
mimicry
Active deception tool that transparently migrates attackers from real targets to honeypots during exploitation and post-exploitation, supporting…

Active deception tool that transparently migrates attackers from real targets to honeypots during exploitation and post-exploitation, supporting…

Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders

PowerShell script that aim to help uncovering (eventual) persistence mechanisms deployed by a threat actor following an Active Directory domain…

How to "recover" a CloudPanel server affected by the CVE-2024-44765 vulnerability

This repository contains informaion about the Fortigate firewall vulnerability (CVE-2022-40684) and affected data that were publicly disclosed by the…

Cowrie SSH/Telnet Honeypot https://docs.cowrie.org/

Cortex: a Powerful Observable Analysis and Active Response Engine

Botnet command & control monitor

LLMNR/NBNS/mDNS Spoofing Detection Toolkit

Turn Rootly incidents, alerts, and teams into a queryable knowledge graph. Visualize service dependencies, on-call coverage gaps, and cross-incident…

Read-only WordPress User Registration CVE-2026-1492 checker for hidden admins, plugin version, uploads PHP, cron, and compromise IOCs.

Medium-interaction SSH honeypot that logs brute force attacks and full attacker shell interactions, with customization options to reduce…

Indicators of Compromise and hunting guidance for CVE-2026-88771, an unauthenticated command injection in Citrix NetScaler ADC and Gateway, covering…

Forensic collection and analysis toolkit for Android and iOS devices to identify potential compromise by known spyware using public and private…

eBPF-powered network observability for Kubernetes. Indexes L4/L7 traffic with full K8s context, decrypts TLS without keys. Queryable by AI agents via…

IPED Digital Forensic Tool. It is an open source software that can be used to process and analyze digital evidence, often seized at crime scenes by…

Investigate malicious Windows logon by visualizing and analyzing Windows event log