
graylog2-server
Centralized log management platform for collecting, indexing, and analyzing streaming logs, with alerting and event correlation for security…

Centralized log management platform for collecting, indexing, and analyzing streaming logs, with alerting and event correlation for security…

A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV.…

Open-source cybersecurity knowledge base with 400+ notes, labs, and cheat sheets covering offense, defense, cryptography, cloud, and forensics.

Recursive vulnerability scanner for Log4j CVEs in archives and Docker images. Detects JndiLookup.class and vulnerable versions via SHA256 hashes,…

Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…

🛡️Awesome lists about all kinds of interesting topics of Wazuh XDR/SIEM

Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS

Digital forensics and incident response tool using YARA rules to scan Citrix NetScaler core dumps, disk images, and live hosts for signs of…

A powerful and user-friendly browser extension that streamlines investigations for security professionals.

Open-source secret scanner in Rust

PacketFence is a fully supported, trusted, Free and Open Source network access control (NAC) solution. Boasting an impressive feature set including a…

Extract Windows credentials directly from VM memory snapshots and virtual disks

Swift-based macOS incident response framework for collecting and analyzing host artifacts, including filesystem timestamps, browser data, unified…

An open standard for hashing network flows into identifiers, a.k.a "Community IDs".

SecureCivic is a citizen-built, open source identity verification platform designed for SSA adoption. It replaces private data brokers with a secure,…

Step-by-step remediation guide for CVE-2013-3900 WinVerifyTrust vulnerability on Windows Server 2019, including registry fix, reboot, and…

Open Cyber Threat Intelligence Platform

IOC and YARA-based scanner for detecting indicators of compromise via file name regex, YARA signatures, hash matching, and C2 back-connect checks on…