The JDArmy RTASS (Red Team Assessment Scoring System) is an open framework used to assess the capability investment of both offensive and defensive sides in a single cyber red-blue confrontation or actual combat exercise, as well as the degree of risk faced by the business and the enterprise involved. Through RTASS, it is possible to quantify the risk status of attackers, defenders, business parties and enterprises in the red-blue adversarial network attack and defense drills. This framework is suitable for security assessment scenarios that conduct real network attacks on enterprises by simulating hacker APT methods, such as network red-blue confrontation drills, network actual offensive and defensive exercises, red team assessments, and blue army assessments.
The JDArmy BREAK (Business Risk Enumeration & Avoidance Kownledge) is an open "Business Risk Enumeration & Avoidance Knowledge" framework. By classifying, introducing and enumerating various business risks, the framework provides users with a complete business risk panorama, and provides avoidance knowledge for business risk avoidance and ability improvement.
The JDArmy DSRE (Data Security Risk Enumeration), is an open source framework. By combining data security attributes ( Confidentiality, Integrity, and Availability; Authentication, Authorization, and Auditability) and data life Cycle (data collection, data transmission, data storage, data processing, data exchange, data destruction), comprehensively enumerates different problems faced by data at different stages, and finally forms a data security risk enumeration framework, which aims to guide the red team of data to carry out red and blue confrontation work.