
Skadi
Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Scapy: the Python-based interactive packet manipulation program & library.


A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs

mXtract - Memory Extractor & Analyzer

Incident Response collection and processing scripts with automated reporting scripts

Labtainers: A Docker-based cyber lab framework

Linux Memory Cryptographic Keys Extractor

Sashay is an automatic installer for useful tools.


An forensics tool to help aid in the investigation of spoofed emails based off the email headers.

An OSINT Metadata analyzing tool that filters through tags and creates reports

eBPF-based Linux rootkit detector using multi-channel cross-view analysis (sched_switch, NMI, /proc) to detect DKOM, tracepoint tampering, and…

Dracula OS is a Linux operating system meticulously designed for OSINT (Open Source Intelligence) and Cyber Intelligence missions.

Dracos Linux ( www.dracos-linux.org ) is the Linux operating system from Indonesian

Full static analysis of HyperHives macOS Rust infostealer — 571 decrypted config values, C2 infrastructure, DPRK/Contagious Interview attribution,…

Bash-based Linux persistence detection tool for DFIR investigations. Scans 15+ persistence mechanisms (systemd, cron, kernel modules, SSH,…
