Commit Graph

179 Commits

Author SHA1 Message Date
0xACAB bee36e7121
Add see also link. 2021-03-29 11:28:44 -04:00
fabacab 1b0ad1dae3
Add service meshes, tracing tools, sections. 2021-03-29 11:21:21 -04:00
fabacab 40caf1abdc
Add GlobaLeaks, SecureDrop whistleblower submission systems. 2021-03-27 14:51:59 -04:00
0xACAB 465760cf0a
Fix formatting typo. 2021-03-27 10:31:52 -04:00
0xACAB 2886281f34
Add Qubes OS. 2021-03-27 10:30:48 -04:00
fabacab 2bc46be60a
Add kube-forensics. 2021-03-26 22:44:20 -04:00
fabacab 837ac32a40
Add Dangerzone malware neutering sandbox. 2021-03-16 01:26:31 -04:00
fabacab 548b2bdd5b
Add ESET's Malware IOCs. 2021-03-14 14:26:03 -04:00
fabacab f47ab5a124
Add Bubblewrap sandboxing utility. 2021-03-06 11:47:15 -05:00
fabacab 741d8e9905
Add Kubernetes sub-section to "Cloud platform security" section.
Adds KubeSec, Polaris, and kube-hunter projects.
2021-02-06 08:32:17 -05:00
fabacab a70e0cb5fa
Add Open Source Vulnerabilities. 2021-02-06 07:34:01 -05:00
fabacab 64014e0268
Move Bunkerized-nginx to new section, fix link for PlumHound. 2021-01-01 14:54:32 -05:00
Bunkerity 37262d9688
Add bunkerized-nginx to "Network perimeter defenses"
nginx Docker image secure by default.

Avoid the hassle of following security best practices each time you need a web server or reverse proxy. Bunkerized-nginx provides generic security configs, settings and tools so you don't need to do it yourself.

Non-exhaustive list of features :
- HTTPS support with transparent Let's Encrypt automation
- State-of-the-art web security : HTTP security headers, prevent leaks, TLS hardening, ...
- Integrated ModSecurity WAF with the OWASP Core Rule Set
- Automatic ban of strange behaviors with fail2ban
- Antibot challenge through cookie, javascript, captcha or recaptcha v3
- Block TOR, proxies, bad user-agents, countries, ...
- Block known bad IP with DNSBL and CrowdSec
- Prevent bruteforce attacks with rate limiting
- Detect bad files with ClamAV
- Easy to configure with environment variables or web UI
- Automatic configuration with container labels

More info about bunkerized-nginx at https://github.com/bunkerity/bunkerized-nginx.
2021-01-01 15:29:07 +01:00
0xACAB a042fb0e4a
Add Sunburst countermeasures IoC collection. 2020-12-14 02:05:07 -05:00
fabacab 1588e675e4
Add Atheris. 2020-12-12 00:39:51 -05:00
fabacab e27f60fa95
Add new subsection for signature packs. 2020-12-08 19:54:02 -05:00
fabacab e9fcf7c620
Add BadBlood. 2020-12-06 15:49:44 -05:00
fabacab 1796f969e6
Add PlumHound. 2020-12-06 15:44:56 -05:00
fabacab a14164ce30
Add Sigma and YARA to "Threat intelligence" section. 2020-12-06 15:05:06 -05:00
fabacab 127a95bbe4
Add anti-racist messaging. 2020-11-23 13:36:29 -05:00
fabacab 4649860b5e
Add "See also" link to drduh's macOS Security and Privacy Guide. 2020-11-13 15:32:03 -05:00
fabacab 3228974f80
Better description for Santa. 2020-11-13 15:30:17 -05:00
fabacab 30592e81a8
Add PyREBox. 2020-10-25 19:29:48 -04:00
Peter Thaleikis 418db3fc24
Fixing a typo 2020-10-11 20:26:48 +04:00
fabacab 81406142fe
Add OneFuzz, Microsoft's now open-sourced Fuzzing-as-a-Service platform. 2020-09-19 15:42:28 -04:00
fabacab cb77c0eabd
Add Watchtower, a Docker container to update other Docker containers. 2020-09-16 18:24:39 -04:00
fabacab 92bb1b9694
Add Bane, an AppArmor profile generator suited to Docker containers. 2020-08-14 18:07:56 -04:00
fabacab 3b3ff44b6b
Add Trivy. 2020-08-13 22:11:41 -04:00
fabacab 367c468baf
Add Geneva, novel tool for improving availability of blocked content. 2020-08-12 20:57:00 -04:00
fabacab 90fdee8a40
Add "Compliance testing and reporting" section, InSpec, move OpenSCAP. 2020-08-11 00:54:07 -04:00
fabacab 48dd4ba9fb
Add some more app/binary hardening (dynamic binary translation) tools. 2020-07-27 22:45:47 -04:00
fabacab efbf220953
Add Istio for service-level cloud platform security mention. 2020-07-15 19:52:28 -04:00
fabacab d0ecbfc3bb
Add container/kernel isolation tools Kata Containers and gVisor. 2020-07-15 19:35:40 -04:00
fabacab 73549f643c
Add Tsunami security scanner. 2020-07-15 18:06:58 -04:00
fabacab 7559cfefcd
Add SOPS, alphabetize DevSecOps section. 2020-07-13 20:15:24 -04:00
fabacab 83fde6a6ae
Add Gatekeeper DDoS protection system. 2020-06-24 16:26:58 -04:00
fabacab 06075b057c
Add RITA, Volatility, LogonTracer. 2020-06-21 19:38:20 -04:00
0xACAB 2c2ac2ab5f
Add MKIT. 2020-06-18 21:31:15 -04:00
fabacab 2c53655445
Organize growing "automation" category, add SOAR section, see also link. 2020-06-18 14:21:21 -04:00
0xACAB 1f4e84c480
Add Shuffle. 2020-06-17 20:58:14 -04:00
fabacab 270479f91e
Add Zabbix. 2020-06-08 18:38:27 -04:00
fabacab 9a78bac8d1
Add Google Stenographer. 2020-06-08 14:01:40 -04:00
fabacab 7f51064e77
Add Falco by Sysdig. 2020-05-29 00:09:24 -04:00
0xACAB 8664702497
See also, not only. 2020-05-28 13:50:36 -04:00
Meitar M 79292c6d38
Update URLs. 2020-05-14 01:06:59 -04:00
Meitar M 47aab221a1
Add BlockBlock. 2020-05-11 16:57:59 -04:00
Meitar M 2a8b59dced
Add Sandboxie. 2020-04-23 16:54:09 -04:00
Meitar M 5ba44b5e33
Add DefectDojo. 2020-04-19 17:56:10 -04:00
Meitar M 468127f309
Add FuzzBench. 2020-04-19 14:52:11 -04:00
Meitar M 65c30e444f
Add Santa. 2020-04-16 13:49:25 -04:00
Meitar M 14903da287
Add AttackerKB. 2020-04-15 17:23:47 -04:00
Meitar M 71bf3b2a9f
Add CodeQL. 2020-04-06 16:13:16 -04:00
Meitar M fd526255b5
Merge branch 'master' of https://github.com/tenzir/awesome-cybersecurity-blueteam into master 2020-04-02 17:21:14 -04:00
Meitar M a35aff33e9
Rename Bro to Zeek. 2020-04-02 17:16:39 -04:00
Meitar M c79947cd8f
Add Wazuh, Crowd Inspect, reorganize sections. 2020-03-26 15:16:42 -04:00
Meitar M 40756a42e6
Add "Policy enforcement" section, Tang, Clevis, OpenPolicyAgent. 2020-03-16 15:05:52 -04:00
MicrocosEm 3d2f1ef6fa
Add Snyk.io 2020-02-26 16:33:54 -05:00
Meitar M e0aca7e7aa
Add Egalito to new app/binary hardening subsection. 2020-02-18 15:22:46 -05:00
Meitar M c39ee1e97d
Expand description of OwlH, use its official domain as a link. 2020-02-14 14:31:40 -05:00
Austin Songer 82eba8a82a
Update README.md 2020-02-14 13:16:38 -06:00
Austin Songer 7d545d0f5e
Added Owlh and Moloch 2020-02-14 10:42:23 -06:00
Meitar M 482dfa7773
Switch to Joe Testa's (Positron Security's) maintained `ssh-audit.py` fork. 2020-02-10 15:45:35 -05:00
Felix Ortmann acff841fcb Add VAST network telemetry engine 2020-02-06 18:19:20 +01:00
Meitar M c80171f0ee
Link to external cloud platform security tool listing. 2020-01-27 23:17:16 -05:00
Meitar M 0b14a4b958
Add Checkov. 2020-01-20 09:36:37 -05:00
Meitar M 6892f0e5f0
Add Dev-Sec server hardening framework. 2019-12-04 01:19:53 -05:00
Meitar M e7e4df75de
Add OpenSCAP Base. 2019-11-27 17:28:17 -05:00
jared folkins fe053c9f3b Add Kushtaka 2019-11-21 10:59:51 -08:00
Meitar M ac2ede6de6
Add mailspoof. 2019-11-06 15:23:06 -05:00
Meitar M 44903f0311
Add peepdf. 2019-11-06 14:02:55 -05:00
Meitar M b0ae78b781
Add CertSpotter. 2019-11-05 16:59:25 -05:00
Meitar M 0d28b216bd
Remove Security Monkey as it is being end-of-life'ed soon.
Netflix announced it will no longer update Security Monkey, as GCP Asset Inventory and AWS Config are newer provider services offering equivalent functionality.
2019-11-05 11:12:03 -05:00
Meitar M fe9557af5e
Add "Cloud platform security" section, move some tools there. 2019-11-05 11:00:35 -05:00
Meitar M 99dec71b1e
Replace MIG (now deprecated) with MozDef. 2019-11-04 02:43:16 -05:00
Meitar M 1abdcbb7b7
Add phishing_catcher (and the CertStream) service. 2019-11-04 00:00:47 -05:00
Meitar M 6d87d66f78
Add LogRhythm Labs's PIE framework. 2019-09-24 15:42:44 -04:00
Meitar M a2496e22ce
Add Ansible Lockdown project. 2019-08-06 16:30:52 -04:00
Meitar M 104f0851d8
Add Locust. 2019-08-05 14:24:17 -04:00
Meitar M 4574b944f3
Remove "AutoSnort" and add "MutliScanner" to the Automation section. 2019-08-05 14:21:08 -04:00
Meitar M 51a029c50e
Add LuLu, the free macOS firewall. 2019-07-29 11:57:36 -04:00
Meitar M 091cde1138
Add new section for Phishing awareness and reporting. 2019-07-27 11:43:41 -04:00
Meitar M cad41e43d2
Add link to awesome-pcaptools. 2019-07-26 14:35:04 -04:00
Meitar M 4c44033efd
Add libcrafter, a C++ library for sniffing and crafting (editing) packets. 2019-07-26 14:13:42 -04:00
Meitar M 31f8de095c
Add Rekall memory forensic framework and IR management console. 2019-07-12 20:04:52 -04:00
Meitar M 5dcf36d05f
Add DShell, a pluggable Python network analysis framework. 2019-07-11 18:48:01 -04:00
Meitar M e17bfc2344
Add Firejail. 2019-06-13 19:50:51 -04:00
Meitar M 529213dcfa
Add `chkrootkit`. 2019-06-13 19:47:21 -04:00
Meitar M ad9a492438
Add AutoMacTC. 2019-06-06 12:34:38 -04:00
Meitar M 0cc8feb638
Add Cilium. 2019-05-05 15:53:09 -04:00
Meitar M d906c8d181
Add subsection "Tarpits" under "Honeypots" with two famous examples. 2019-03-31 11:36:41 -04:00
Meitar M d01d834c6c
Add rastrea2r. 2019-03-25 00:52:05 -04:00
Meitar M 5bc422b960
Add MITMEngine by Cloudflare, a server-side TLS interception detector. 2019-03-19 00:25:20 -04:00
Meitar M e76b648869
Add `censys-python` library to Automation section. 2019-03-16 18:05:42 -04:00
Meitar M 8e6fca4abd
Add Sigcheck to the Windows section. 2019-03-11 14:23:58 -04:00
Meitar M fb694e3adf
Add GPG Sync in new COMSEC section. 2019-03-07 23:58:38 -05:00
Meitar M 22363e3dcb
Add Stronghold, a scriptable macOS security settings helper. 2019-03-07 17:22:09 -05:00
Meitar M 2c0ea81dba
Add macOS Fortress in new section. 2019-03-02 00:54:49 -05:00
Meitar M 1f3c0bd208
Add section for Fuzzing. 2019-03-01 11:49:52 -05:00
Meitar M 7ccc4f3646
Change badge source. 2019-02-27 11:34:39 -05:00
Meitar M af97e6ed19
Awesome list linting fixes. 2019-02-27 11:28:51 -05:00