The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools developed by MITRE and the security community to streamline security automation for systems and DevOps pipelines
☆183Aug 14, 2026Updated this week
Alternatives and similar repositories for saf
Users that are interested in saf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Heimdall Enterprise Server 2 lets you view, store, and compare automated security control scan results.☆254Updated this week
- eMASSer is a command-line interface (CLI) that aims to automate routine business use-cases and provide utility surrounding the Enterprise…☆51May 6, 2026Updated 3 months ago
- A web application to streamline the development of STIGs from SRGs☆87Updated this week
- The eMASS client repository maintains the Enterprise Mission Assurance Support Service (eMASS) Representational State Transfer (REST) App…☆28Mar 31, 2026Updated 4 months ago
- The SAF Training Lab is a GitHub Codespaces environment that makes it quick and easy for you to use, learn and participate in the MITRE S…☆15Apr 22, 2026Updated 3 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- This repository contains several courses to learn about using and developing SAF capabilities☆16Updated this week
- Landing Page Content/Builder for MITRE Security Automation Framework☆29Mar 1, 2026Updated 5 months ago
- DEPRECATED: A set of utilities for converting and working with compliance data for viewing in the heimdall applications☆34Feb 5, 2022Updated 4 years ago
- A web front-end providing a REST-ful API to mount and unmount forensic disk images☆21Feb 14, 2026Updated 6 months ago
- Benchmark Generator to create skeleton Ansible content from baseline XCCDF files.☆11Sep 10, 2020Updated 5 years ago
- A command-line and ruby API of utilities, converters and tools for creating, converting and processing security baseline formats, results…☆97Jul 29, 2024Updated 2 years ago
- An API and client for managing STIG assessments☆227Updated this week
- InSpec profile to validate the secure configuration of Red Hat Enterprise Linux 7, against DISA's Red Hat Enterprise Linux 7 Security Tec…☆15Dec 15, 2025Updated 8 months ago
- OSCAL SSP content for technologies shipped by Red Hat☆16Mar 2, 2023Updated 3 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Experimental CPSA -- the Cryptographic Protocol Shapes Analyzer experimental version☆24Jun 20, 2026Updated last month
- A micro InSpec baseline to check for insecure or public s3 buckets in your VPC☆14Jan 17, 2025Updated last year
- Security hardening content for VMware solutions to US Department of Defense standards☆197Aug 6, 2026Updated last week
- Archived from chef-cookbooks/testing_examples - A repo of example testing files☆13Feb 18, 2026Updated 5 months ago
- STIG-CCI-CONTROLMAPPER☆17Jun 21, 2018Updated 8 years ago
- ***MERGED: SEE README:*** The XCCDF to InSpec parser scans and extracts the controls defined in the DISA XCCDF STIG XML documents and con…☆13Nov 23, 2018Updated 7 years ago
- Documentation on the OpenRMF application, including scripts to run the whole stack as well as just infrastructure with documentation on u…☆162May 23, 2026Updated 2 months ago
- Another MISP module for Python☆18Feb 17, 2020Updated 6 years ago
- MODBUS Penetration Testing Framework☆11Mar 27, 2019Updated 7 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A Zeek package that detects Zoom logins and meeting joins☆12Apr 15, 2020Updated 6 years ago
- Powerful XML<->JSON JavaScript mapping library.☆16Apr 29, 2026Updated 3 months ago
- SCAP Compliance Checker (SCC) archive of past publicly released versions☆28May 4, 2026Updated 3 months ago
- ☆16Jul 12, 2026Updated last month
- SystemBanner is an application used to display relevant security classification information about the Windows systems it runs on.☆17May 25, 2026Updated 2 months ago
- An opinionated tooling platform for managing compliance as code, using continuous integration and NIST's OSCAL standard.☆269Updated this week
- Generic Signature Format for SIEM Systems☆14Oct 27, 2021Updated 4 years ago
- ☆10Jul 1, 2022Updated 4 years ago
- Official repository for the Open Vulnerability and Assessment Language☆105Jun 6, 2026Updated 2 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆34Jun 22, 2021Updated 5 years ago
- STIX data representing MITRE ATT&CK☆628Aug 5, 2026Updated last week
- InSpec profile to validate your VPC to the standards of the CIS Amazon Web Services Foundations Benchmark☆76Dec 14, 2025Updated 8 months ago
- An python script that use apkleaks to scan the android application over web☆11Jun 2, 2022Updated 4 years ago
- A list of tools, blog posts, and other resources that further the use and adoption of OSCAL standards.☆233Jun 25, 2025Updated last year
- A python module for working with ATT&CK☆730Aug 5, 2026Updated last week
- A pair of scripts to import session and local group information that has been collected from alternate data sources into BloodHound's Neo…☆21Aug 29, 2022Updated 3 years ago