cvehound
lynis
cvehound | lynis | |
---|---|---|
1 | 72 | |
115 | 12,533 | |
- | 1.0% | |
8.8 | 7.8 | |
19 days ago | 3 days ago | |
SmPL | Shell | |
GNU General Public License v3.0 only | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
cvehound
-
Kubernetes Security Checklist 2021
It is recommended to regularly update the OS kernel version (CVEhound)
lynis
-
Who does check linux distros of malware - open source
Linux has (free) tools to improve security and detect/remove malware: Lynis,Chkrootkit,Rkhunter,ClamAV,Vuls,LMD,radare2,Yara,ntopng,maltrail,Snort,Suricata...
- Learn security best practices
- How do i find and remove the compilers installed in fedora?
-
Fight against scans, bots and script-kiddies
What I would do in your place is run this https://github.com/CISOfy/lynis and follow some of the instructions.
-
What are your favorite sites that are privacy related that you bookmarked?
https://github.com/CISOfy/Lynis (Linux hardening)
- Server security/hardening baselines for Linux Template
- Ultimate privacy when setting up Fedora?
- Linux security tests?
- Vulnerability scanning tools for homelab?
-
Cyber Security for developers: what and where to learn?
Linux security audit scanner
What are some alternatives?
grype - A vulnerability scanner for container images and filesystems
Wazuh - Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
kube-hunter - Hunt for security weaknesses in Kubernetes clusters
OSSEC - OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.
documentation - Kata Containers version 1.x documentation (for version 2.x see https://github.com/kata-containers/kata-containers).
PEASS-ng - PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
KubiScan - A tool to scan Kubernetes cluster for risky permissions
cve-check-tool - Original Automated CVE Checking Tool
Kyverno - Kubernetes Native Policy Management
OSQuery - SQL powered operating system instrumentation, monitoring, and analytics.
sealed-secrets - A Kubernetes controller and tool for one-way encrypted Secrets
debian-cis - PCI-DSS compliant Debian 10/11/12 hardening