Mondoo
All Posts

Open Source

Mondoo open source tools and community

9 articles

Power up MQL
3 min read

Power up MQL

The freshly baked cnquery and cnspec v10 release includes some exciting new language features in MQL. This blog post dives into these capabilities and the use cases that motivated them.

Dominik Richter
Dominik Richter · Jan 31, 2024
Unleashing the Power of Provider Plugins
5 min read

Unleashing the Power of Provider Plugins

We have always wanted our users to be able to create their own providers (pluggable components that add capabilities) to expand the projects however they like. The explosive growth in the types of technologies we support has been a strong indication for this model.

Dominik Richter
Dominik Richter · Nov 22, 2023
cnspec's Powerful New Reporting Capabilities
2 min read

cnspec's Powerful New Reporting Capabilities

As your business's digital footprint continues to expand, so too does the importance of IT security and compliance. But let's face it, staying on top of all the potential threats and misconfigurations in your IT infrastructure can be daunting. That's why we're thrilled to unveil the latest feature release for the open source cnspec tool by Mondoo. Our new rich reporting features provide comprehensive and actionable insights into your security and compliance posture. And the best part? It's completely free!

Chip Johnson
Chip Johnson · May 3, 2023
Secure Industry 4.0 with xSPM
6 min read

Secure Industry 4.0 with xSPM

Industry 4.0 has introduced a new level of integration between IT and operations technology (OT) in modern industrial automation systems. This integration has led to higher demands on IT security because any security risks in the OT world can impact the IT world and vice versa. This blog post proposes an open source solution called xSPM (extensible security posture management) that can help organizations manage the security and compliance of their complete infrastructure, including on-premises, cloud, and SaaS services. In this post, we will discuss the benefits of xSPM and how it can help secure Industry 4.0.

Patrick Münch
Patrick Münch · Mar 15, 2023
Streamline Cloud Security with Mondoo's Open CSPM Solution
1 min read

Streamline Cloud Security with Mondoo's Open CSPM Solution

Securing cloud environments can be a challenging task for security and platform engineers. To help with this task, Mondoo has released a new open cloud security posture management (CSPM) solution that is built on security as code (SaC). The new solution is designed to provide security and platform engineers with an easy way to manage and secure their cloud environments.

Tim Smith
Tim Smith · Feb 15, 2023
Understanding cnquery and cnspec: Open Source CLI Security Tools
3 min read

Understanding cnquery and cnspec: Open Source CLI Security Tools

If you're looking to improve the security of your infrastructure, cnquery and cnspec are tools you should know about. These open source command-line interface (CLI) tools are designed to gather information about and test the security posture of your infrastructure, including Linux, Windows, VMware, Kubernetes, AWS, Slack, GitHub, containers, images, and more.

Victoria Jeffrey
Victoria Jeffrey · Jan 31, 2023
Detect Host Misconfigurations with Open Source, Agentless cnspec
2 min read

Detect Host Misconfigurations with Open Source, Agentless cnspec

Assessing and remediating host misconfigurations is critical to maintaining a secure infrastructure. But with so many options available, it can be difficult to know where to start. That's where Mondoo's open source solution, cnspec, comes in.

Victoria Jeffrey
Victoria Jeffrey · Jan 23, 2023
Why MQL: An Extension of GraphQL
6 min read

Why MQL: An Extension of GraphQL

MQL is Mondoo’s own GraphQL-based query and policy language for exploring and testing infrastructure. Find out why and how we created it for platform and security engineers.

Dominik Richter
Dominik Richter · Jan 5, 2023
New OSS Security Projects: cnquery and cnspec
4 min read

New OSS Security Projects: cnquery and cnspec

Maintaining real-time insights into the current state of your infrastructure is essential for both platform engineering and security. Over the past decade, projects like osquery demonstrated the value of accessing your operating system like you would a database. Since then, the space has evolved beyond the OS with tools that inspect cloud, Kubernetes, or interconnected SaaS services.

Dominik Richter
Dominik Richter · Nov 1, 2022

Ready to Transform Your Security?

See how Mondoo can help you find and fix vulnerabilities faster.