
melee
Python-based tool to detect ransomware infections and malicious code in MySQL instances. Performs reconnaissance, user enumeration, and deep scans…

Python-based tool to detect ransomware infections and malicious code in MySQL instances. Performs reconnaissance, user enumeration, and deep scans…

Basic log analysis tool to detect impossible travel via IP address geographic information

A network sniffer that logs all DNS server replies for use in a passive DNS setup

Automation tool designed to simplify the analysis of PCAP (Packet Capture) files

analyze a web-based network traffic 🕶 to detect central command and control servers

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to…

Rust-based Windows forensic toolkit for real-time MFT monitoring, event log streaming, and channel enumeration, enabling live system analysis and…

Network monitoring tool that maps process-to-network connections, identifies cloud providers, and detects beaconing activity

Artifact collection tool for *nix systems

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

A GitHub recon/monitoring tool for finding internal leaks belonging to your organisation.

Forensics artefact collection tool for systems running Microsoft Windows


IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

DDWPasteRecon tool will help you identify code leak, sensitive files, plaintext passwords, password hashes. It also allow member of SOC & Blue Team…

Client-server tool for live data collection during incident response. Admin sends requests to clients to gather system information for forensic…

Real Time Threat Monitoring Tool