
loki
Horizontally scalable, multi-tenant log aggregation system that indexes labels instead of full text, integrates with Grafana, and is optimized for…

Horizontally scalable, multi-tenant log aggregation system that indexes labels instead of full text, integrates with Grafana, and is optimized for…

Very fast DDoS sensor with sFlow/Netflow/IPFIX/SPAN support

An aggressor script that tracks operational changes made during a red team engagement. Gives you a full audit trail of what was changed and what…

Distributed alerting for the masses!

Easy automated vulnerability scanning, reporting and analysis

The Sigma command line interface based on pySigma

Zeek support for Community ID flow hashing.

Downloads and aggregates CVSS, EPSS, and CISA known exploited vulnerability data into unified JSON/CSV files and a SQLite database. Enriches…

An open standard for hashing network flows into identifiers, a.k.a "Community IDs".

Terminal UI for browsing and replaying AWS WAF v2 logs from CloudWatch, S3, and the sampling API, with YAML filtering, auth detection, and…

Collection of Python and Perl scripts for digital forensics, incident response, and network analysis, including hash signature tooling and packet…