
reportly
AzureAD/EntraID user activity reporter for blue teams. Input a suspicious user and time frame to receive a detailed report of user info, actions, and…

AzureAD/EntraID user activity reporter for blue teams. Input a suspicious user and time frame to receive a detailed report of user info, actions, and…

SQL powered operating system instrumentation, monitoring, and analytics.

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

Next-Gen GUI-based WiFi and Bluetooth Analyzer for Linux

Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders

Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to…

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

A script that helps you understand why your E-Mail ended up in Spam

Kvasir: Penetration Test Data Management

HonSSH is designed to log all SSH communications between a client and server.

Passive DNS Capture and Monitoring Toolkit

SECMON is a web-based tool for the automation of infosec watching and vulnerability management with a web interface.

An advanced real time threat intelligence framework to identify threats and malicious web traffic on the basis of IP reputation and historical data.

Find phishing kits which use your brand/organization's files and image.

Artifact collection tool for *nix systems

This repository contains a list of new remediation scripts.

Parses Snaffler output file and generate beautified outputs.