Skip to main content

Vulnerability Matching

Project description

Patton - The vulnerability knowledge store

Current version

0.0.3

Project site

https://github.com/bbva/patton-server

Issues

https://github.com/bbva/patton-server/issues/

Documentation

https://patton-server.readthedocs.org/

Python versions

3.6 or above

What’s Patton Server

Patton server is project that store the vulnerability information (CVEs) and link it with product details (CPE) and allow to ask in a very clever way.

For example:

Finding library vulnerabilities

  • Given a software library in raw format, i.e: django

  • And a version in a possible version, i.e: 1.2

Patton can find all the Product Identification for Django and their public vulnerabilities.

Finding software from raw text

  • Given a HTTP server banner, i.e: “Apache 2.2-ubuntu2 +PHP Mod”

Patton can find, with a very exact way, vulnerabilities for Apache and the specific version

How to use Patton server?

Patton serve has a REST API. You can check if in different ways:

  • Using raw curl / wget / [YOUR FAVORITE HTTP CLIENT]

  • Using the Postman collection you can find in this repo (named patton_server.postman.json)

  • Using Patton-cli (https://github.com/bbva/patton-cli/: We recommend to use this way. Patton-cli is a powerful client for Patton server that allow to extract and check vulnerabilities for your systems in a many different ways.

Documentation

Go to documentation site: https://patton-server.readthedocs.org/

Contributing

Any collaboration is welcome!

There’re many tasks to do.You can check the Issues and send us a Pull Request.

Also you can read the TODO file.

License

This project is distributed under Apache 2 license

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

patton-server-0.0.4-r7.tar.gz (17.3 kB view details)

Uploaded Source

File details

Details for the file patton-server-0.0.4-r7.tar.gz.

File metadata

File hashes

Hashes for patton-server-0.0.4-r7.tar.gz
Algorithm Hash digest
SHA256 7ffd97d0bb72b5bc8c4b83b9b4fb1882e62c2d49405c799e39df6647f89ac8c6
MD5 b3fcc8b65e05060229885a92d4f5a287
BLAKE2b-256 07ca196eb7bee9f9023a01d286df66ba4e00002888d2f6e0734c742a49b1d430

See more details on using hashes here.

Supported by

AWS AWS Cloud computing and Security Sponsor Datadog Datadog Monitoring Fastly Fastly CDN Google Google Download Analytics Microsoft Microsoft PSF Sponsor Pingdom Pingdom Monitoring Sentry Sentry Error logging StatusPage StatusPage Status page