
pict
Modular incident response toolkit for collecting forensic data from potentially infected macOS endpoints, capturing browser artifacts, persistence…

Modular incident response toolkit for collecting forensic data from potentially infected macOS endpoints, capturing browser artifacts, persistence…

Spam Scanner is a Node.js anti-spam, email filtering, and phishing prevention tool and service. Built for @ladjs, @forwardemail, @cabinjs, @breejs,…

PacketFence is a fully supported, trusted, Free and Open Source network access control (NAC) solution. Boasting an impressive feature set including a…

Access control for AI agents. Set what Claude Code, Codex, Gemini, Cursor and any MCP server are allowed to do, review risky actions before they run,…

AI agent set for cloud security purple teaming, runs inside Claude Code, Gemini CLI, and Codex.

Tool that gathers a customizable set of ETW telemetry and generates user-defined detections

The remediation script should set the reg entries described in https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36884 . The detection…

Best-practice Linux Auditd rule set with 14,956 MITRE ATT&CK-mapped rules, Ansible deployment role, and lint/test tooling for security monitoring and…

Best Practice Auditd Configuration

A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.

Incident Response & Digital Forensics Debugging Extension

0-day malware detection for binaries, source & scripts (that doesn't suck)

Blue Team detection lab created with Terraform and Ansible in Azure.

Trace every shell environment variable to its exact file and line origin. Audit shell configs for dead entries, duplicates, and orphaned files across…

CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065

Unified dashboard to monitor, govern, and audit AI agents in real-time. Enforce budgets, detect policy violations, and export compliance reports for…

iOS Airborne vulnerabilities log artifact extractor from LogArchive CVE-2025-24252