
sparrow-wifi
Next-Gen GUI-based WiFi and Bluetooth Analyzer for Linux
Log parsing, SIEM, centralized logging, forensic timeline, and security event correlation tools.

Next-Gen GUI-based WiFi and Bluetooth Analyzer for Linux

Curated collection of Microsoft Sentinel KQL queries and tutorials for hunting threats, analyzing Azure AD sign-in logs, detecting anomalies, and…

Automated IP ban service that detects failed login attempts from event logs and files, blocking attackers on Windows and Linux via firewall…

iOS Debugging Tool 🚀


This repository serves as a place for community created Targets and Modules for use with KAPE.

A curated list of awesome Security Hardening techniques for Windows.

Open-source security framework for real-time event tracking, threat detection, and risk scoring. Monitors user behavior, detects fraud, bot attacks,…

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

Community-driven project for documenting, standardizing, and modeling security event logs to improve detection analytics and data normalization…

Best Practice Auditd Configuration

Real-time monitoring and slowlog analysis for Valkey and Redis databases with anomaly detection, ACL auditing, and Prometheus metrics export.

TrustedSec Sysinternals Sysmon Community Guide

Security Governance for Agentic AI

eBPF-based Linux security monitor and threat hunter providing chronologically ordered, container-aware events with on-host correlation for incident…

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).

Real-time network diagnostics in your terminal. One command, zero config, instant visibility.