Giter VIP home page Giter VIP logo

ssa's Introduction

SSA (Security System Analyzer) is free non-intrusive OVAL, FDCC, XCCDF and SCAP scanner. It provides security testers, auditors with an advanced overview of the security policy level applied.

Features

News

New Coming version

A new coming release will be in the wild very soon (after the Blackhat US Vegas). I decided to update the engine with the support of the latest OVAL, SCAP and XCCDF. Moreover, SSA is now working on OS X. Great news, i finally added PCI v2.0 Security Checks for Apple :) Many other enhancements to be expected. Stay Tuned.

December 2010 : Release of Beta 002

  • Added the support of XCCDF 1.1.4 (http://scap.nist.gov/specifications/xccdf/)
  • Display Pass / Fail testcase
  • Associate Testcase to CCE reference
  • Added the following Policies and Baselines
  • FDCC/SCAP FISMA NIST 800-53 with 5 baselines ( IE7, WinXP, WinVista, Vista Firewall, XP Firewall)
  • STIG/SCAP DISA with 2 baselines (Windows XP Security Checklist v6 r1.19 and Windows Vista Security Checkist v6 r1.19)
  • USGCB/SCAP USGCB with 2 baselines (IE8 and Windows 7 X86)
  • Added export to CSV
  • Added new directory for logs
  • Added the ability to maximize Windows
  • Added a new community page http://teambox.com/public/ssa-v2-beta
  • Fixed many bugs

November 2010 : Release of Beta 001

  • New UI
  • New Correlation engine
  • Integrated XML parser
  • Integrated HTML viewer
  • Compliant to OVAL interpreter 5.8.2
  • Load,verify and consume OVAL Compliance, Vulnerability and Inventory definitions
  • Enumerate findings (True states)
  • Support of CVE and CPE (http://cve.mitre.org and http://cpe.mitre.org)
  • List Results Stats (Global scanned definitions & True reported definitions)
  • View OVAL HTML results into UI

SSA is developed and maintained by NJ OUCHN (@toolswatch)

ssa's People

Contributors

googlecodeexporter avatar toolswatch avatar

Watchers

 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.