
minisign
A dead simple tool to sign files and verify digital signatures.

A dead simple tool to sign files and verify digital signatures.

Azure AD security assessment tool that evaluates tenant configuration and identity risk, scoring findings through a maturity framework to prioritize…

Windows sandbox-based isolation tool for running untrusted programs and web browsing in a secure virtual environment without permanent system changes.

Simple tool to configure Windows Filtering Platform (WFP) which can configure network activity on your computer.

Rust tool to detect cell site simulators on an orbic mobile hotspot

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

An open source threat modeling tool from OWASP

A tool for checking the security hardening options of the Linux kernel

A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

An information security preparedness tool to do adversarial simulation.

Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of…

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

"Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events.…

Forensics artefact collection tool for systems running Microsoft Windows

Cloud incident response and threat hunting tool that exports Azure, Entra ID, M365, and Defender telemetry for post-incident investigation and log…

C# tool that enumerates running processes, loaded DLLs, installed services, and drivers to detect the presence of AV, EDR, and logging products,…