natlas
awesome-attack-surface-monitoring
natlas | awesome-attack-surface-monitoring | |
---|---|---|
5 | 3 | |
601 | 292 | |
0.7% | - | |
6.9 | 0.0 | |
10 days ago | 11 months ago | |
Python | ||
Apache License 2.0 | - |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
natlas
- Shodan
-
Passive network device discovery
Natlas was basically built for exactly this use case. Docker-compose file in the repo so you can set up as containers in Windows. https://github.com/natlas/natlas
-
A 15 year old’s (me) network diagram
Thanks, now I just need natlas to generate prettier graphs for leadership... I had a feeling it was graphviz on the backend, been a while.
- Continuous network enumeration tool like Fing
-
0xtavian/awesome-attack-surface-monitoring - Resources for Attack Surface Monitoring!
Natlas looks like a tool I'd been wanting but couldn't find. It does seem to lack some kind of built in alerting infrastructure though - is there anything else opensource like Natlas that is more fully featured for being able to monitor for changes in attack surface?
awesome-attack-surface-monitoring
What are some alternatives?
draw.io - draw.io is a JavaScript, client-side editor for general diagramming.
osmedeus - A Workflow Engine for Offensive Security
pyndiff - Generate human-readable ndiff output when comparing 2 Nmap XML scan files
OneForAll - OneForAll是一款功能强大的子域收集工具
scantron - A distributed nmap / masscan scanning framework complete with scan scheduling, engine pooling, subsequent scan port diff-ing, and an API client for automation workflows.
dirsearch - Web path scanner
WebMap - WebMap-Nmap Web Dashboard and Reporting
Sn1per - Attack Surface Management Platform
Smog - A semi-automatic osint/recon framework.
Net-Mon - Get notified for new devices on your network
IVRE - Network recon framework. Build your own, self-hosted and fully-controlled alternatives to Shodan / ZoomEye / Censys and GreyNoise, run your Passive DNS service, collect and analyse network intelligence from your sensors, and much more! Uses Nmap, Masscan, Zeek, p0f, etc.
diagrams - :art: Diagram as Code for prototyping cloud system architectures