
beelzebub
A secure low code deception runtime framework, leveraging AI for System Virtualization.

A secure low code deception runtime framework, leveraging AI for System Virtualization.

AI IR Overlay™ — practical incident response framework for AI agents in production. Built on NIST SP 800-61 r3, mapped to NIST AI RMF, NIST CSF 2.0,…

The TTPForge is a Cybersecurity Framework for developing, automating, and executing attacker Tactics, Techniques, and Procedures (TTPs).

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

Remote live forensics and incident response framework with Python agent for collecting forensic data from endpoints, including memory, disk, and…

AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK…

Open-source security framework for real-time event tracking, threat detection, and risk scoring. Monitors user behavior, detects fraud, bot attacks,…

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from…

Crescendo is a swift based, real time event viewer for macOS. It utilizes Apple's Endpoint Security Framework.

ATHF is a framework for agentic threat hunting - building systems that can remember, learn, and act with increasing autonomy.

Incident Response Forensic Framework

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Hubble is a modular, open-source security compliance framework. The project provides on-demand profile-based auditing, real-time security event…

OWASP Honeypot, Automated Deception Framework.

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

Swift-based macOS incident response framework for collecting and analyzing host artifacts, including filesystem timestamps, browser data, unified…

Open-source forensics framework for analyzing Industrial PLC metadata and project files. Scans for suspicious artifacts in ICS environments to…

A Software as a Service (SaaS) log collection framework.