
SOC-Multitool
A powerful and user-friendly browser extension that streamlines investigations for security professionals.

A powerful and user-friendly browser extension that streamlines investigations for security professionals.

This repository contains a list of new remediation scripts.

Collecting & Hunting for IOCs with gusto and style

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to…

Botnet command & control monitor

CredsHunter - Credential Hunting scripts for Windows and Linux OS

A portable OSINT Swiss Army Knife for DFIR/OSINT professionals 🕵️ 🕵️ 🕵️

CVE-2019-19781 - Remote Code Execution on Citrix ADC Netscaler exploit

Artifact collection tool for *nix systems

A GitHub recon/monitoring tool for finding internal leaks belonging to your organisation.

PowerShell script that aim to help uncovering (eventual) persistence mechanisms deployed by a threat actor following an Active Directory domain…

Shodan Monitoring integration for TheHive.

Threat hunting command system for agentic IDEs


AzureAD/EntraID user activity reporter for blue teams. Input a suspicious user and time frame to receive a detailed report of user info, actions, and…

Triages a suspect Windows machine in minutes. Collects processes, services, autoruns, event logs and forensic artifacts, flags attacker activity, and…

Turn Rootly incidents, alerts, and teams into a queryable knowledge graph. Visualize service dependencies, on-call coverage gaps, and cross-incident…