
bulk_extractor
This is the development tree. Production downloads are at:

This is the development tree. Production downloads are at:

Machine Learning based Intrusion Detection Systems are difficult to evaluate due to a shortage of datasets representing accurately network traffic…


This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned…

a low(zero) cost threat intelligence&response tool against phishing domains

A tool to retrieve malware directly from the source for security researchers.

Malware analysis from the domain goxlr.net

Bro plugin to check if certificates are affected by CVE-2017-15361

GreyEnergy Mini Module Malware Analysis (Turkish)

Real-time, container-based file scanning at enterprise scale

Collect, parse, normalize, aggregate, store, query, and route security telemetry data at scale using pipeline-based dataflows for threat detection…

Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS

Knowledge base workflow management for YARA rules and C2 artifacts (IP, DNS, SSL) (ALPHA STATE AT THE MOMENT)

goLoL is a Windows host scanner with dual support for LOLBAS binaries and LOLDrivers. It lists LOLBAS techniques runnable at your current privilege…

Decentralized Autonomous Research Collective. Lean 4-verified, IPFS-backed, agent-native. Production paper: arXiv:2604.19792. Live at p2pclaw.com.

A simple and scalable Android bot emulation framework, as presented at Black Hat Europe 2021's Arsenal, as well as atHack 2021's Arsenal

Detects attempts at exploitation of CVE-2022-3602, a remote code execution vulnerability in OpenSSL v 3.0.0 through v.3.0.6

eBPF-powered network observability for Kubernetes. Indexes L4/L7 traffic with full K8s context, decrypts TLS without keys. Queryable by AI agents via…