
scripts
Collection of Python and Perl scripts for digital forensics, incident response, and network analysis, including hash signature tooling and packet…

Collection of Python and Perl scripts for digital forensics, incident response, and network analysis, including hash signature tooling and packet…

Terminal UI for browsing and replaying AWS WAF v2 logs from CloudWatch, S3, and the sampling API, with YAML filtering, auth detection, and…

Horizontally scalable, multi-tenant log aggregation system that indexes labels instead of full text, integrates with Grafana, and is optimized for…

Persists BurpSuite proxy history, Repeater requests, and Intruder payloads across sessions; exports and imports .log files for web pentesting context.

pySigma OpenSearch backend

The Sigma command line interface based on pySigma

Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)

Burp proxy text log converter to CSV and SQLLite

A really simple Nessus results library

Advanced Burp Suite Logging Extension

An open standard for hashing network flows into identifiers, a.k.a "Community IDs".

Splunk app for integrating and analyzing Corelight network detection data, enabling real-time threat hunting and incident response.

Zeek support for Community ID flow hashing.

A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for further…

Chronicle parser for CORELIGHT and related information.

Corelight or Zeek Elastic Common Schema Templates

Easy automated vulnerability scanning, reporting and analysis

An aggressor script that tracks operational changes made during a red team engagement. Gives you a full audit trail of what was changed and what…