
sandbox-runtime
A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

A lightweight sandboxing tool for enforcing filesystem and network restrictions on arbitrary processes at the OS level, without requiring a container.

OS X Auditor is a free Mac OS X computer forensics tool

Hardened Debian-based privacy OS with pre-integrated anonymity stack (Tor, VPN, DNSCrypt), anti-forensic tooling, SOC security center, and standalone…

A Mac OS X forensic utility which manages file system mounting in support of forensic procedures.

Regipy is an os independent python library for parsing offline registry hives

CredsHunter - Credential Hunting scripts for Windows and Linux OS

Python tool that parses the NTFS $MFT to copy locked files during incident response, bypassing OS locks by reading raw disk locations. Supports…

A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV.…

End-to-end vulnerability management lifecycle on Azure Windows Server 2025. Features OS patching and network-level compensating controls (NSG) to…

A hands-on forensic walkthrough of CVE-2025-59359, a critical OS command injection flaw in Chaos-Mesh. Learn how attackers hijack Kubernetes clusters…

Log4j 2 (CVE-2021-44228) vulnerability scanner for Windows OS

A forensic evidence collection & analysis toolkit for OS X

OS-level monitor for AI agents: observes processes, file access, and network activity on the local machine and attributes each event to an agent…

Automagically extract forensic timeline from volatile memory dump

AI-powered SOC for OT/ICS networks — 6 autonomous agents, MITRE ATT&CK mapping, Suricata/Zeek ingestion, human-in-the-loop response, 330+ tests.…

Simple honeypot for CVE-2024-3400 Palo Alto PAN-OS Command Injection Vulnerability


Python script to check Palo Alto firewalls for CVE-2024-3400 exploit attempts