{"repo":"gabrielsoltz/metahub","free":true,"listed":false,"github":"https://github.com/gabrielsoltz/metahub","clone":"git clone https://github.com/gabrielsoltz/metahub.git","description":"MetaHub is an automated contextual security findings enrichment and impact evaluation tool for vulnerability management.","language":"Python","stars":177,"topics":["aws","security","securityhub","asff"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"MetaHub is an automated contextual security findings enrichment and impact evaluation tool for vulnerability management. You can use it with AWS Security Hub or any ASFF-compatible security scanner. Stop relying on useless severities and switch to impact scoring definitions based on YOUR context. Table of Contents - Description - Quick Run - Context - Impact - High Level Architecture - Use Cases - Configuration - Run with Python - Run with Docker - Run with Lambda - Run with Security Hub Custom Action - AWS Authentication - Configuring Security Hub - Configuring Context - Inputs - Output - Filters - Security Hub Actions - Contributing Description MetaHub is an open-source security tool for impact-contextual vulnerability management . It can automate the process of contextualizing security findings based on your environment and your needs, YOUR context , identifying ownership , and calculate an impact scoring based on it that you can use for defining prioritization (where should you start?) and automations like remediations, alerts or tickets. The tool is for AWS environments and you can use it with AWS Security Hub or any ASFF compatible scanners (like Prowler). :information source: Explore and extend the new MetaHub Dashboards using Powerpipe! MetaHub describes your context by connecting to your affected resources in your affected accounts. It can describe information about your AWS account and organization, the affected resources tags, related CloudTrail events, your affect","default_branch":null,"files":null,"tree":[],"storefront":"/r/gabrielsoltz","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/gabrielsoltz/metahub/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}