Lynis is an auditing tool for Unix (specialists). It scans systems to detect software and security issues. Besides security-related information, it will also scan for general system information, installed packages, and possible configuration mistakes. The software is aimed at assisting automated auditing, software patch management, and vulnerability and malware scanning of Unix-based systems.
| Tags | Security Forensics Diagnostics |
|---|---|
| Licenses | GPLv3 |
| Operating Systems | Unix |
| Implementation | Unix Shell |
Recent releases


Changes: This release has several new tests and test improvements, like a sudoers file permissions check, a core dumps configuration check for Linux, PHP tests, and an /etc/issue banner test.


Changes: This release adds 40+ new tests for services like Dovecot, BIND, PowerDNS, SSH, Exim, and nginx. It has support for the Solaris auditing framework and several improvements to existing tests. Many small bugfixes and output and logging improvements have been made.


Changes: This release adds more than 30 new tests, including NTP, auditd, PAM, NFS and ClamAV. It introduces several new features (i.e. hardening index), parameters (i.e. --tests-category), and some small bugfixes. Screen output on Solaris has been improved.


Changes: This release contains many new tests, like status checks for Syslog-NG, klogd, and minilogd. Several inetd and logging tests have been added. Two new categories (Insecure services and SNMP) are included, and several problems related to Solaris have been fixed.


Changes: This release brings support for MySQL (client) and several new testings including MySQL, sysstat, and SSH. It also contains adjusted tests, bugfixes, and minor improvements like screen and log file output.