
IPED
IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

RansomLord is a proof-of-concept Anti-Ransomware exploitation tool that automates the creation of PE files, used to compromise ransomware…

Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detections and…

A registry-based workaround can be used to help protect an affected Windows server, and it can be implemented without requiring an administrator to…

A MITM (monster-in-the-middle) detection tool. Used to build MALCOLM:

HASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints can be…

PacketFence is a fully supported, trusted, Free and Open Source network access control (NAC) solution. Boasting an impressive feature set including a…

Python Decoders for Common Remote Access Trojans

Script to check for IOC's created by ProxyNotShell (CVE-2022-41040 & CVE-2022-41082)

CVE-2021-1675 Detection Info

A python package for use in generating fake data for SOC and security automation.



This powershell script is intended to be used by anyone looking to remediate the Log4j Vulnerability within their environment. It can target multiple…

Mapping Corelight or Zeek data to Elastic Common Schema logs

Security event correlation engine for ELK stack

Artifact collection tool for *nix systems

DShield Sensor Log Collection with ELK