
SECMON
SECMON is a web-based tool for the automation of infosec watching and vulnerability management with a web interface.

Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.

An Active Defense and EDR software to empower Blue Teams

Powerful open-source CLI to audit security, costs, and best practices in AWS. 🩺 ☁️

DShield Sensor Log Collection with ELK

CVE-2025-31324 & CVE-2025-42999 vulnerability and compromise assessment tool

SQL powered operating system instrumentation, monitoring, and analytics.

Automate the creation of a lab environment complete with security tooling and logging best practices

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝


DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.

A Simple Ransomware Vaccine

Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to…

Parses Snaffler output file and generate beautified outputs.

Blue Team detection lab created with Terraform and Ansible in Azure.

TheLightScope

Collects and analyzes AD and Azure AD authentication logs to detect lateral movement attacks using graph-based anomaly detection, visualizing…

Open source Baltic Sea shadow fleet tracker. 1200+ vessels, live AIS, cable proximity alerts. No cloud, no subscription, runs locally