Members
-
heimdall2 ★ PINNED
Heimdall Enterprise Server 2 lets you view, store, and compare automated security control scan results.
HTML ★ 253 1h agoExplain → -
vulcan ★ PINNED
A web application to streamline the development of STIGs from SRGs
Ruby ★ 86 3d agoExplain → -
emasser ★ PINNED
eMASSer is a command-line interface (CLI) that aims to automate routine business use-cases and provide utility surrounding the Enterprise Mission Assurance Support Service (eMASS) by leveraging its representational state transfer (REST) application programming interface (API).
Ruby ★ 48 1mo agoExplain → -
saf ★ PINNED
The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools developed by MITRE and the security community to streamline security automation for systems and DevOps pipelines
HTML ★ 181 2d agoExplain → -
cti
Cyber Threat Intelligence Repository expressed in STIX 2.0
★ 2.1k 14d agoExplain → -
HTTP-Proxy-Servlet
Smiley's HTTP Proxy implemented as a Java servlet
Java ★ 1.5k 1mo agoExplain → -
advmlthreatmatrix
Adversarial Threat Landscape for AI Systems
★ 1.1k 3y agoExplain → -
multiscanner
Modular file scanning/analysis framework
Python ★ 623 6y agoExplain → -
cascade-server
CASCADE Server
Python ★ 274 3y agoExplain → -
caldera-ot
MITRE Caldera™ for OT Plugins & Capabilities
★ 255 6mo agoExplain → -
brawl-public-game-001
Data from a BRAWL Automated Adversary Emulation Exercise
★ 215 5y agoExplain → -
hipcheck
Automatically assess and score software repositories for supply chain risk.
Rust ★ 126 5d agoExplain → -
inspec_tools ▣
A command-line and ruby API of utilities, converters and tools for creating, converting and processing security baseline formats, results and data
Ruby ★ 98 1y agoExplain → -
stockpile
A CALDERA plugin
Python ★ 83 1mo agoExplain → -
aws-foundations-cis-baseline
InSpec profile to validate your VPC to the standards of the CIS Amazon Web Services Foundations Benchmark
Ruby ★ 77 6mo agoExplain → -
sandcat
A CALDERA plugin
Go ★ 76 26d agoExplain → -
quaerite
Search relevance evaluation toolkit
Java ★ 75 4y agoExplain → -
engage
MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.
★ 68 2y agoExplain → -
menelaus
Online and batch-based concept and data drift detection algorithms to monitor and maintain ML performance.
Python ★ 68 2y agoExplain → -
pydecipher
pydecipher: unfreeze and deobfuscate your frozen python code
Python ★ 64 2y agoExplain → -
attack-navigator ⑂ ▣
Web app that provides basic navigation and annotation of ATT&CK matrices
TypeScript ★ 59 6y agoExplain → -
caret
CARET - A tool for viewing cyber analytic relationships
JavaScript ★ 57 6y agoExplain → -
atomic
A MITRE Caldera plugin
Python ★ 53 26d agoExplain → -
device-admin-sample
No description.
Java ★ 51 8y agoExplain → -
heimdall-legacy ▣
A Security Results Viewer for the web with storage, teams and history
Ruby ★ 36 3y agoExplain → -
emb3d
No description.
HTML ★ 36 21d agoExplain → -
heimdall_tools ▣
DEPRECATED: A set of utilities for converting and working with compliance data for viewing in the heimdall applications
Ruby ★ 35 4y agoExplain → -
human
Caldera plugin to deploy "humans" to emulate user behavior on systems
Python ★ 34 12d agoExplain → -
mcp
An AI-powered plugin for Caldera that orchestrates long-running LLM workflows to automatically create adversary emulation abilities and plan operations. Optionally enriches workflows with Retrieval-Augmented Generation (RAG) using Cyber Threat Intelligence (CTI) from STIX JSON files.
Vue ★ 34 1mo agoExplain → -
emu
This CALDERA Plugin converts Adversary Emulation Plans from the Center for Threat Informed Defense
Python ★ 34 26d agoExplain → -
ansible-cis-docker-ce-hardening
(WIP) An ansible playbook to harden a docker host to the CIS CE Benchmark requirements
Python ★ 31 8mo agoExplain → -
sparklyr.nested
A sparklyr extension for nested data
R ★ 30 3mo agoExplain → -
mitre-saf ⑂
Landing Page Content/Builder for MITRE Security Automation Framework
Vue ★ 29 3mo agoExplain → -
training
A CALDERA plugin
Python ★ 28 1mo agoExplain → -
response
A CALDERA plugin for autonomous incident response
Python ★ 27 26d agoExplain → -
access
A CALDERA plugin
HTML ★ 27 3mo agoExplain → -
emass_client
The eMASS client repository maintains the Enterprise Mission Assurance Support Service (eMASS) Representational State Transfer (REST) Application Programming Interface (API) specification and executables.
Python ★ 27 2mo agoExplain → -
mitre.github.io
Open Source software from The MITRE Corporation
CSS ★ 26 2mo agoExplain → -
Fast-RRT-Star
ROS Global Path Planner Plugin based on the F-RRT* algorithm from this paper: https://doi.org/10.1016/j.eswa.2021.115457
C++ ★ 24 3y agoExplain → -
cpsa
Experimental CPSA -- the Cryptographic Protocol Shapes Analyzer experimental version
Scilab ★ 22 2d agoExplain → -
nginx-stigready-baseline
STIG Ready Content: InSpec Profile for NGINX Open Source based off the Web SRG V2R3
Ruby ★ 22 1y agoExplain → -
OpenHealthDashboard
A dashboard framework for visualizing complex data sets on T1V multi-panel displays
JavaScript ★ 22 3y agoExplain → -
skeleton
A CALDERA Plugin Template
Python ★ 21 26d agoExplain → -
heimdall-lite ▣
Heimdall Lite 2.0 is a JavaScript based security results viewer and review tool supporting multiple security results formats, such as: InSpec, SonarQube, OWASP-Zap and Fortify which you can load locally, from S3 and other data sources.
TypeScript ★ 21 4y agoExplain → -
FiGHT
Publicly accessible version of the FiGHT website.
HTML ★ 18 7mo agoExplain → -
pickled-canary
Assembly-based binary pattern search!
Java ★ 17 1y agoExplain → -
biqt-iris
An iris quality plugin for the BIQT framework.
C++ ★ 17 2y agoExplain → -
saf-training
This repository contains several courses to learn about using and developing SAF capabilities
JavaScript ★ 16 3d agoExplain → -
cis-bench
CLI tool for fetching, managing, and exporting CIS benchmarks from CIS WorkBench
XSLT ★ 16 2mo agoExplain → -
jsonix ⑂
Powerful XML<->JSON JavaScript mapping library.
JavaScript ★ 16 1mo agoExplain → -
policynet
Exploration of the U.S. rulesets as a network
Python ★ 16 4y agoExplain → -
FMACM
An aircraft dynamics and control model for closed-loop RTCA requirements testing.
C++ ★ 15 14d agoExplain → -
compass
No description.
Python ★ 15 26d agoExplain → -
saf-training-lab-environment
The SAF Training Lab is a GitHub Codespaces environment that makes it quick and easy for you to use, learn and participate in the MITRE Security Automation Framework Training Classes.
Shell ★ 15 2mo agoExplain → -
hse-mwi
The Mental Wellness Index is a framework and dashboard tool that provides a picture of community-level mental wellness for each zip code in the nation
HTML ★ 15 2y agoExplain → -
aws-s3-baseline
A micro InSpec baseline to check for insecure or public s3 buckets in your VPC
Ruby ★ 15 1y agoExplain → -
microsoft-windows-10-stig-baseline
InSpec profile for Microsoft Windows 10, against DISA's Microsoft Windows 10 Security Technical Implementation Guide (STIG) Version 1, Release 19
Ruby ★ 15 1y agoExplain → -
alue
ALUE (Aerospace Language Understanding Evaluation) is a comprehensive framework designed to facilitate the evaluation and inference of Language Learning Models (LLMs) on aviation- and aerospace-specific datasets.
Python ★ 14 2mo agoExplain → -
fhir-exercises
No description.
HTML ★ 14 3y agoExplain → -
microsoft-365-foundations-cis-baseline
InSpec profile to validate an M365 account to the standards of the CIS Microsoft 365 Foundations Benchmark.
Ruby ★ 14 6mo agoExplain → -
microsoft-windows-server-2019-stig-baseline
Microsoft Windows Server 2019 STIG InSpec Profile
Ruby ★ 14 6mo agoExplain → -
yararules-python
Easily scan with multiple yara rules from different sources.
Python ★ 14 2y agoExplain → -
aloha-water-treatment
A simplified simulation of a water treatment plant with Modbus and BACnet process control. Designed to serve as a target for MITRE Caldera for OT.
HTML ★ 13 17d agoExplain → -
caltack
Plugin that serves the ATT&CK website alongside CALDERA.
Python ★ 13 6y agoExplain → -
microsoft-windows-server-2016-stig-baseline
An InSpec Profile for evaluating a Windows 2016 server to the DISA STIGs
Ruby ★ 13 3y agoExplain → -
canonical-ubuntu-16.04-lts-stig-baseline
InSpec profile to validate the secure configuration of Canonical Ubuntu 16.04 LTS against DISA's Canonical Ubuntu 16.04 LTS Security Technical Implementation Guide (STIG) Version 1 Release 1.
Ruby ★ 13 4y agoExplain → -
ckl2POAM
Standalone tool for converting DISA Checklists to eMASS POA&M Excel spreadsheets.
TypeScript ★ 12 4y agoExplain → -
mitre_fast_layered_map
A high-speed lidar based mapping package for use with large scale robotics such as autonomous vehicles.
C++ ★ 12 5y agoExplain → -
wildcatdam
A dam control simulation for MITRE Caldera for OT
Python ★ 11 10mo agoExplain → -
redhat-enterprise-linux-9-stig-baseline
RHEL 9.X STIG Automated Compliance Validation Profile works with Chef InSpec to perform automated compliance checks of RHEL9.
Ruby ★ 10 2d agoExplain → -
secure-coding-case-studies
Case studies of real secure coding issues to provide educators, project leaders, software development teams, and assessment teams insight into these critical issues and show how to avoid them.
★ 10 5d agoExplain → -
biqt
The core engine of the BIQT framework.
C ★ 10 25d agoExplain → -
inap
A pipeline for generating inconspicuous naturalistic adversarial patches (INAPs) against object detectors with one input image
Python ★ 10 1y agoExplain → -
cosa
COSA (Compliance Orchestration Situational Awareness) is a multi-part system which allows teams to integrate compliance into a CI/CD pipeline, shift security left (in the DevSecOps process), and track/report progress towards compliance goals. It orchestrates a series of tests, each of which may be automated, manual, or inherited. As a result, it promotes incremental achievement rather than assuming that 100% automation is possible. Multiple control catalogs are supported. Note that COSA is not a scanner - instead, it uses existing scanners to perform that function, recording the results as attachments.
EJS ★ 10 2y agoExplain → -
inspec-oscal
A proof-of-concept Inspec input plugin that will use an OSCAL component and its schema to configure profile input variables.
Ruby ★ 10 6mo agoExplain → -
caldera-crater ▣
No description.
C# ★ 9 8y agoExplain → -
saf-baseline-ingestion
Ingest baselines and parse out which NIST 800-53 controls they validate
JavaScript ★ 9 5y agoExplain → -
manx
A CALDERA plugin
Python ★ 9 26d agoExplain → -
saml
Provides SAML authentication for CALDERA by establishing CALDERA as a SAML Service Provider (SP)
Python ★ 9 26d agoExplain → -
md-cvss-rubric-tools
Tools for the CVSS rubric for medical devices
★ 9 5y agoExplain → -
demodocus
Project dedicated to extending the capabilities of automated accessibility testing tools to include testing interactive web content.
Python ★ 9 4y agoExplain → -
ansible-role-yedit ⑂
Ansible role for YAML editing
Python ★ 9 6mo agoExplain → -
ElectionGuardVerifier.jl
MITRE Election Guard Verifier
Julia ★ 9 3y agoExplain → -
crunchy-data-postgresql-stig-baseline
InSpec profile for Crunchy Data PostgreSQL Security Technical Implementation Guide :: Version 3, Release: 1 Benchmark Date: 24 Jul 2024
Ruby ★ 9 1y agoExplain → -
canonical-ubuntu-20.04-lts-stig-baseline
InSpec profile to validate the secure configuration of Ubuntu 20.04, against DISA's Canonical Ubuntu 20.04 LTS Security Technical Implementation Guide (STIG) Version 1, Release 6.
Ruby ★ 8 3d agoExplain → -
tir
LM + MITRE SAF project
Vue ★ 8 2h agoExplain → -
grid-watch
Grid Watch: A Virtual DNP3 Electrical Grid Sandbox
Python ★ 8 9d agoExplain → -
debrief
Debrief is a CALDERA plugin for gathering overall campaign information and analytics for a set of operations.
Python ★ 8 26d agoExplain → -
fieldmanual
Caldera Documentation Plugin
Python ★ 8 3mo agoExplain → -
saf_action
GitHub Action for SAF CLI
Shell ★ 8 2mo agoExplain → -
docker-ce-cis-baseline
CIS Docker Community Edition Benchmark InSpec Profile
Ruby ★ 8 6mo agoExplain → -
inspec-profile-update-action
Automatically update InSpec profiles using the latest version of DISA STIGs and CIS Benchmarks.
HTML ★ 8 6mo agoExplain → -
magma
MITRE Caldera's user interface plugin powered by VueJS
CSS ★ 7 17d agoExplain → -
azure-foundations-cis-baseline
Inspec validation profile for CIS Microsoft Azure Foundations Benchmark v3.0.0 - 09-05-2024
Ruby ★ 7 4mo agoExplain → -
oracle-database-19c-cis-baseline
InSpec testing for baseline compliance with the Oracle 19c CIS Benchmark
Ruby ★ 7 6mo agoExplain → -
atdf
Automated Test Decision Framework
★ 7 6y agoExplain → -
elasticsearch-stig-baseline
This InSpec compliance profile implement the ElasticSearch Security Technical Implementation Guide (STIG) - (Draft) in an automated way to provide security best-practice tests around ElasticSearch with X-pack server and system settings in a production environment.
Ruby ★ 7 4y agoExplain → -
geodetic_library
MITRE's C/C++ implementation of WGS84 geodesic algorithms documented in FAA Order 8260.58A, Appendix E.
C++ ★ 6 10mo agoExplain → -
gameboard
A CALDERA plugin
HTML ★ 6 26d agoExplain → -
ssl
A CALDERA plugin allowing SSL and proxy capabilities
Python ★ 6 26d agoExplain → -
compliance-mapper ▣
(WIP) (ALPHA) Compliance Mapper is a web-based rest-api and application for information assurance control mapping
CSS ★ 6 7y agoExplain → -
inspecjs ▣
MIGRATED: A Typescript Library for working with InSpec data
TypeScript ★ 6 1y agoExplain → -
thumbtack-client
No description.
Python ★ 6 3y agoExplain → -
keycloak-srg-baseline
STIG Ready Content: Ansible hardening for Keycloak configuration
Ruby ★ 6 6mo agoExplain → -
lilac
MITRE LILAC(TM) toolkit for detecting and mitigating problematic chatbot responses
Python ★ 6 4mo agoExplain → -
est-operator
RFC 7030 external issuer controller for cert-manager.
Python ★ 6 1mo agoExplain → -
inspec ⑂
InSpec: Auditing and Testing Framework
Ruby ★ 6 17d agoExplain → -
microsoft-iis-8.5-site-stig-baseline
Inspec Profile to validate MS IIS 8.5 to the DISA STIG
Ruby ★ 6 1y agoExplain → -
covid19-mabs-rwe
This analytic pipeline was developed as part of the Real World Evidence to Accelerate COVID-19 Therapeutics project to conduct a real-world observational study of the safety and effectiveness of Monoclonal Antibodies (mAbs) to fight SARS-CoV-2.
R ★ 6 3y agoExplain → -
microsoft-windows-11-stig-baseline
Inspec validation profile for Microsoft Windows 11 Security Technical Implementation Guide :: Version 2, Release 2 :: Benchmark Date: 15 Nov 2024
Ruby ★ 5 1mo agoExplain → -
redhat-enterprise-linux-8-stig-baseline-old ⑂
RHEL 8.X STIG Automated Compliance Validation Profile works with Chef InSpec to perform automated compliance checks of RHEL8.
Ruby ★ 5 1mo agoExplain → -
amazon-linux-2023-stig-ready-baseline ⑂
Chef InSpec to perform automated compliance checks of AL2023
Ruby ★ 5 1mo agoExplain → -
ts-inspec-objects
Typescript objects for InSpec profiles
TypeScript ★ 4 3h agoExplain → -
saf-lambda-function
(WIP) An AWS Lambda Function to run the SAF CLI as a function in your AWS VPC
JavaScript ★ 4 1d agoExplain → -
hvac-sim
A BACnet simulator for use with Caldera for OT
Python ★ 4 18d agoExplain → -
builder
Caldera plugin to dynamically compile code segments from abilities
Python ★ 4 26d agoExplain → -
iat
Iris Analysis Toolkit
Shell ★ 4 5d agoExplain → -
heimdall-helm ⑂
A helm chart for MITRE SAF's Heimdall 2.
Go Template ★ 4 1mo agoExplain → -
heimdallts-db ▣
Postgres Database API for Heimdall written in Typescript
TypeScript ★ 4 3y agoExplain → -
heimdallts ▣
Heimdall Server backend Typescript implementation
TypeScript ★ 4 3y agoExplain → -
keycloak-custom-policies ⑂
An event listener for Keycloak for email notification
Java ★ 4 6mo agoExplain → -
holcmapr
An app to compare redlining methods across all redlined cities.
R ★ 4 1y agoExplain → -
bacnet
Caldera for OT Plugin
C ★ 4 6mo agoExplain → -
ansible-nginx-stigready-hardening
Ansible role for securing nginx configurations
Jinja ★ 4 6mo agoExplain → -
apache-tomcat-9.x-stig-baseline
InSpec profile for Apache Tomcat 9.x STIG
Ruby ★ 3 8mo agoExplain → -
deep-obs
Python library implementing the methods described in "Deep-Learned Observation Operators for Artificial Intelligence Weather Forecasting Models."
Jupyter Notebook ★ 3 2mo agoExplain → -
cis-cci-mappings
Authoritative mappings from CIS Controls to DISA CCI and NIST SP 800-53 Rev 5 for compliance automation
Python ★ 3 4mo agoExplain → -
growthcleanr ⑂
No description.
R ★ 3 1mo agoExplain → -
mongodb-enterprise-advanced-4-stig-baseline-hardening
Automated workflow for hardening a MongoDB container against the MongoDB Enterprise Advanced 4.x Security Technical Implementation Guide :: Version 1, Release: 2 Benchmark Date: 27 Oct 2022
HCL ★ 3 1y agoExplain → -
disa-endpoint-data-interoperability
Endpoint Security Minimum Data Standards Technical Guide
★ 3 5mo agoExplain → -
iec61850
Caldera for OT Plugin
Python ★ 3 9mo agoExplain → -
inspec-objects ⑂
API for creating Chef InSpec profiles
Ruby ★ 3 3mo agoExplain → -
CyberChef ⑂
The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis
JavaScript ★ 3 3mo agoExplain → -
inspec-developer ▣
THIS CONTENT HAS BEEN MIGRATED TO https://github.com/mitre/saf-training. The MITRE InSpec Team's introduction to InSpec Profile Development
JavaScript ★ 3 3y agoExplain → -
redhat-enterprise-linux-8-stig-baseline
RHEL 8.X STIG Automated Compliance Validation Profile works with Chef InSpec to perform automated compliance checks of RHEL8.
Ruby ★ 3 6mo agoExplain → -
ubi8-hardening-demo
Sample code for a Packer template for building a STIG-hardened container
Smarty ★ 3 6mo agoExplain → -
im_sample_algorithm
MITRE's Interval Management Sample Algorithm. An implementation of RTCA DO-361A Appendix C.
C++ ★ 2 4d agoExplain → -
dcam
DevSecOps Capability Model (DCaM)
HTML ★ 2 3mo agoExplain → -
Python-ESXi-Utilities
Provides functions for interacting with an ESXi server, manipulating VMs/OVFs, and managing remote connections such as SSH and WinRM.
Python ★ 2 1mo agoExplain → -
microsoft-sql-server-2022-database-stig-baseline
InSpec Profile to validate MS SQL Database 2022
Ruby ★ 2 7mo agoExplain → -
baseline-vue ▣
Vue component to view the inspec baseline profiles
★ 2 3y agoExplain → -
vue_baseline_site ▣
No description.
★ 2 5y agoExplain → -
GraphEx
Visual programming language tool designed for managing configurations and deployments
Python ★ 2 2mo agoExplain → -
neuronpedia ⑂
open source interpretability platform 🧠
TypeScript ★ 2 6mo agoExplain → -
inspec-advanced-developer ▣
THIS CONTENT HAS BEEN MIGRATED TO https://github.com/mitre/saf-training.
TypeScript ★ 2 1y agoExplain → -
settingslogic ⑂
A simple and straightforward settings solution that uses an ERB enabled YAML file and a singleton design pattern.
Ruby ★ 2 10mo agoExplain → -
keycloak-inspec-validation-stigready
InSpec profile to validate the secure configuration of Keycloak
Ruby ★ 2 3y agoExplain → -
dnp3
Caldera for OT Plugin
C++ ★ 2 6mo agoExplain → -
amazon-linux-2-stig-ready-baseline
No description.
Ruby ★ 2 6mo agoExplain → -
saf-example-pipeline
No description.
Jinja ★ 2 6mo agoExplain → -
solaris-11-x86-stig-baseline
No description.
Ruby ★ 2 6mo agoExplain → -
hdf-libs
Heimdall Data Format (HDF) is a standardized JSON schema for representing security assessment baselines and results across diverse tools and platforms.
Go ★ 1 1h agoExplain → -
GraphEx-ESXi-Utilities
A plugin for the GraphEx application to create nodes for the pip package esxi-utils. This enables direct control over ESXi environments and remote connection features such as SSH and WinRM.
HTML ★ 1 1mo agoExplain → -
crunchy-data-postgresql-16-stig-baseline
Crunchy Data Postgres 16 Security Technical Implementation Guide :: Version 1, Release: 1 Benchmark Date: 13 Jun 2024
Ruby ★ 1 11d agoExplain → -
train-k8s-container ⑂
Transport for Kubernetes containers for use with Chef InSpec
Ruby ★ 1 25d agoExplain → -
saf-packaging
Centralized packaging repo for MITRE SAF tools — RPMs, DEBs, APKs for Heimdall, Vulcan, SAF CLI, and 101 InSpec profiles
Go ★ 1 2mo agoExplain → -
act
MITRE Adaptive Capabilities Testing (ACT)
Vue ★ 1 1mo agoExplain → -
vue_accordian_component ▣
Vuejs accordian component to view the profile controls
Vue ★ 1 3y agoExplain → -
inspec-profile-viewer ▣
No description.
★ 1 5y agoExplain → -
inspec-tools-js ▣
Converter utils for Inspec that can be included as a node module or used from the command line
Ruby ★ 1 1y agoExplain → -
canonical-ubuntu-24.04-lts-stig-baseline
(WIP) InSpec profile to validate the secure configuration of Ubuntu 22.04, against DISA's Canonical Ubuntu 22.04 LTS Security Technical Implementation Guide (STIG) Version 1, Release 1
Ruby ★ 1 1mo agoExplain → -
homebrew-saf
No description.
Ruby ★ 1 2mo agoExplain → -
canonical-ubuntu-22.04-lts-stig-baseline
(WIP) InSpec profile to validate the secure configuration of Ubuntu 22.04, against DISA's Canonical Ubuntu 22.04 LTS Security Technical Implementation Guide (STIG) Version 1, Release 1
Ruby ★ 1 3mo agoExplain → -
AADAPT
Adversarial Actions in Digital Asset Payment Technologies
HTML ★ 1 7mo agoExplain → -
RHEL9-STIG ⑂
Automated STIG Benchmark Compliance Remediation for RHEL 9 with Ansible
Jinja ★ 1 6mo agoExplain → -
ansible-mongodb-enterprise-advanced-4-stig-hardening
Ansible role for MongoDB Enterprise Advanced 4.x Security Technical Implementation Guide :: Version 1, Release: 2 Benchmark Date: 27 Oct 2022
★ 1 6mo agoExplain → -
cms-ars-5.0-aws-rds-oracle-mysql-8-stig-overlay ⑂
No description.
★ 1 6mo agoExplain → -
inspec-f5 ⑂
An Inspec resoruce pack for F5 BigIP
Ruby ★ 1 6mo agoExplain → -
cms-ars-5.0-k8s-node-stig-overlay ⑂
No description.
Ruby ★ 1 6mo agoExplain → -
cms-ars-5.0-k8s-cluster-stig-overlay ⑂
No description.
Ruby ★ 1 6mo agoExplain → -
cms-ars-5.0-microsoft-windows-server-2016-stig-overlay
Work in Progress
★ 1 6mo agoExplain → -
inspec-runner
Containerized InSpec runner
Dockerfile ★ 1 6mo agoExplain → -
solaris-11-sparc-stig-baseline
No description.
Ruby ★ 1 6mo agoExplain → -
benchmark-api
Latest data pulled from various benchmark sources
Python ★ 1 6mo agoExplain → -
fhir-for-research ⑂
Preview of continuous build changes to the upstream NIH/ODSS FHIR for Research website repository (https://nih-odss.github.io/fhir-for-research/). The preview build is located at https://mitre.github.io/fhir-for-research/.
Jupyter Notebook ★ 0 4d agoExplain → -
mitre-cve-roles
Repo to capture Policies and documents for the MITRE TL-Root and MITRE CNA-LR
HTML ★ 0 5d agoExplain → -
oracle-database-19c-stig-baseline
No description.
Ruby ★ 0 10d agoExplain → -
fsloader
A C++ library for loading structured, human-readable data from the file system.
C++ ★ 0 10d agoExplain → -
oci-foundations-cis-baseline
Inspec validation profile for CIS Oracle Cloud Infrastructure Foundations Benchmark v3.0.0 Release 1
Ruby ★ 0 2mo agoExplain → -
cppuom
C++ header-only library for Scientific Units of Measure. This is a fork of an abandoned, well-loved repo.
C++ ★ 0 14d agoExplain → -
devise-security ⑂
A security extension for devise, meeting industry-standard security demands for web applications.
Ruby ★ 0 14d agoExplain → -
redhat-enterprise-linux-10-stig-baseline
(WIP) RHEL 10.X STIG Automated Compliance Validation Profile works with Chef InSpec to perform automated compliance checks of RHEL10.
Ruby ★ 0 40m agoExplain → -
better-auth-ldap ⑂
No description.
★ 0 24d agoExplain → -
amazon-linux-2023-stig-baseline
Amazon Linux 2023 STIG InSpec baseline (WIP)
Ruby ★ 0 25d agoExplain → -
whale-ir-model
IR camera model for determining reliable detection range of whales
MATLAB ★ 0 1mo agoExplain → -
ironbank_release_action
GitHub Action to automate releases on to Iron Bank
★ 0 1mo agoExplain → -
hardened-vmware-luks-example
[WIP] FIPS-mode RHEL 9 vSphere template reference — LUKS2 + SELinux + fapolicyd with Packer/Ansible/InSpec. Under active development.
HCL ★ 0 2mo agoExplain → -
linkage-governance-framework
Website for the Linkage Governance Framework project.
HTML ★ 0 4d agoExplain → -
saf-site
VitePress prototype for MITRE SAF documentation site
TypeScript ★ 0 2mo agoExplain → -
oracle-linux-8-stig-baseline
Oracle Linux 8 (OL8) STIG Automated Compliance Validation Profile works with Chef InSpec to perform automated compliance checks of OL8.
Ruby ★ 0 2mo agoExplain → -
wip-ansible-oracle-linux-8-stig-hardening
No description.
Python ★ 0 3mo agoExplain → -
stig-manager ⑂
An API and client for managing STIG assessments
★ 0 2mo agoExplain → -
continue ⑂
⏩ Ship faster with Continuous AI. Open-source CLI that can be used in TUI mode as a coding agent or Headless mode to run background agents
TypeScript ★ 0 2mo agoExplain → -
fhir-for-research-archive ⑂
FHIR for Research
Jupyter Notebook ★ 0 1y agoExplain → -
vue3-pdf-app ⑂
Vue 3 PDF viewer based on Mozilla's PDFJS
★ 0 3y agoExplain → -
cinc-auditor-alpine
Minimal Alpine-based Docker image with CINC Auditor, train-k8s-container plugin, and kubectl for Kubernetes compliance scanning
Shell ★ 0 2mo agoExplain → -
repo-minder
Repository file standardization and compliance tool for MITRE open-source projects
Python ★ 0 2mo agoExplain → -
nuxt-smartscript
Smart typography transformations for Nuxt - automatic superscript, subscript, and symbol formatting
TypeScript ★ 0 2mo agoExplain → -
mcp-config-scaffold
A structural framework for organizing and managing Model Context Protocol (MCP) configurations
★ 0 6mo agoExplain → -
chef-oss-stats ⑂
Statistics to monitor the health of the Chef ecosystem
Ruby ★ 0 6mo agoExplain →
No repos match these filters.