vmware-labs / attack-surface-frameworkLinks
Tool to discover external and internal network attack surface
☆203Updated last year
Alternatives and similar repositories for attack-surface-framework
Users that are interested in attack-surface-framework are comparing it to the libraries listed below
Sorting:
- PatrowlHears - Vulnerability Intelligence Center / Exploits☆165Updated last week
- SECMON is a web-based tool for the automation of infosec watching and vulnerability management with a web interface.☆219Updated 3 years ago
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆126Updated 6 months ago
- Shodan Monitoring integration for TheHive.☆131Updated 10 months ago
- Downloads Information from NIST (CVSS), first.org (EPSS), and CISA (Exploited Vulnerabilities) and combines them into one list. Reports f…☆143Updated 2 years ago
- Playing around with Stratus Red Team (Cloud Attack simulation tool) and SumoLogic☆302Updated 2 years ago
- Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, an…☆144Updated 2 years ago
- ☆44Updated 2 years ago
- Parse .nessus file(s) and shows output in interactive UI☆159Updated 5 months ago
- Pwnspoof repository☆264Updated 2 years ago
- Lupo - Malware IOC Extractor. Debugging module for Malware Analysis Automation☆106Updated 3 years ago
- Static code analysis tool based on Elasticsearch☆129Updated 4 years ago
- Audit Windows Security with best Practice☆191Updated last year
- Zuthaka is an open source application designed to assist red-teaming efforts, by simplifying the task of managing different APTs and othe…☆178Updated 2 years ago
- Blue Team detection lab created with Terraform and Ansible in Azure.☆166Updated 11 months ago
- Malicious actors often reuse code to deploy their malware, phishing website or CNC server. As a result, similiaries can be found on URLs …☆75Updated last year
- firedrill is a malware simulation harness for evaluating your security controls☆194Updated last year
- Active Directory Lab for Penetration Testing☆52Updated 3 months ago
- A collection of intelligence about Log4Shell and its exploitation activity.☆184Updated 3 years ago
- An organizational asset and vulnerability management tool, with Jira integration, designed for generating application security reports.☆183Updated 2 weeks ago
- WebStor efficiently enumerates all websites across your organization’s networks and those in your DNS records - including cloud-hosted se…☆157Updated last year
- Top ATT&CK Techniques helps defenders approach the breadth and complexity of MITRE ATT&CK® with a prioritized top 10 list of techniques t…☆118Updated 4 months ago
- Extensible framework for analyzing publicly available information about vulnerabilities☆117Updated 5 months ago
- nse script to inject jndi payloads☆46Updated 3 years ago
- ☆173Updated 2 years ago
- Collection of created MindMaps☆151Updated last year
- Repository resource for threat hunter☆158Updated 7 years ago
- First iteration of ML based Feedback WAF☆59Updated last year
- Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulner…☆155Updated 2 years ago
- Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulatio…☆141Updated 8 months ago