
Sooty
The SOC Analysts all-in-one CLI tool to automate and speed up workflow.

The SOC Analysts all-in-one CLI tool to automate and speed up workflow.

Reverse engineering analysis of Dropper GCleaner, a malware that uses a resilient C2 infrastructure, kernel driver loading, PowerShell/Conhost…

Vulnerability triage with provenance. Resolves CVEs from locally built corpora (NVD/KEV/EPSS, ExploitDB, nmap script.db) and emits verification…

Defensive engagement & threat intelligence research laboratory. Converts inbound scam emails into actionable IOCs through controlled, policy-driven…

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

💚🇺🇸🗽Secure remote browsing anywhere, any way you like it.

Automates OSINT data collection and analysis for threat intelligence, attack surface mapping, and reconnaissance. Integrates 200+ modules for DNS,…

Advanced Cyber Threat Map (Simplified, customizable, responsive and optimized)

Crawlector is a threat hunting framework designed for scanning websites for malicious objects.

Advanced Phishing Protection: Suricata rulesets open and free

🕵️♂️ Collect a dossier on a person by username from 3000+ sites

🕵️♂️ All-in-one OSINT tool for analysing any website

Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

A modern platform for visual, flexible, and extensible graph-based investigations. For cybersecurity analysts and investigators.

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

Sandbox any AI agent in seconds - zero setup, zero latency.