YASAT (Yet Another Stupid Audit Tool) is a simple stupid audit tool. Its goal is to be as simple as possible with minimum binary dependencies (only sed, grep and cut).
It do many tests for checking security configuration issue or others good practice.
It checks many software configurations like:
- Apache
- kernel
- OpenVPN
- Packages update
- snmpd
- tomcat
- user accounting
- vsftpd
- xinetd
YASAT has been tested on:
- Gentoo
- Debian
- Ubuntu
- FreeBSD
- OpenBSD
YASAT is licensed under GPLv3.
You can download YASAT here:
Or read more here.
GZero says
This may sound odd but I THINK I’ve been waiting for something like this for a while…
Philip says
YASAT, is that real term ?
Alex says
It has some bugs !
I have a full custom apache conf file, and it hasn’t find that my tokens were in prod mode, and so on for many other configurations lines.
But nice.
Thx for the article.