awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descubre los mejores repositorios open-source con nuestra búsqueda potenciada por IA.

ExplorarBúsquedas curadasAlternativas open-sourceSoftware autohospedableBlogMapa del sitio
ProyectoServidor MCPAcerca deCómo clasificamosPrensa
Aviso legalPrivacidadTérminos
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

9 repositorios

Awesome GitHub RepositoriesEndpoint Security

Tools for hardening and monitoring specific operating systems.

Explore 9 awesome GitHub repositories matching part of an awesome list · Endpoint Security. Refine with filters or upvote what's useful.

Awesome Endpoint Security GitHub Repositories

Encuentra los mejores repositorios con IA.Buscaremos los repositorios que mejor coincidan usando IA.
  • orange-cyberdefense/goadAvatar de Orange-Cyberdefense

    Orange-Cyberdefense/GOAD

    7,464Ver en GitHub↗

    GOAD is an Ansible-based automation tool and infrastructure orchestrator used to deploy pre-configured networks of vulnerable Windows virtual machines. It serves as a security training environment for practicing Active Directory penetration testing, privilege escalation, and lateral movement across various cloud platforms and local virtualization hypervisors. The project distinguishes itself through a multi-provider infrastructure model and a system of infrastructure recipes that simulate intentional security misconfigurations. It supports the deployment of varied attack scenarios, including

    Configures workstations with restrictions like blocked LSASS stealing to emulate a hardened endpoint environment.

    PowerShellactive-directoryansibleinfrastructure-as-code
    Ver en GitHub↗7,464
  • google/santaAvatar de google

    google/santa

    4,510Ver en GitHub↗

    Santa es un sistema de autorización de binarios para macOS diseñado para controlar y monitorear qué binarios pueden ejecutarse basándose en reglas de confianza definidas. Funciona como un software de lista blanca de aplicaciones que evita que programas no autorizados se ejecuten verificándolos contra hashes criptográficos y certificados de firma. El sistema proporciona monitoreo de ejecución registrando cada evento de lanzamiento de binario para crear un rastro visible de ejecución de software. Permite el registro de auditoría centralizado para rastrear lanzamientos de aplicaciones exitosos y denegados en múltiples dispositivos, asegurando el cumplimiento de dispositivos empresariales mediante reglas y registros sincronizados. El control se gestiona a través de un sistema de reglas que utiliza sumas de verificación criptográficas, verificación de firmas digitales y coincidencia de rutas mediante expresiones regulares. El framework incluye la interceptación de ejecución a nivel de kernel para verificar los binarios antes de que se ejecuten y mantiene una base de datos local para registrar la actividad y auditar.

    Manages binary allow-listing and deny-listing for macOS.

    Objective-C++
    Ver en GitHub↗4,510
  • securitywithoutborders/hardentoolsAvatar de securitywithoutborders

    securitywithoutborders/hardentools

    3,093Ver en GitHub↗

    Hardentools simply reduces the attack surface on Microsoft Windows computers by disabling low-hanging fruit risky features.

    Disables risky features to harden Windows systems.

    Go
    Ver en GitHub↗3,093
  • nsacyber/windows-secure-host-baselineAvatar de nsacyber

    nsacyber/Windows-Secure-Host-Baseline

    1,592Ver en GitHub↗

    Configuration guidance for implementing the Windows 10 and Windows Server 2016 DoD Secure Host Baseline settings. #nsacyber

    Provides automated configuration and compliance checks for Windows.

    HTML
    Ver en GitHub↗1,592
  • alichtman/strongholdAvatar de alichtman

    alichtman/stronghold

    1,190Ver en GitHub↗

    Easily configure macOS security settings from the terminal.

    Configures macOS security settings via the command line.

    Pythoncommand-linecommand-line-toolhardening
    Ver en GitHub↗1,190
  • apr4h/cobaltstrikescanAvatar de Apr4h

    Apr4h/CobaltStrikeScan

    921Ver en GitHub↗

    Scan files or process memory for CobaltStrike beacons and parse their configuration

    Scans memory and files for malicious beacon signatures.

    C#
    Ver en GitHub↗921
  • essandess/macos-fortressAvatar de essandess

    essandess/macOS-Fortress

    450Ver en GitHub↗

    Firewall and Privatizing Proxy for Trackers, Attackers, Malware, Adware, and Spammers with Anti-Virus On-Demand and On-Access Scanning (PF, squid, privoxy, hphosts, dshield, emergingthreats, hostsfile, PAC file, clamav)

    Automates kernel and OS-level security configurations for macOS.

    Shell
    Ver en GitHub↗450
  • linuz/sticky-keys-slayerAvatar de linuz

    linuz/Sticky-Keys-Slayer

    347Ver en GitHub↗

    Scans for accessibility tools backdoors via RDP

    Scans for accessibility tool backdoors in Windows RDP sessions.

    Shell
    Ver en GitHub↗347
  • sensepost/notrulerAvatar de sensepost

    sensepost/notruler

    96Ver en GitHub↗

    The opposite of Ruler, provides blue teams with the ability to detect Ruler usage against Exchange.

    Detects malicious Exchange server rule and form modifications.

    Go
    Ver en GitHub↗96
  1. Home
  2. Part of an Awesome List
  3. Security & Privacy
  4. Endpoint Security