
cyberbro
A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.…

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

Triages a suspect Windows machine in minutes. Collects processes, services, autoruns, event logs and forensic artifacts, flags attacker activity, and…

Linux kernel driver for physical memory acquisition, enabling read access to any physical address including reserved memory and memory holes, with…

Python-based scanner for CVE-2025-55182 indicators of compromise. Checks filesystem paths, processes, systemd services, cron persistence, and…

PowerShell script helping Incident Responders discover potential adversary persistence mechanisms.

A sandbox escape based on the proof-of-concept (CVE-2018-4087) by Rani Idan (Zimperium)

IOCs and a read-only triage checklist from a real Linux root compromise: RedTail miner, XorDDoS persistence, MoneroOcean miner, DirtyFrag LPE…

Easy-to-use live forensics toolbox for Linux endpoints

All-in-one penetration testing toolkit aggregating 185+ tools across 20 categories including information gathering, web & wireless attacks, phishing,…

eBPF-powered network observability for Kubernetes. Indexes L4/L7 traffic with full K8s context, decrypts TLS without keys. Queryable by AI agents via…

Automation and Scaling of Digital Forensics Tools

eBPF-based packet analyzer that captures network traffic with automatic process, container, and Kubernetes pod metadata annotation, supporting…

The Open-Source AWS Cyber Range