24 مستودعات
Utilities for organizing and tagging large collections of digital assets.
Distinguishing note: Focuses on bulk metadata and label management for inventory organization.
Explore 24 awesome GitHub repositories matching data & databases · Asset Inventory Management. Refine with filters or upvote what's useful.
Nuclei is a modular security scanning framework designed for automated vulnerability detection and infrastructure reconnaissance. It functions as a template-driven engine that executes security checks across diverse network protocols, allowing users to define custom detection logic to identify vulnerabilities, misconfigurations, and exposed assets. The platform distinguishes itself through its highly extensible architecture, which supports distributed scanning, headless browser automation for dynamic web content, and out-of-band interaction monitoring to detect blind vulnerabilities. It integ
Categorizes infrastructure using automated tagging or custom labels to streamline management and risk prioritization.
Mimikatz is a security research suite designed for auditing Windows authentication and managing system security configurations. It provides a comprehensive framework for extracting sensitive credentials, manipulating process privileges, and managing digital identity assets directly from system memory or offline memory dumps. The project distinguishes itself through advanced system-level exploitation techniques, including runtime process injection, API hooking, and the ability to bypass cryptographic export restrictions. It features a specialized toolkit for Kerberos protocol operations, allow
Extracts certificates and private keys from system stores or providers into portable file formats to facilitate backup, migration, or analysis.
This project is a comprehensive framework for engineering financial data pipelines, designed to automate the collection, cleaning, and synchronization of large-scale market datasets. It functions as a quantitative trading data engine, providing the infrastructure necessary to manage historical and real-time asset pricing information for research and machine learning workflows. The system distinguishes itself through a configuration-driven approach to orchestration, allowing users to manage complex data acquisition tasks across multiple financial providers. It features resilient middleware tha
Provides visibility into stored datasets by tracking row counts, date ranges, and provider metadata.
Amass is an attack surface management tool designed to identify, map, and inventory an organization's internet-facing digital assets. It functions as a security asset discovery engine that systematically expands an organization's known infrastructure footprint through recursive domain name resolution and the collection of intelligence from diverse public data sources. The platform distinguishes itself by utilizing a graph-based modeling approach to organize discovered resources. By maintaining a persistent graph database, it tracks the relationships between infrastructure components and norma
Maintains a searchable database of discovered resources to track infrastructure changes across multiple environments.
ArchiSteamFarm is a background service designed for the automated management of multiple Steam accounts. It functions as a centralized platform that coordinates account settings, inventory organization, and game idling tasks across several profiles from a single interface. The software utilizes a state-machine approach to track individual account lifecycles and communicates with the Steam platform through an event-driven protocol. It supports configuration-driven logic injection, allowing users to adjust operational parameters without modifying the source code, and provides a plugin-based int
Streamlines the process of trading, selling, or organizing digital items across numerous accounts to maintain efficient inventory control.
Subfinder is a security reconnaissance framework designed for subdomain enumeration and attack surface management. It functions as a discovery engine that identifies and maps internet-exposed infrastructure, cloud-hosted assets, and network ranges to maintain a comprehensive inventory of an organization's digital footprint. The project distinguishes itself through a modular, template-driven scanning engine that executes security checks against discovered assets. It leverages cloud-native asset discovery to query provider APIs and infrastructure metadata, while supporting distributed agent orc
Identifies and inventories internet-exposed and cloud-hosted infrastructure assets.
Nakama is a distributed server framework designed for real-time multiplayer games and social applications. It provides an authoritative runtime environment for executing game logic, ensuring consistent state and cheat-resistant gameplay across diverse client platforms. The system acts as a centralized backend, managing persistent player identities, social graphs, and real-time communication channels to support complex multiplayer interactions. The platform distinguishes itself through an integrated suite of LiveOps tools that allow developers to manage game economies, schedule time-bound even
Handles ownership, stacking, and categorization of digital items to support crafting and progression.
DataHub is a metadata management platform designed to unify technical, operational, and business context across diverse data ecosystems. By utilizing a graph-based metadata model and an event-driven ingestion architecture, it creates a centralized source of truth that maps complex data relationships, lineage, and ownership. This foundational framework enables organizations to maintain a synchronized view of their data landscape, supporting both human-led discovery and automated data operations. The platform distinguishes itself through its focus on grounding artificial intelligence and autono
Maintains a centralized, searchable catalog of metadata to help users discover and understand enterprise data assets.
This project is an open-source intelligence reconnaissance framework and recursive attack surface mapper. It functions as a containerized security scanner designed to map public-facing infrastructure, perform subdomain enumeration, and automate the gathering of open-source intelligence. The system employs a recursive discovery engine to iteratively explore target infrastructure, utilizing a plugin-based module architecture to extend scanning capabilities. It integrates third-party APIs for data enrichment and applies YARA rules across discovered assets to identify specific vulnerability patte
Maintains a state-persistent database of discovered hosts and metadata to prevent redundant scanning.
reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the discovery, mapping, and monitoring of external digital assets. It operates as a modular tool-chain pipeline that coordinates a sequence of security tools to perform intelligence gathering and vulnerability scanning. The project distinguishes itself through a cloud-native deployment model that parallelizes scanning workloads across a fleet of remote VPS instances to bypass local resource constraints. It utilizes container-based environment isolation to ensure consistent executio
Exports the mapped inventory of discovered subdomains and vulnerabilities into machine-readable formats.
Cloud Custodian is an open-source rules engine that uses declarative YAML policies to query, filter, and take automated actions on cloud resources for governance and compliance. It functions as a stateless policy execution engine, where each policy evaluation runs as an independent, idempotent operation without maintaining internal state between runs. Policies are defined using a YAML-based domain-specific language that structures rules as a query-filter-action pipeline. The engine supports dry-run validation, allowing users to simulate policy actions against live resources without applying c
Scanning cloud accounts for resources matching specified criteria using a flexible filter chain in policy definitions.
Naabu is a port scanner library and tool that probes hosts for open ports using SYN, CONNECT, and UDP methods to identify active services. It functions as a Go library for embedding port scanning into programs, and as a standalone tool that accepts targets as hostnames, IP addresses, CIDR ranges, or ASN numbers. The tool discovers live hosts before scanning, filters ports by range or top lists, and can integrate with Nmap for service version detection. The project distinguishes itself through its SYN-based port probing approach that sends TCP SYN packets and analyzes responses without complet
Connects cloud provider accounts to import and continuously synchronize host assets for monitoring.
Snyk is an application security testing platform designed to identify and remediate vulnerabilities across source code, open-source dependencies, container images, and infrastructure-as-code configurations. It functions as a comprehensive security workflow automation tool, utilizing a static analysis engine and dependency graph mapping to detect security flaws and license compliance issues throughout the software development lifecycle. The platform distinguishes itself through agentic workflow orchestration and an automated remediation pipeline that generates and submits pull requests to patc
Provides a centralized interface to view, filter, and track all software assets and projects across the organization.
GLPI is an open-source IT asset management platform and helpdesk ticketing system. It provides a centralized engine for handling incidents and service requests with structured workflows, SLA tracking, and service catalog integration, while also managing the full lifecycle of IT assets including hardware, software, and inventory tracking. The platform distinguishes itself through agentless network discovery that scans networks and collects inventory data from devices without requiring installed agents, and a plugin-based modular architecture that extends core functionality through a community-
Scans networks and collects inventory data without requiring agents on managed devices.
wgcloud هي مجموعة شاملة من أدوات المراقبة والإدارة المصممة لخوادم Linux، وأجهزة الشبكة، والحاويات، والبرمجيات الوسيطة. تعمل كلوحة تحكم مركزية لتتبع مقاييس الأجهزة في الوقت الفعلي، وتدقيق صحة بيئات Docker و Kubernetes، والحفاظ على نظام إدارة أصول تكنولوجيا المعلومات للبنية التحتية المادية والسحابية. يتميز النظام بإمكانيات الإدارة عن بعد المتكاملة، حيث يتميز بعميل SSH قائم على الويب لتنفيذ أوامر مجمعة وإدارة الخوادم مباشرة من المتصفح. كما يتميز بتحليل النظام المدفوع بالذكاء الاصطناعي ومراقب شبكة SNMP متخصص لاكتشاف وتتبع حالة أجهزة التوجيه والمحولات وجدران الحماية. يغطي النظام مجموعة واسعة من الإمكانيات التشغيلية، بما في ذلك مراقبة البنية التحتية من خلال مقاييس الموارد وتتبع السجلات، والتنبيه التلقائي عبر إشعارات متعددة القنوات، ومراقبة الأمان من خلال فحوصات سلامة الملفات. كما يوفر أدوات تصور لطوبولوجيا الشبكة وإنشاء تقارير الامتثال التلقائية.
Tracks hardware inventory, device accounts, and system metadata using a centralized asset management system.
Jasmine is a digital comic reader and community content platform designed for browsing, reading, and organizing digital comic collections. It functions as a comic library manager that allows users to track reading progress, save favorite titles, and categorize comic series. The application is an offline-capable web app that employs local-first data and content caching to ensure comic pages remain accessible without an internet connection. It features a responsive page viewer that adjusts comic dimensions based on the device screen size to maintain readability. The platform integrates social
Organizes content libraries through a structured database schema to facilitate fast filtering and search retrieval.
Pigsty is a full-stack orchestration suite for deploying, monitoring, and managing high-availability PostgreSQL clusters and their supporting infrastructure. It functions as a cluster management platform and high-availability suite that automates failover, manages virtual IPs, and ensures data consistency through distributed consensus. The project distinguishes itself by providing a comprehensive database infrastructure-as-code framework and a dedicated observability stack. It incorporates a backup and recovery manager supporting point-in-time recovery via S3-compatible object storage, alongs
Stores cluster metadata and variable definitions in a relational database for dynamic configuration via SQL.
DefectDojo is a vulnerability management system and application security orchestration tool. It serves as a centralized platform for importing, deduplicating, and tracking security findings from multiple scanners and tools to manage an organization's overall security posture. The system distinguishes itself by aggregating findings from various security tools into a single report and normalizing that data to prioritize remediation. It provides specific workflows for vulnerability triage and deduplication to reduce noise and redundant manual work across the software development lifecycle. The
Uses a strongly typed relational database schema to structure security assets and vulnerability hierarchies for consistent reporting.
Security Monkey هو أداة لإدارة وضع الأمان السحابي وتدقيق التكوينات. يعمل كمنصة مراقبة تتعقب الأصول السحابية وتسجل تغييرات الحالة لتحديد متى يتم تغيير سياسات الأمان أو إدخال تكوينات غير آمنة. يحتفظ النظام بجرد للأصول متعددة السحابة، ويتتبع الموارد عبر AWS و GCP و OpenStack ومنظمات GitHub. ويوفر واجهة مركزية للبحث وتصفح الأصول عبر مزودي سحابة ومناطق متعددة. تغطي المنصة تدقيق الأمان السحابي وتتبع تغييرات البنية التحتية من خلال مقارنة الحالات التاريخية للموارد لاكتشاف انحراف التكوين. ويستخدم الاكتشاف القائم على المزود وفهرسة الموارد الموحدة لمراقبة الأصول والسياسات بمرور الوقت.
Queries cloud provider APIs to identify, list, and track infrastructure resources across multiple environments.
Scanopy is a self-hosted infrastructure inventory and network discovery tool. It identifies hosts, services, and workloads across subnets to build a live model of network infrastructure, maintaining a searchable catalog of assets. The system features an interactive network topology visualizer that generates physical, logical, and application dependency diagrams. It maps the nesting chain from physical hardware and hypervisors down to virtual machines and containers, utilizing SNMP for hardware metadata and container APIs for workload discovery. The platform supports distributed network scann
Maintains a searchable catalog of detected network services and their associated hardware devices.