The Cybersecurity Evaluation Tool (CSET) is a free software tool that helps users identify vulnerabilities in an organization's enterprise and industrial control cyber systems. CSET uses a hybrid risk and standards-based approach to evaluate the cybersecurity of a system and provide recommendations for improvement. CSET runs in Windows on a laptop or desktop computer. It can also be configured to run in a client-server architecture. Local installers ("standalone") are available as well as binaries for creating enterprise installations. CSET is licensed under MIT License and Apache License 2.0.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A repository of open-source plugins for Rapid7 InsightConnect
Gamma Ray is a software that helps developers to look for vulnerabilities on their Node.js applications with a pluggable infrastructure for integration with vulnerabilities databases.
A LinkedIn reconnaissance tool for gathering information about companies and individuals on the platform.
A BloodHoundAD Report Engine for Security Teams to identify Active Directory security vulnerabilities and harden common configuration vulnerabilities and oversights.
A continuous threat exposure management platform that provides automated vulnerability scanning for internet-facing assets with varying service tiers for different organizational needs.
Linux privilege escalation auditing tool for detecting security deficiencies in Linux kernels.
An AI-powered Google Dorking tool that helps create effective search queries to uncover sensitive information on the internet.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.