
reportly
AzureAD/EntraID user activity reporter for blue teams. Input a suspicious user and time frame to receive a detailed report of user info, actions, and…

AzureAD/EntraID user activity reporter for blue teams. Input a suspicious user and time frame to receive a detailed report of user info, actions, and…

Kyanos is a networking analysis tool using eBPF. It can visualize the time packets spend in the kernel, capture requests/responses, makes…

Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to…

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

A collection of scripts which may come in handy during your freedom fighting activities.

SECMON is a web-based tool for the automation of infosec watching and vulnerability management with a web interface.

Artifact collection tool for *nix systems

A tool to subscribe to receive all standard Android broadcasts on your Android device.

analyze a web-based network traffic 🕶 to detect central command and control servers


Rust-based Windows forensic toolkit for real-time MFT monitoring, event log streaming, and channel enumeration, enabling live system analysis and…

Basic log analysis tool to detect impossible travel via IP address geographic information

Network monitoring tool that maps process-to-network connections, identifies cloud providers, and detects beaconing activity