

A low to medium interaction honeypot.


Botnet command & control monitor

A portable OSINT Swiss Army Knife for DFIR/OSINT professionals 🕵️ 🕵️ 🕵️

A command line tool for pstree-like output on macOS with additional pid capturing capabilities

A high interaction SSH honeypot

An ssh honeypot with the XZ backdoor. CVE-2024-3094

Shodan Monitoring integration for TheHive.

Scan your Windows computer for known vulnerable or malicious drivers.

Threat hunting command system for agentic IDEs

Virtual Security Operations Center

AI-powered SOC for OT/ICS networks — 6 autonomous agents, MITRE ATT&CK mapping, Suricata/Zeek ingestion, human-in-the-loop response, 330+ tests.…

gundog - guided hunting in Microsoft Defender


This is an incident response playbook we created for the Vercel April 2026 compromise

Spip network sensor written in Go