Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
-
Updated
Jan 29, 2025 - Shell
Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.
Sifter - All purpose penetration testing op-center
fsp - Firestore Database Vulnerability Scanner Using APKs
A collection of awesome security hardening software, libraries, learning tutorials & documents, e-books, best practices, checklists, benchmarks about hardening in Cybersecurity
A simple bash script that installs OpenVAS from sources on Debian 12.
A simple shell script which utilizes nmap, nikto, dirb, enum4linux and other open source goodies to automate enumeration process.
Pentesting Suite Deployer for Raspbian Stretch
An automation tool that scans sub-domains, sub-domain takeover and then filters out xss, ssti, ssrf and more injection point parameters.
Rogue.sh is an automated Bash script for Linux systems that performs Nmap scans, sets up Metasploit, exploits vulnerabilities, downloads sensitive files, gathers credentials, and executes post-exploitation tasks, providing a comprehensive overview of a target system's vulnerabilities and security measures.
All things Cybersecurity!
CISO360.AI
Sleepy-Duck is an open source project created for automated security testing on application level. It can be used as an educational script to start learning about cyber-security as well as a common tool for vulnerability assessment.
Simple ADB toolkit to penetrate Android device using Android Debug Bridge with over 35 features.
SecZz is an advanced toolkit meticulously crafted to fortify the security of Apache HTTP Server configurations. This toolkit features a collection of powerful scripts designed to address a spectrum of security concerns, providing users with a seamless and user-friendly interface for configuring and safeguarding their Apache servers.
Sleepy-Duck is an open source project created for automated security testing on application level. It can be used as an educational script to start learning about cyber-security as well as a common tool for vulnerability assessment.
Automated Vulnerability Assessment using Falcon Pi Remotely (using raspberry-3)
rSCAP is a standardized compliance checking solution and auditing script used with Redhat based Linux systems.
The Metasploit-Termux-Installer script automates the setup of Metasploit Framework on Termux, enabling penetration testing on Android. It updates packages, installs dependencies, fetches Metasploit, and configures the environment for seamless use, allowing you to run Metasploit tools like `msfconsole` directly from your terminal.
Yet Another Recon Framework🥷⚔️
Add a description, image, and links to the vulnerability-assessment topic page so that developers can more easily learn about it.
To associate your repository with the vulnerability-assessment topic, visit your repo's landing page and select "manage topics."