Stronghold is the easiest way to securely configure your Mac. Designed for macOS Sierra and High Sierra. Not yet tested on macOS Mojave, but I'm working on updating it! Usage: stronghold.py [OPTIONS] Securely configure your Mac. Developed by Aaron Lichtman -> (Github: alichtman) Options: -lockdown Set secure configuration without user interaction. -v Display version and author information and exit. -help, -h Show this message and exit. Installation Options: Install with pip $ pip install stronghold $ stronghold Download the stronghold binary from Releases tab. Configuration Options: Firewall - Turn on Firewall? This helps protect your Mac from being attacked over the internet. Turn on logging? If there IS an infection, logs are useful for determining the source. Turn on stealth mode? Your Mac will not respond to ICMP ping requests or connection attempts from closed TCP and UDP networks. General System Protection: Enable Gatekeeper? Defend against malware by enforcing code signing and verifying downloaded applications before allowing them to run. Prevent automatic software whitelisting? Both built-in and downloaded software will require user approval for whitelisting. Disable Capti
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A security analytics platform that integrates with Google Chronicle to deliver Autonomic Security Operations through data engineering, detection engineering, and response engineering.
A Live Response collection script for Incident Response that automates the collection of artifacts from various Unix-like operating systems.
A case management platform for Security Operations Centers that enables collaborative incident response, workflow automation, and compliance reporting throughout the cybersecurity incident response lifecycle.
A remediation orchestration platform that consolidates security alerts, automates triage, and streamlines the remediation process across hybrid environments.
Tool to bypass endpoint solutions blocking known 'malicious' signed applications by obtaining valid signed files with different hashes.
Companion repository for deploying osquery in a production environment with tailored query packs.
Repository of templates for Ayehu's workflows with the ability to design, execute, and automate IT and business processes.
Scumblr is a web application for periodic syncs of data sources and security analysis to streamline proactive security.
Workflows for Shuffle automation tool with structured categories and customization options.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.