The Lagrange Audit Engine is a cross-platform (Linux & Windows), standalone security auditing tool. It simplifies the assessment of system-level configurations, identifying weak points, hardening targets and compliance deviations. It performs deep security posture analysis without modifying any system configurations. With v3.0, it features a highly scalable modular architecture, SSH Key support, and native Nmap integration.
- Modular Architecture: Core logic and os-specific audit checks are logically separated for maintainability.
- Smart OS Detection & Authentication: Auto-probes SSH (22) and WinRM (5985) and natively supports Private Key authentications.
- Network Discovery (Nmap): Comes with Nmap integration for scanning full CIDR networks and populating targets.
- Enterprise Hardening (Linux/Windows): Includes 35+ checks for BitLocker, IDS/IPS, IPv6 status, USB storage drivers, UEFI, GRUB passwords, Active Services, etc.
- Premium Reporting: Generates visually stunning HTML reports and machine-readable JSON files with detailed
Recommendations. - Command Line Chunking: Securely bypasses WinRM execution limits for Windows environments.
Ensure Python 3.x is installed. Install necessary dependencies:
pip install -r requirements.txtpython main.pyFollow the on-screen menu to start scanning or view reports.
- Non-Invasive: No settings are changed.
- Secure Input: Uses
getpassfor sensitive credentials. - Audit Trails: Every scan produces a timestamped report in the
reports/directory.
Developed by faruk-guler | GitHub Repository