
linux-explorer
Easy-to-use live forensics toolbox for Linux endpoints

Easy-to-use live forensics toolbox for Linux endpoints

Rip Raw is a small tool to analyse the memory of compromised Linux systems.

Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management

Express security essentials deployment for Linux Servers

Linux vulnerability scanner based on Salt Open and Vulners audit API, with Slack notifications and JIRA integration

SSH bastion/jump host/jumpserver

Incident Response collection and processing scripts with automated reporting scripts

Curated index of incident response and DFIR tools, including memory and disk forensics, evidence collection, log analysis, playbooks, and educational…

Open-source security monitoring platform for threat hunting, intrusion detection, log management, incident response, and endpoint visibility with…

Best Practice Auditd Configuration

Automated forensic analysis tool for Google Workspace audit logs. Acquires all log types, maps events to MITRE ATT&CK Cloud Framework, and identifies…

Detection Script for MongoBleed Exploitation

Defensive validation of CVE-2026-46331 / pedit COW with auditd, AppArmor, mitigation comparison and detection logic.

Multi-host UFW firewall dashboard — explains rules in plain English, detects security gaps, and provides connection diagnostics

Daemon to ban hosts that cause multiple authentication errors

Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.
