
SecurityClaw
A modular, skill-based autonomous Security Operations Center (SOC) agent that monitors OpenSearch/Elasticsearch data, builds RAG-based behavioral…

A modular, skill-based autonomous Security Operations Center (SOC) agent that monitors OpenSearch/Elasticsearch data, builds RAG-based behavioral…

DECeption with Evaluative Integrated Validation Engine (DECEIVE): Let an LLM do all the hard honeypot work!

Security event correlation engine for ELK stack

Ability to detect suspicious activity such as (WEP/WPA/WPS) attack by sniffing the air for wireless packets.

AV/EDR Lab environment setup references to help in Malware development

Rules generated from our investigations.

psad: Intrusion Detection and Log Analysis with iptables

This project is a SIEM with SIRP and Threat Intel, all in one.

This page is a result of the ongoing hands-on research around advanced Linux attacks, detection and forensics techniques and tools.

The OWASP SecureTea Project provides a one-stop security solution for various devices (personal computers / servers / IoT devices)

Labtainers: A Docker-based cyber lab framework

📡🍓🍍 Detects wireless network attacks performed by KARMA module (fake AP). Starts deauthentication attack (for fake access points)

Encrypted peer-to-peer mesh VPN for remote mobile forensics, enabling wireless ADB and libimobiledevice acquisition, network monitoring, and…

🛡️Awesome lists about all kinds of interesting topics of Wazuh XDR/SIEM

A Wordpress Honeypot

Honeynet Project generic authenticated datafeed protocol

DNXFIREWALL® and DAD'S NEXT-GEN FIREWALL™, a C/CPython hybrid next generation firewall built on top of Linux and bound to kernel/ netfilter hooks for…

With Wireshark or TCPdump, you can determine whether there is harmful activity on your network traffic that you have recorded on the network you…