{"repo":"cyb3rint3l-labs/ServerSecurityAudit","free":true,"listed":false,"github":"https://github.com/cyb3rint3l-labs/ServerSecurityAudit","clone":"git clone https://github.com/cyb3rint3l-labs/ServerSecurityAudit.git","description":"PowerShell-based Windows Server Security Audit Engine by Cyb3rint3l Labs. Measures alignment with the NIS2 directive and maps findings to MITRE ATT&CK tactics & CIS Controls v8 practices. Generates interactive HTML dashboards & structured JSON datasets.","language":"PowerShell","stars":47,"topics":["audit-tool","automation","compliance","cybersecurity","hardening","nis2","powershell","reporting","security-audit","sysadmin"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"🛡️ Windows Server Security Audit (NIS2 Alignment) 📋 Overview A modular PowerShell-based engine designed to perform deep security hygiene audits on Windows Server systems. It delivers actionable risk scoring mapped to NIS2 Directive (Article 21) , MITRE ATT&CK , and CIS Controls v8 , generating forensic-ready HTML and JSON outputs. The engine executes 30+ weighted checks across 6 Strategic Domains covering 12 critical security disciplines to ensure a holistic defense-in-depth posture. It runs entirely offline, has no external dependencies or call home capabilities. ⚠️ Disclaimer While designed to be non-intrusive, this script performs extensive WMI, Registry, and File System queries. These operations may cause temporary CPU/Disk spikes or trigger EDR/Monitoring alerts. 🎯 Key Capabilities 🇪🇺 NIS2 Compliance Aligned: Every check is mapped directly to Directive (EU) 2022/2555 articles (Vulnerability Handling, Risk Analysis, Basic Cyber Hygiene, Network Security, Access Control, Cryptography, Business Continuity). 📊 Risk-Based Scoring: Prioritises vulnerabilities (Critical/Warning/Info) based on exploitability impact. Furthermore, findings are mapped to MITRE ATT&CK tactics and CIS Controls v8 practices. 🕵️ Sensitive Data Discovery: Detects exposed credentials in user profiles and Inetpub locations in the form of filenames (e.g., \"passwords.txt\", \"credentials.docx\") across 15+ languages (🇬🇧 EN, 🇬🇷 GR, 🇩🇪 DE, 🇳🇱 DU, 🇫🇷 FR, 🇮🇹 IT, 🇪🇸 ES, 🇵🇹 PT, 🇵🇱 PL, 🇨🇿 C","default_branch":null,"files":null,"tree":[],"storefront":"/r/cyb3rint3l-labs","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/cyb3rint3l-labs/ServerSecurityAudit/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}