awesome-repositories.com
Blog
MCP
awesome-repositories.com

Descubre los mejores repositorios open-source con nuestra búsqueda potenciada por IA.

ExplorarBúsquedas curadasAlternativas open-sourceSoftware autohospedableBlogMapa del sitio
ProyectoServidor MCPAcerca deCómo clasificamosPrensa
Aviso legalPrivacidadTérminos
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to securitywithoutborders/hardentools

Open-source alternatives to Hardentools

30 open-source projects similar to securitywithoutborders/hardentools, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Hardentools alternative.

  • hotcakex/harden-windows-securityAvatar de HotCakeX

    HotCakeX/Harden-Windows-Security

    4,139Ver en GitHub↗

    Harden-Windows-Security is a security hardening tool and framework designed to reduce the attack surface of the Windows operating system through policy enforcement. It provides a collection of security presets and templates to implement official hardening standards across multiple devices. The project distinguishes itself through a comprehensive execution control system, featuring a manager for Windows Application Control and a kernel protection suite. It implements strict trust models, including kernel-mode driver whitelisting, signed policy implementation on the EFI partition, and code inte

    C#1st-party-securityapplicationcontrolaudit
    Ver en GitHub↗4,139
  • orange-cyberdefense/goadAvatar de Orange-Cyberdefense

    Orange-Cyberdefense/GOAD

    7,464Ver en GitHub↗

    GOAD is an Ansible-based automation tool and infrastructure orchestrator used to deploy pre-configured networks of vulnerable Windows virtual machines. It serves as a security training environment for practicing Active Directory penetration testing, privilege escalation, and lateral movement across various cloud platforms and local virtualization hypervisors. The project distinguishes itself through a multi-provider infrastructure model and a system of infrastructure recipes that simulate intentional security misconfigurations. It supports the deployment of varied attack scenarios, including

    PowerShellactive-directoryansibleinfrastructure-as-code
    Ver en GitHub↗7,464
  • 3lp4tr0n/beaconhunterAvatar de 3lp4tr0n

    3lp4tr0n/BeaconHunter

    516Ver en GitHub↗

    Behavior based monitoring and hunting tool built in C# leveraging ETW tracing. Blue teamers can use this tool to detect and respond to potential Cobalt Strike beacons. Red teamers can use this tool to research ETW bypasses and discover new processes that behave like beacons.

    C#
    Ver en GitHub↗516

Búsqueda con IA

Explora más repositorios increíbles

Describe lo que necesitas en lenguaje sencillo: la IA clasifica miles de proyectos open-source curados por relevancia.

Find more with AI search
  • aghorler/windows-10-hardeningAvatar de aghorler

    aghorler/Windows-10-Hardening

    175Ver en GitHub↗

    An admittedly frivolous (and infrequently updated) attempt to harden Windows 10.

    Batchfile
    Ver en GitHub↗175
  • alichtman/strongholdAvatar de alichtman

    alichtman/stronghold

    1,190Ver en GitHub↗

    Easily configure macOS security settings from the terminal.

    Pythoncommand-linecommand-line-toolhardening
    Ver en GitHub↗1,190
  • apr4h/cobaltstrikescanAvatar de Apr4h

    Apr4h/CobaltStrikeScan

    921Ver en GitHub↗

    Scan files or process memory for CobaltStrike beacons and parse their configuration

    C#
    Ver en GitHub↗921
  • bad-antics/nullsec-linuxAvatar de bad-antics

    bad-antics/nullsec-linux

    60Ver en GitHub↗

    🐧 Security-focused Linux distribution with 140+ tools, custom kernel 6.17.13, AI assistant | 5 editions | Cloud, AI/ML, Automotive, Hardware hacking

    Shell
    Ver en GitHub↗60
  • bad-antics/rce-shieldB

    bad-antics/rce-shield

    0Ver en GitHub↗
    Ver en GitHub↗0
  • ben0xa/powershelldefenseB

    Ben0xA/PowerShellDefense

    0Ver en GitHub↗
    Ver en GitHub↗0
  • ccob/beaconeyeAvatar de CCob

    CCob/BeaconEye

    961Ver en GitHub↗

    BeaconEye scans running processes for active CobaltStrike beacons. When processes are found to be running beacon, BeaconEye will monitor each process for C2 activity.

    C#
    Ver en GitHub↗961
  • cisagov/csetAvatar de cisagov

    cisagov/cset

    1,842Ver en GitHub↗

    Download CSET For Windows: CSET 10.1 Standalone Installer

    TSQL
    Ver en GitHub↗1,842
  • cisagov/sparrowAvatar de cisagov

    cisagov/Sparrow

    1,430Ver en GitHub↗

    Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 environment.

    PowerShell
    Ver en GitHub↗1,430
  • countercept/python-exe-unpackerC

    countercept/python-exe-unpacker

    0Ver en GitHub↗
    Ver en GitHub↗0
  • creddefense/creddefenseC

    CredDefense/CredDefense

    0Ver en GitHub↗
    Ver en GitHub↗0
  • damonmohammadbagher/etwprocessmon2D

    DamonMohammadbagher/ETWProcessMon2

    0Ver en GitHub↗
    Ver en GitHub↗0
  • danielbohannon/revoke-obfuscationD

    danielbohannon/Revoke-Obfuscation

    0Ver en GitHub↗
    Ver en GitHub↗0
  • denisugarte/powerdriveD

    denisugarte/PowerDrive

    0Ver en GitHub↗
    Ver en GitHub↗0
  • disassembler0/win10-initial-setup-scriptAvatar de Disassembler0

    Disassembler0/Win10-Initial-Setup-Script

    4,649Ver en GitHub↗

    This project is a PowerShell-based post-installation automation suite and configuration manager designed to optimize Windows 10 and Windows Server deployments. It functions as a system optimization tool that applies idempotent tweaks to ensure an operating system reaches a specific desired state after a fresh installation. The tool distinguishes itself through the use of preset-based task orchestration and a modular tweak library. It allows for the definition of custom setup presets via external files and supports the extension of its capabilities through the import of custom modules. Every s

    PowerShell
    Ver en GitHub↗4,649
  • drduh/macos-security-and-privacy-guideAvatar de drduh

    drduh/macOS-Security-and-Privacy-Guide

    22,449Ver en GitHub↗

    This project is a security hardening guide and privacy configuration manual for macOS. It provides a comprehensive set of instructions for configuring system settings to improve privacy, reduce the attack surface, and implement a malware defense framework. The guide covers technical methods for validating software notarization, verifying application sandboxing, and auditing system activity. It distinguishes itself by providing detailed workflows for restricting high-risk features and applying advanced security configurations to protect the operating system. The documentation covers several k

    appledisk-encryptiondnscrypt-proxy
    Ver en GitHub↗22,449
  • elastic/pplguardE

    elastic/PPLGuard

    0Ver en GitHub↗
    Ver en GitHub↗0
  • emposha/php-shell-detectorAvatar de emposha

    emposha/PHP-Shell-Detector

    823Ver en GitHub↗

    Web Shell Detector Web Shell Detector – is a php script that helps you find and identify php/cgi(perl)/asp/aspx shells. Web Shell Detector has a “web shells” signature database that helps to identify “web shell” up to 99%. By using the latest javascript and css technologies, web shell detector…

    PHP
    Ver en GitHub↗823
  • ernw/hardeningE

    ernw/hardening

    0Ver en GitHub↗
    Ver en GitHub↗0
  • essandess/macos-fortressAvatar de essandess

    essandess/macOS-Fortress

    450Ver en GitHub↗

    Firewall and Privatizing Proxy for Trackers, Attackers, Malware, Adware, and Spammers with Anti-Virus On-Demand and On-Access Scanning (PF, squid, privoxy, hphosts, dshield, emergingthreats, hostsfile, PAC file, clamav)

    Shell
    Ver en GitHub↗450
  • google/santaAvatar de google

    google/santa

    4,510Ver en GitHub↗

    Santa is a binary authorization system for macOS designed to control and monitor which binaries can execute based on defined trust rules. It functions as application whitelisting software that prevents unauthorized programs from running by verifying them against cryptographic hashes and signing certificates. The system provides execution monitoring by recording every binary launch event to create a visible software execution trail. It enables centralized audit logging to track successful and denied application launches across multiple devices, ensuring enterprise device compliance through syn

    Objective-C++
    Ver en GitHub↗4,510
  • graphenex/graphenexAvatar de grapheneX

    grapheneX/grapheneX

    1,058Ver en GitHub↗

    Automated System Hardening Framework

    Pythonhacktoberfesthardeninghardening-commands
    Ver en GitHub↗1,058
  • hasherezade/pe-sieveAvatar de hasherezade

    hasherezade/pe-sieve

    3,559Ver en GitHub↗

    pe-sieve is a set of diagnostic tools for scanning Windows process memory to identify malicious implants, shellcode, and hooks. It functions as an in-memory implant detector, malware unpacker, and process callstack analyzer designed to locate and dump memory patches and injected code from running processes. The project identifies advanced evasion techniques, such as process hollowing and reflective injection, by verifying portable executable structures in memory. It distinguishes itself by analyzing process callstacks to detect anomalies and redirections and by reconstructing executable heade

    C++anti-malwarehookinglibpeconv
    Ver en GitHub↗3,559
  • hegusung/avsignseekH

    hegusung/AVSignSeek

    0Ver en GitHub↗
    Ver en GitHub↗0
  • invoke-ir/uprootI

    Invoke-IR/Uproot

    0Ver en GitHub↗
    Ver en GitHub↗0
  • ion28/bluespawnAvatar de ION28

    ION28/BLUESPAWN

    1,332Ver en GitHub↗

    An Active Defense and EDR software to empower Blue Teams

    C++active-defenseanti-virusblue-team
    Ver en GitHub↗1,332
  • ionizecbr/amsipatchdetectionI

    IonizeCbr/AmsiPatchDetection

    0Ver en GitHub↗
    Ver en GitHub↗0