There are 4 repositories under scap topic.
Security automation content in SCAP, Bash, Ansible, and other formats
The Correlated CVE Vulnerability And Threat Intelligence Database API
SCAP Scanner And Tailoring Graphical User Interface
Python API for vFeed Vulnerability & Threat Intelligence Database Enterprise & Pro Editions
Official repository for the Open Vulnerability and Assessment Language
Scripts for easy system administration
Understand OVAL results in a blink of an eye
OVAL For CentOS
Automated System Hardening (ash-linux) is a Salt formula to apply SCAP benchmarks to Linux systems
Applies DISA STIGS GPO Policy's offline
This GitHub repository focuses on enhancing the security posture of Windows systems by implementing rigorous hardening measures aligned with the guidelines provided by the Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs) and the Center for Internet Security (CIS) Benchmarks.
Python library for CVE and CPE Infomation
Useful Un*x / BSD / macOS utilities
Linux Security hardening Scripts for Enterprise Linux Redhat (RHEL) & Clones (AlmaLinux, RockyLinux) / Debian
This repository is part of the paper Automated Implementation of Windows-related Security-Configuration Guides presented at the 35th IEEE/ACM International Conference on Automated Software Engineering.
Dockerised Greenbone Vulnerability Management components
rSCAP is a standardized compliance checking solution and auditing script used with Redhat based Linux systems.
Complete SCAP-to-Prometheus monitoring system with Docker, Grafana dashboards, and automated compliance tracking
REST API build on top of greenbone-scap
A pipeline that creates hardened AWS AMIs based on compliance rules and remediation scripts.
This repository is part of the paper "Automated Identification of Security-Relevant Configuration Settings Using NLP" accepted at the Industry Showcase track at the 37th IEEE/ACM International Conference on Automated Software Engineering (ASE). https://conf.researchr.org/track/ase-2022/ase-2022-industry-showcase.
This repository is part of the paper "Better Safe Than Sorry! Automated Identification of Breaking Security-Configuration Rules" accepted at the "4th ACM/IEEE International Conference on Automation of Software Test (AST)". https://conf.researchr.org/home/ast-2023
This repository is part of the paper Automated Implementation of Windows-related Security-Configuration Guides presented at the 35th IEEE/ACM International Conference on Automated Software Engineering.
Compliance and Vulnerability scanning tool for containers
Compare the filesystem tree of a Debian package to the current filesystem tree, printing unified diffs for files that differ
OSCAP/OVAL reporting
Ansible playbook, based on roles for fully automated execution of Oscap commands, includes installation, copy of tailored files, generate remedies, execute remedies, and fetch reports
Example import and data enrichment of CIS Security Benchmark for Google Chrome (v2.0) into Scapolite
Evaluate-scap is a script that evaluates the SCAP profile rules from the scap-security-guide on your linux machine.
This repository is part of the paper "Hardening with Scapolite: a DevOps-based Approach for Improved Authoring and Testing of Security-Configuration Guides in Large-Scale Organizations" presented at the 12th ACM Conference on Data and Application Security and Privacy (CODASPY). http://www.codaspy.org/2022/
This repository is part of the paper Automated Implementation of Windows-related Security-Configuration Guides presented at the 35th IEEE/ACM International Conference on Automated Software Engineering.