
vol-rs
Volatility 3 ported to Rust. Same output, much faster.

Volatility 3 ported to Rust. Same output, much faster.

Tamper-evident audit trails for AI agents: hash-chained Runtime Records, dependency-free, verifiable by anyone.

One-tap Linux OPSEC hardening & anonymity toolkit

You didn't think I'd go and leave the blue team out, right?

Cross-platform Yara scanner written in Go

DriverSentinel is a security tool developed in Go that detects malicious and vulnerable drivers on Windows systems by comparing them against the…

Spip network sensor written in Go

A secure low code deception runtime framework, leveraging AI for System Virtualization.

An app that helps you monitor your Kubernetes cluster, debug critical deployments & gives recommendations for standard practices

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.


Real-time HTTP Intrusion Detection

Real-time Windows system monitor with advanced process, network, and disk analysis, stack trace debugging, malware detection, and service management.…

eBPF-powered network observability for Kubernetes. Indexes L4/L7 traffic with full K8s context, decrypts TLS without keys. Queryable by AI agents via…


Curated list of threat detection and hunting resources: detection rules, SIEM and log analysis tools, endpoint/network monitoring, datasets,…

Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software…

A repository of sysmon configuration modules