
crowdsec
Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

Cross-platform adversary emulation framework with dynamic C2 implants supporting mTLS, WireGuard, HTTP(S), and DNS. Features code generation, process…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Self‑healing Gossip Mesh C2 with Assisted Peer Discovery, Cross-Platform BOF Execution, and Scriptable Agents.

Automated WAF assessment tool that detects firewall vendors, tests 19 attack categories with advanced evasion payloads, and provides color-coded…

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Generic attack detection rule set for web application firewalls, protecting against OWASP Top Ten and common vulnerabilities with minimal false…

Open-source AI agent firewall that scans HTTP, MCP, A2A, and WebSocket traffic for exfiltration, SSRF, and prompt injection, emitting verifiable…

Kernel-mode process killer exploiting CVE-2026-0828 (BYOVD) to terminate protected processes via a vulnerable signed driver, bypassing PPL and…

Open-source Windows antivirus and EDR/XDR suite combining ClamAV, YARA-X, machine learning, behavioral analysis, kernel-level protection, and…

Creation of multiple Malware tools consisting of evasion, enumeration and exploitation

OPNsense GUI, API and systems backend

Advanced Phishing Protection: Suricata rulesets open and free

WiFi, Bluetooth and Ethernet Intrusion Detection.

C2 redirector and red team infrastructure manager with malleable profile validation, multi-protocol listeners, JA3 fingerprint filtering, sandbox…

System-wide anonymity protocol routing all traffic through Tor with Mixnet-like obfuscation, packet shuffling, cover traffic, and anti-forensic…

Transforms UDP stream into (fake) TCP streams that can go through Layer 3 & Layer 4 (NAPT) firewalls/NATs.

Fileless x64 Assembly C2 framework with dual-channel ICMP/DNS protocol pivoting, direct syscall execution, and ptrace-based process injection for…