
tracee
Linux Runtime Security and Forensics using eBPF

Linux Runtime Security and Forensics using eBPF

Scalable threat intelligence platform that enriches observables and files using 200+ analyzers, with built-in GUI, REST API, and automated workflows…

Semantic search over videos using Gemini Embedding 2 or Qwen3-VL.

Python wrapper for tshark, allowing python packet parsing using wireshark dissectors

Automated steganalysis platform that detects hidden data in images using 16 parallel analyzers, bit-layer visualization, and an in-app wiki for CTF…

Cross-platform memory dumper using Frida to extract accessible memory from iOS, Android, and Windows applications for forensic analysis and…

A simple application that extracts your IoCs from garbage input and checks their reputation using multiple CTI services.

Decrypt WhatsApp encrypted media files (images, videos, audio, documents) using media keys extracted from iOS ChatStorage.sqlite or Android…

A modular, skill-based autonomous Security Operations Center (SOC) agent that monitors OpenSearch/Elasticsearch data, builds RAG-based behavioral…

Hide 🕵️♂️ your files of any type inside a image of your choice using steganography

Powerglot encodes offensive powershell scripts using polyglots . Offensive security tool useful for stego-malware, privilege escalation, lateral…

eBPF-based Linux rootkit detector using multi-channel cross-view analysis (sched_switch, NMI, /proc) to detect DKOM, tracepoint tampering, and…

Live kernel signal observability tool using eBPF tracepoints to stream every signal raised on a Linux host, showing sender, target, disposition,…

A tool for processing a lot of pcaps using tshark

Tool to help guess a files 256 byte XOR key by using frequency analysis

Binary and Directory tree comparison tool using Fuzzy Hashing

Automated steganography detection tool that scans websites, web servers, and local directories using AI-driven object/text recognition and deep file…

Detects hidden Linux kernel rootkits (LKM-based) and restores their visibility using kernel-level inspection techniques for forensic analysis and…