#1Tools for blue team, defensive security, and threat protection.
Kitploit recommended

eBPF Security Monitoring and Sandboxing Agent Based on Aya

Self-hosted threat intelligence platform — feed aggregation, AI triage, MITRE ATT&CK coverage, and Sentinel-integrated detection engineering. Runs…

Pre-execution action-auditing defense that detects and masks indirect prompt injection in tool-using LLM agents using embedding retrieval and…

Windows tool that disables Driver Signature Enforcement by patching kernel variables, allowing unsigned drivers to load for testing and research.

BYOVD proof-of-concept abusing the WHQL-signed DsArk64.sys driver for ring-0 process termination and kernel read/write via encrypted IOCTLs and…

Safety cannot be a prompt instruction. TBP provides an external execution-layer boundary for autonomous agents, enforcing hard F/I/W invariants via…

Explain why a Linux TCP port may or may not be reachable

Offline static checker that inspects packaged Java jars for vulnerable netty-resolver-dns versions and detects whether Spring WebClient actually uses…

eBPF-based runtime detector for container breakout vulnerabilities in runc and Docker, monitoring syscalls and Docker daemon calls to detect…

LSM BPF module to block pwnkit (CVE-2021-4034) like exploits

Multi-layered prompt injection detector for AI applications using heuristics, LLM-based analysis, vectorDB attack signatures, and canary token leak…

The Security Toolkit for LLM Interactions

针对CVE-2026-41940漏洞的临时缓解措施

A binary authorization and monitoring system for macOS

Pafish is a testing tool that uses different techniques to detect virtual machines and malware analysis environments in the same way that malware…

A browser extension that encrypts your communications with many websites that offer HTTPS but still allow unencrypted connections.