Cybersecurity and Infrastructure Security Agency
Commit today, secure tomorrow.
United States of America
Pinned Repositories
cset
Cybersecurity Evaluation Tool
decider
A web application that assists network defenders, analysts, and researchers in the process of mapping adversary behaviors to the MITRE ATT&CK® framework.
development-guide
A set of guidelines and best practices for an awesome engineering team
LME
Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-time alerting, helping small to medium-sized organizations secure their infrastructure.
log4j-scanner
log4j-scanner is a project derived from other members of the open-source community by CISA to help organizations identify potentially vulnerable web services affected by the log4j vulnerabilities.
Malcolm
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
manage.get.gov
A Django-based domain name registrar that interfaces with an EPP registry
RedEye
RedEye is a visual analytic tool supporting Red & Blue Team operations
ScubaGear
Automation to assess the state of your M365 tenant against CISA's baselines
Sparrow
Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 environment.
Cybersecurity and Infrastructure Security Agency's Repositories
cisagov/Malcolm
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
cisagov/ScubaGear
Automation to assess the state of your M365 tenant against CISA's baselines
cisagov/cset
Cybersecurity Evaluation Tool
cisagov/LME
Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-time alerting, helping small to medium-sized organizations secure their infrastructure.
cisagov/vulnrichment
A repo to conduct vulnerability enrichment.
cisagov/dotgov-data
Official list of .gov domains
cisagov/ScubaGoggles
SCuBA Secure Configuration Baselines and assessment tool for Google Workspace
cisagov/CSAF
CISA CSAF Security Advisories
cisagov/manage.get.gov
A Django-based domain name registrar that interfaces with an EPP registry
cisagov/kali-packer
This project can be used to create AMIs based on Kali Linux, a penetration testing distribution.
cisagov/nessus-packer
Create machine images containing the Nessus vulnerability scanner
cisagov/XFD
CyHy Dashboard
cisagov/scan-target-data
Contains data used to identify targets for scanning
cisagov/ScubaConnect
Native cloud infrastructure for automatically running ScubaGear/ScubaGoggles
cisagov/freeipa-server-packer
Create a Fedora-based AMI with FreeIPA server installed.
cisagov/openvpn-packer
Creates machine images for use as an OpenVPN gateway
cisagov/terraformer-packer
Create an AMI that can be used to deploy AWS resources via Terraform.
cisagov/debian-packer
Create a Debian AMI
cisagov/guacscanner
Scan for EC2 instances added (removed) from a VPC and create (destroy) the corresponding Guacamole connections.
cisagov/docker-packer
Create an AMI with Docker installed
cisagov/epplib
Forked from https://gitlab.nic.cz/fred/utils/epplib
cisagov/pca-gophish-composition-packer
Create machine images that include cisagov/pca-gophish-composition
cisagov/samba-packer
Build a Samba-enabled AWS EC2 AMI.
cisagov/egress-assess-packer
Create an AMI with the Egress-Assess egress data detection tool.
cisagov/setup-go-package
Composite GitHub action to install a Go package.
cisagov/ubuntu-server-packer
Create an Ubuntu AMI
cisagov/action-disable-apparmor
A GitHub Action to disable AppArmor on the GitHub runner.
cisagov/action-job-preamble
A GitHub Action to apply cisagov's standard permissions monitoring and runner hardening. This Action is intended to be applied at the beginning of every GitHub Actions job.
cisagov/github-search-gov
cisagov/skeleton-action-composite
This is a generic skeleton project that can be used to quickly get a new cisagov GitHub composite Action project started.