
osquery
SQL powered operating system instrumentation, monitoring, and analytics.

SQL powered operating system instrumentation, monitoring, and analytics.

Passive DNS Capture and Monitoring Toolkit

Spip network sensor written in Go

Centralized repository for malware samples, threat intelligence, IOCs, and security tooling logs to support threat research and incident response…

Next-Gen GUI-based WiFi and Bluetooth Analyzer for Linux

This repository contains a list of new remediation scripts.


A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

Chronicle parser for CORELIGHT and related information.

Parses Snaffler output file and generate beautified outputs.


Post-Exploitation EVTX Analyzer for BloodHound Mapping

Turn Rootly incidents, alerts, and teams into a queryable knowledge graph. Visualize service dependencies, on-call coverage gaps, and cross-incident…

A Rust CLI tool that recursively discovers Git repositories, captures state changes, generates diffs, extracts code elements with full snippets, and…

SentinelStream AI: A professional SIEM and SOAR platform featuring real-time threat correlation for CVE-2024-21410 and automated incident response…

A comprehensive Security Operations Centre (SOC) incident response simulation demonstrating threat detection, triage, analysis, and mitigation of the…