Active Directory Control Paths auditing and graphing tools
BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within Active Directory environments. It functions as an attack path mapper and risk assessment system that uses graph theory to identify hidden relationships and paths leading to high-privilege accounts. The tool specializes in network attack surface mapping and privilege escalation pathfinding. It quantifies security risks by measuring the reliability of attack paths to critical targets, allowing for the prioritization of vulnerability elimination. The system provides capabilities for
Scripts for comparing Microsoft Windows compliance with the ASD 1709 & Office 2016 Hardening Guides
Configuration guidance for implementing the Windows 10 and Windows Server 2016 DoD Secure Host Baseline settings. #nsacyber
lightweight, dependency-free bash script for security, performance auditing and infrastructure monitoring of Linux servers.
The main features of vernu/vps-audit are: Security Auditing Tools.
Open-source alternatives to vernu/vps-audit include: anssi-fr/ad-control-paths — Active Directory Control Paths auditing and graphing tools. bloodhoundad/bloodhound — BloodHound is a graph-based security analysis tool designed to map trust relationships and attack vectors within… cottinghamd/hardeningauditor — Scripts for comparing Microsoft Windows compliance with the ASD 1709 & Office 2016 Hardening Guides. nsacyber/windows-secure-host-baseline — Configuration guidance for implementing the Windows 10 and Windows Server 2016 DoD Secure Host Baseline settings.… olafhartong/mde-auditcheck — MDE relies on some of the Audit settings to be enabled. ovh/debian-cis — PCI-DSS compliant Debian 11/12 hardening.