
artillery
Open-source blue team tool that protects Linux and Windows systems using multiple host and network defense and detection methods.

Open-source blue team tool that protects Linux and Windows systems using multiple host and network defense and detection methods.

VulnCheck's official command line tool

An OSINT investigation case mapping tool for organizing entities, relationships, evidence, and intelligence.

Python CLI tool for rapid IOC analysis (IPs, Domains, CVEs) using 6 free Threat Intel APIs. Outputs: Color-coded Excel, JSON, CSV. Uses: VT, Shodan,…

🛡️ Official AI Security Tool diagnostic module for CVE-2026-41089 (Windows Netlogon Stack Buffer Overflow RCE). Features technical writeup, attack…

Tool to search for IOCs related to HAFNIUM: CVE-2021-26855 CVE-2021-26857 CVE-2021-26858 CVE-2021-27065

Collaborative forensic timeline analysis platform for ingesting, searching, and annotating event logs to support incident response and DFIR…

Clusters and elements to attach to MISP events or attributes (like threat actors)

Read-only PowerShell security auditor for Windows endpoints and servers: checks Defender configuration, patch status, credentials, persistence,…

Taxonomies used in MISP taxonomy system and can be used by other information sharing tool.

A Pythonic interface and command line tool for interacting with the InQuest Labs API.

Curated repository of threat intelligence feeds, IoC lists, YARA rules, and DFIR tool references for SOC/CERT/CTI detection and incident response.


CVE-2021-3441 CVE Check is a python script to search targets for indicators of compromise to CVE-2021-3441

Detects CVE-2026-45321 (TanStack supply chain compromise) and Mini Shai-Hulud worm artifacts. Scans node_modules, lockfiles, persistence hooks…

CVE-2025-31324 & CVE-2025-42999 vulnerability and compromise assessment tool

Automated threat intelligence aggregation tool that extracts and normalizes indicators from multiple sources (OSINT feeds, malware reports) into a…

Black-box vulnerability scanner and indicator-of-compromise analyzer for CVE-2020-6287 (RECON) in SAP NetWeaver Java applications, enabling rapid…