awesome-repositories.com
Blog
awesome-repositories.com

Découvrez les meilleurs dépôts open-source grâce à notre recherche par IA.

ExplorerRecherches sélectionnéesAlternatives open sourceLogiciels auto-hébergésBlogPlan du site
ProjetÀ proposNotre méthodologiePresseServeur MCP
Mentions légalesConfidentialitéConditions d'utilisation
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
strozfriedberg avatar

strozfriedberg/Windows-Exploit-SuggesterArchived

0
View on GitHub↗
4,211 stars·1,037 forks·Python·GPL-3.0·3 vues

Windows Exploit Suggester

Windows-Exploit-Suggester is a security analysis tool designed to audit patch levels and identify vulnerabilities on Windows hosts. It functions as a vulnerability scanner and patch level auditor that compares installed system hotfixes against Microsoft security bulletins to detect missing updates.

The project maps these missing security updates to known public exploits and available Metasploit modules. It uses a vulnerability database interface to download and query external security bulletin data, linking specific unpatched vulnerabilities to viable exploit vectors.

The tool's capabilities cover vulnerability assessment and patch management through a patch-level comparison engine and target-state analysis. It maintains a local vulnerability database by synchronizing external data and parsing security bulletins into flat files for analysis.

Features

  • Missing Patch Detection - Identifies missing security updates by comparing installed system hotfixes against a database of known updates.
  • Exploit Mappers - Matches missing security updates to known public exploits and available Metasploit modules.
  • Automated Security Patching - Audits whether a target host is up to date with the latest Microsoft security bulletins.
  • Host Security Auditors - Evaluates the security posture of Windows hosts to detect outdated components and vulnerabilities.
  • Vulnerability Scanners - Automatically analyzes system configurations to detect missing security patches and vulnerabilities.
  • Target Service Analysis - Processes remote host system information to determine the current software patch version.
  • Windows Vulnerability Assessments - Performs security audits on Windows hosts to identify missing security updates via hotfix comparison.
  • Exploit Mapping - Links identified missing security updates to specific known public exploits and Metasploit modules.
  • Windows Exploits - Searches for public exploit code and modules targeting specific unpatched Windows vulnerabilities.
  • Penetration Workflows - Facilitates attack vector discovery by mapping missing updates to viable exploits and Metasploit modules.
  • Vulnerability Database Management - Provides mechanisms for synchronizing and maintaining local copies of security metadata from external sources.
  • Vulnerability Database APIs - Provides an interface to query external security bulletin data to determine target exploitability.
  • Vulnerability Data Synchronization - Synchronizes local vulnerability definitions by downloading and parsing security bulletins from remote sources.

Historique des stars

Graphique de l'historique des stars pour strozfriedberg/windows-exploit-suggesterGraphique de l'historique des stars pour strozfriedberg/windows-exploit-suggester

Recherche par IA

Explorez plus de dépôts awesome

Décrivez vos besoins en langage naturel — l'IA classe des milliers de projets open source sélectionnés par pertinence.

Start searching with AI

Alternatives open source à Windows Exploit Suggester

Projets open source similaires, classés selon le nombre de fonctionnalités partagées avec Windows Exploit Suggester.
  • gdssecurity/windows-exploit-suggesterAvatar de GDSSecurity

    GDSSecurity/Windows-Exploit-Suggester

    4,209Voir sur GitHub↗

    Windows-Exploit-Suggester is a security audit tool designed to scan Windows systems for outdated components and missing security patches. It functions as a vulnerability scanner that compares target patch levels against official vendor security bulletins to identify security gaps. The tool specializes in exploit mapping, linking identified missing updates to known public exploit code and available penetration testing modules. It automates the research process by cross-referencing missing patches with specific vulnerability identifiers to determine applicable attack vectors. The system includ

    Python
    Voir sur GitHub↗4,209
  • bitsadmin/wesngAvatar de bitsadmin

    bitsadmin/wesng

    4,881Voir sur GitHub↗

    This project is a set of specialized utilities for Windows vulnerability assessment and patch management auditing. It functions as a vulnerability scanner and exploit suggester that analyzes installed updates to identify missing security patches and their corresponding known vulnerabilities. The system distinguishes itself by matching missing updates against a consolidated vulnerability database to recommend specific publicly available exploits. It maintains accuracy by synchronizing remote security bulletins into a local database and cross-referencing identified gaps against official update

    Pythonexploitmicrosoftpatches
    Voir sur GitHub↗4,881
  • cve-search/cve-searchAvatar de cve-search

    cve-search/cve-search

    2,593Voir sur GitHub↗

    cve-search is a vulnerability search engine and database manager designed to index, synchronize, and query CVE and CPE security vulnerability data. It functions as a security data warehouse that imports vulnerability feeds into a local database to enable fast, keyword-based discovery of security flaws. The project provides a web-based vulnerability browser and a programmatic JSON API for retrieving records and risk scores. It utilizes full-text indexing for vulnerability descriptions and implements an identity-verified security portal using the OpenID Connect standard for user authentication.

    Pythoncommon-vulnerabilitiescpecve
    Voir sur GitHub↗2,593
  • dependencytrack/dependency-trackAvatar de DependencyTrack

    DependencyTrack/dependency-track

    3,612Voir sur GitHub↗

    Dependency-Track is a software composition analysis tool and vulnerability management system designed to track dependencies and supply chain risk. It functions as a platform for ingesting and analyzing CycloneDX software bills of materials to identify known vulnerabilities and license compliance issues within third-party software components. The system distinguishes itself by mirroring external vulnerability databases locally to enable fast offline analysis and using VEX documents to differentiate between technical vulnerabilities and actual contextual risks. It also integrates with identity

    Javaappsecbill-of-materialsbom
    Voir sur GitHub↗3,612
Voir les 30 alternatives à Windows Exploit Suggester→

Questions fréquentes

Que fait strozfriedberg/windows-exploit-suggester ?

Windows-Exploit-Suggester is a security analysis tool designed to audit patch levels and identify vulnerabilities on Windows hosts. It functions as a vulnerability scanner and patch level auditor that compares installed system hotfixes against Microsoft security bulletins to detect missing updates.

Quelles sont les fonctionnalités principales de strozfriedberg/windows-exploit-suggester ?

Les fonctionnalités principales de strozfriedberg/windows-exploit-suggester sont : Missing Patch Detection, Exploit Mappers, Automated Security Patching, Host Security Auditors, Vulnerability Scanners, Target Service Analysis, Windows Vulnerability Assessments, Exploit Mapping.

Quelles sont les alternatives open-source à strozfriedberg/windows-exploit-suggester ?

Les alternatives open-source à strozfriedberg/windows-exploit-suggester incluent : gdssecurity/windows-exploit-suggester — Windows-Exploit-Suggester is a security audit tool designed to scan Windows systems for outdated components and… bitsadmin/wesng — This project is a set of specialized utilities for Windows vulnerability assessment and patch management auditing. It… google/osv.dev — OSV is a distributed database and aggregator of open-source security advisories that uses a standardized vulnerability… cve-search/cve-search — cve-search is a vulnerability search engine and database manager designed to index, synchronize, and query CVE and CPE… dependencytrack/dependency-track — Dependency-Track is a software composition analysis tool and vulnerability management system designed to track… wpscanteam/wpscan — WPScan is a security analysis utility and vulnerability scanner designed specifically for auditing WordPress…

Collections incluant Windows Exploit Suggester

Sélections manuelles où Windows Exploit Suggester apparaît.
  • Scanners d'élévation de privilèges automatisés