目前包括XSS平台、协同平台、CVE监控、免杀生成、DNSLOG、钓鱼邮件、文件获取等功能,持续开发中☆2,240Mar 3, 2024Updated 2 years ago
- 六大云存储,泄露利用检测工具☆1,263Mar 28, 2025Updated last year
- A powerful browser crawler for web vulnerability scanners☆3,037Mar 11, 2025Updated last year
- EyeJo是一款自动化资产风险评估平台,可以协助甲方安全人员或乙方安全人员对授权的资产中进行排查,快速发现存在的薄弱点和攻击面。☆450Aug 25, 2021Updated 4 years ago
- Suricata IDS rules 用来检测红队渗透/恶意行为等,支持检测CobaltStrike/MSF/Empire/DNS隧道/Weevely/菜刀/冰蝎/挖矿/反弹shell/ICMP隧道等☆1,277Jul 8, 2023Updated 3 years ago
- GoScan是采用Golang语言编写的一款分布式综合资产管理系统,适合红队、SRC等使用☆714May 6, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- 一个利用OneForAll进行子域收集、Shodan API端口扫描、Xray漏洞Fuzz、Server酱的自动化漏洞扫描、即时通知提醒的漏洞挖掘辅助工具☆741Dec 8, 2022Updated 3 years ago
- 源代码漏洞の审计☆828Jul 2, 2024Updated 2 years ago
- Kscan是一款纯go开发的全方位扫描器,具备端口扫描、协议检测、指纹识别,暴力破解等功能。支持协议1200+,协议指纹10000+,应用指纹20000+,暴力破解协议10余种。☆4,291Aug 22, 2023Updated 2 years ago
- Security Orchestration, Automation and Response (SOAR) Platform. 安全编排与自动化响应平台,无需编写代码的安全自动化,使用 SOAR 可以让团队工作更加高效☆1,546Jun 24, 2024Updated 2 years ago
- Dongtai IAST is an open-source Interactive Application Security Testing (IAST) tool that enables real-time detection of common vulnerabil…☆1,316May 22, 2025Updated last year
- 📦 Make security testing of K8s, Docker, and Containerd easier.☆4,712May 1, 2026Updated 2 months ago
- codemillx is a tool for CodeQL, extract the comments in the code and generate codeql module. 强化Go开源项目安全检测(内含开源项目漏洞挖掘方法)☆205Mar 19, 2022Updated 4 years ago
- 🚀 A simple asset discovery engine for cybersecurity. (网络资产发现引擎)☆1,333Dec 8, 2022Updated 3 years ago
- domain_hunter的高级版本,SRC挖洞、HW打点之必备!自动化资产收集;快速Title获取;外部工具联动;等等☆2,142Jun 23, 2026Updated 3 weeks ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- 收集一些比较优秀的开源安全项目,以帮助甲方安全从业人员构建企业安全能力。☆2,383Jul 15, 2024Updated 2 years ago
- 🚀Vulfocus 是一个漏洞集成平台,将漏洞环境 docker 镜像,放入即可使用,开箱即用。☆3,490Sep 9, 2025Updated 10 months ago
- Antenna是58同城安全团队打造的一款辅助安全从业人员验证网络中多种漏洞是否存在以及可利用性的工具。其基于带外应用安全测试(OAST)通过任务的形式,将不同漏洞场景检测能力通过插件的形式进行集合,通过与目标进行out-bind的数据通信方式进行辅助检测。☆721Jun 6, 2023Updated 3 years ago
- ServerScan一款使用Golang开发的高并发网络扫描、服务探测工具。☆1,650Jun 16, 2024Updated 2 years ago
- 高危漏洞精准检测与深度利用框架☆1,463Jan 8, 2023Updated 3 years ago
- JetBrains系列产品.idea钓鱼反制红队☆329Jan 27, 2026Updated 5 months ago
- 红队作战中比较常遇到的一些重点系统漏洞整理。☆2,523Jul 17, 2021Updated 5 years ago