monkey
openvas-scanner
monkey | openvas-scanner | |
---|---|---|
5 | 9 | |
6,487 | 2,882 | |
0.6% | 2.0% | |
10.0 | 9.4 | |
3 days ago | 6 days ago | |
Python | C | |
GNU General Public License v3.0 only | GNU General Public License v3.0 only |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
monkey
- Security Audit Scan
- Kaseya Acquired Vonahi Security
-
If you could name 5 tools/software worth learning for a cybersecurity analyst to become more employable, what would they be?
https://github.com/guardicore/monkey The Infection Monkey is an open source security tool for testing a data center's resiliency to perimeter breaches and internal server infection. The Monkey uses various methods to self propagate across a data center and reports success to a centralized Monkey Island server.
-
Infection Monkey is a free open-source, network penetration testing tool. It is a breach and attack simulator that uses real-world attack techniques and known vulnerabilities. Evaluating your security is easy with Infection Monkey and takes 3 simple steps.
The git is here: https://github.com/guardicore/monkey . Build it from source or look for it on COPR or wherever its circle-ci pops it out of.
openvas-scanner
-
Monthly Security Checklist
OpenVAS - https://github.com/greenbone/openvas-scanner
- Kaseya Acquired Vonahi Security
-
Looking for Recommendations for New Vulnerability & PHI/PII Scanner
OWASP Zap, OWASP Amass, OpenVAS Scanner
-
OpenAI Execs Say They're Shocked by ChatGPT's Popularity
And OpenVAS and OpenSSH and OpenBSD and OpenNN and OpenAFS and on and on and on
-
Implement DevSecOps to Secure your CI/CD pipeline
We can create an automation pipeline to patch the server using Foreman or Red Hat Satellite and for scanning, we can use OpenVAS or Nessus to get the list of vulnerabilities.
- Free alternative to something like Tenable's Nessus Monitor?
-
Priv Sec Audit?
OpenVAS
-
Is there a tool to track CVEs for the software that we use?
I don't recommend cheaping out on vuln scanning, but if you really can't get any money there's always OpenVAS. That will allow you to do credentialed scanning and track vulnerabilities in your environment. It's no real substitute for Tenable or similar, but it's better than nothing.
- Show HN: Easy to use vulnerability exploitation data
What are some alternatives?
flake8-bandit - Automated security testing using bandit and flake8.
Wazuh - Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
APTSimulator - A toolset to make a system look as if it was the victim of an APT attack
trivy - Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
atomic-red-team - Small and highly portable detection tests based on MITRE's ATT&CK.
GVM-Docker - Greenbone Vulnerability Management Docker Image with OpenVAS
DumpsterFire - "Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events. Easily create custom event chains for Blue- & Red Team drills and sensor / alert mapping. Red Teams can create decoy incidents, distractions, and lures to support and scale their operations. Build event sequences ("narratives") to simulate realistic scenarios and generate corresponding network and filesystem artifacts.
vulscan - Advanced vulnerability scanning with Nmap NSE
autowpscan - Assistant work tool for wpscan.
opencve - CVE Alerting Platform
lynis - Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
DependencyCheck - OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.