Open source security auditing tool to search and dump system configuration. Introduction Description Requirements Output Parameters Reports How it works Other Created by trimstray and contributors The main goal The main assumption of creating this tool was easier and faster delivery of command sets to be performed on customer environments. As a result of such a scan, the tool aims to gather the most useful information about system components for penetration tests and audits. For whom Otseca facilitates the collection of important information about a system, making it useful for system administrators, security researchers, security professionals, pentesters, and hackers. How To Use It's simple: # Clone this repository git clone https://github.com/trimstray/otseca # Go into the repository cd otseca # Install ./setup.sh install # Run the app otseca --ignore-failed --tasks system,network --output /tmp/report symlink to bin/otseca is placed in /usr/local/bin man page is placed in /usr/local/man/man8 Hint If you do not have
FEATURES
ALTERNATIVES
Vulnerable Android application for learning security concepts.
A local privilege escalation vulnerability in the Linux kernel known for its catchy name and potential damages.
A tool to capture all the git secrets by leveraging multiple open source git searching tools.
A Powershell script for assessing the security configurations of Siemens - SIMATIC PCS 7 OS client, OS Server or Engineering station.
FullHunt is a next-generation attack surface security platform that enables companies to discover, monitor, and secure their external attack surfaces.
A collection of Ansible roles for hardening various systems and services
Pac-resolver, a popular NPM package with 3 million weekly downloads, has a severe remote code execution flaw.
A runtime threat management and attack path enumeration tool for cloud-native environments
PINNED
InfoSecHired
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
System Two Security
An AI-powered platform that automates threat hunting and analysis by processing cyber threat intelligence and generating customized hunt packages for SOC teams.
Aikido Security
Aikido is an all-in-one security platform that combines multiple security scanning and management functions for cloud-native applications and infrastructure.
Permiso
Permiso is an Identity Threat Detection and Response platform that provides comprehensive visibility and protection for identities across multiple cloud environments.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.