
http-breakout-proxy
HTTP Proxy Analysis for reverse engineering protocol communication

HTTP Proxy Analysis for reverse engineering protocol communication

USB port access control tool for Debian with whitelist management, automatic background scanning daemon, and CLI interface to block or allow USB…

Execution-Layer Security (ELS) for AI agents — policy-enforced shell with audit.

A tool to subscribe to receive all standard Android broadcasts on your Android device.

A ProcessMonitor visualization application written in rust.

Multi-threaded Windows event log forensics timeline generator and threat hunting tool with full Sigma rule support, producing CSV/JSON timelines for…

OS X Auditor is a free Mac OS X computer forensics tool

eBPF-based network analysis tool for capturing and visualizing HTTP, Redis, MySQL, Kafka, MongoDB, RocketMQ, and DNS requests with kernel-level…

PowerShell-based threat hunting tool that analyzes Windows Event Logs to detect malicious activity including credential attacks, obfuscated commands,…

iOS debugging tool for inspecting network requests, logs, sandbox files, and device info with a shake-to-show interface similar to Charles Proxy.

Red Team's SIEM - tool for Red Teams used for tracking and alarming about Blue Team activities as well as better usability in long term operations.

Admission control and runtime guardrails for agentic AI. Scans skills, MCP servers, plugins, and code before execution; inspects prompts,…

Multi-cloud and SaaS security posture management CLI tool performing 1000+ automated checks across 100+ services for asset management, attack surface…

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs

Threat hunting tool for Windows event logs using pre-defined detection rules and statistical analysis to uncover APT movements and suspicious…

Cloud incident response and threat hunting tool that exports Azure, Entra ID, M365, and Defender telemetry for post-incident investigation and log…

PowerShell-based DFIR tool for parsing Linux /var/log/ logs, extracting SSH logins, user creations, and IP addresses to accelerate incident response…