
Azure-Sentinel
Cloud-native SIEM for intelligent security analytics for your entire enterprise.

Cloud-native SIEM for intelligent security analytics for your entire enterprise.

Canarytokens helps track activity and actions on your network


Real-time network diagnostics in your terminal. One command, zero config, instant visibility.

Docker configuration to quickly setup your own Canarytokens.

PCRE RegEx matching Log4Shell CVE-2021-44228 IOC in your logs

An ADCS honeypot to catch attackers in your internal network.

With Wireshark or TCPdump, you can determine whether there is harmful activity on your network traffic that you have recorded on the network you…

Internal network honeypot for detecting if an attacker or insider threat scans your network for log4j CVE-2021-44228

Pre-execution intent verification for AI agents. Audits what your AI is about to do, not what it says. Zero dependencies, deterministic, hash-sealed.

Automate stopping bad bots from accessing your server

Anti-Virus for K8s. Protect your Applications running on Kubernetes from malicious attacks with pre-registered source code, runtime processes…

Integrates your Modern Honeypot Network Server and Wordpress Blog via MHN's REST API and WP's shortcodes

Look for un-sinkholed C&C IPs in your Bro logs (from Bambanek Consulting C&C master list)

OSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit…

Containerized network traffic analysis suite ingesting PCAP, Zeek logs, and Suricata alerts for automated normalization, enrichment, and correlation…

Tools for hunting for threats.

Metlo is an open-source API security platform.