OpenSCAP
SCAP is a line of standards managed by NIST.
19 Alternatives To OpenSCAP
Acunetix
Audit your website security and web applications for SQL injection, Cross site scripting and other…
Arachni
Arachni is a Free/Public-Source Web Application Security Scanner aimed towards helping users evaluate the security of web applications.
Dependency-Check
Dependency-Check is a utility that identifies project dependencies and checks if there are any…
Lynis
Security auditing tool for systems running Linux, macOS, BSD, and other UNIX-based systems.
Network Hotfix Scanner
Network Hotfix Scanner is a free advanced hotfix check utility that scans network computers for missing hotfixes and patches, and helps you download and install them, gives you a quick look at the hotfixes and patches installed or missed
Nikto
Nikto is an Open Source (GPL) web server scanner which performs comprehensive tests against web…
Nmap
Nmap Free Security Scanner, Port Scanner, & Network Exploration Tool. Download open source software for Linux, Windows, UNIX, FreeBSD, etc.
Shodan
Shodan is the world’s first search engine for Internet-connected devices.
Snyk
Snyk helps you use open source and stay secure. Continuously find and fix vulnerabilities for npm, Maven, NuGet, RubyGems, PyPI and much more.
Sonatype Nexus Repository OSS
The world’s only repository manager with FREE support for popular formats.
Wireshark
Wireshark is a network protocol analyzer for Unix and Windows. It lets you capture and interactively browse the traffic running on a computer network.
Yang
Yang is yet another Nikto GUI; Software for analyzing and securing your servers.
Zed Attack Proxy
The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding…
cvechecker
The goal of cvechecker is to report about possible vulnerabilities on your system, by scanning the…
skipfish
A fully automated, active web application security reconnaissance tool.
snort
Snort is a free and open source network intrusion prevention system.
vFeed
The vFeed framework is an open source naming scheme concept that provides extra structured detailed…
victims
Software Vulnerability Scanner