#1Log parsing, SIEM, centralized logging, forensic timeline, and security event correlation tools.
Kitploit recommended

Indicator of Compromise Scanner for CVE-2019-19781

Extensible Azure Security Tool - Documentation

Centralize Management of Intrusion Detection System like Suricata Bro Ossec ...


Express security essentials deployment for Linux Servers

Automated secret and leak detection scanner for GitHub and paste sites, with heuristic filtering, IOL enrichment via Shhgit/TruffleHog, and ELK-based…

This utility can help determine if indicators of compromise (IOCs) exist in the log files of a Pulse Secure VPN Appliance for CVE-2019-11510.

Honeypot FTP server written in .NET Core (C#) for both Linux and Windows.

Quick One Line Powershell scripts to detect for webshells, possible zips, and logs.

Look for un-sinkholed C&C IPs in your Bro logs (from Bambanek Consulting C&C master list)

Dockerized honeypot for CVE-2021-44228.

Operational security controls with forensic guarantees