
Quantickle
A graphing toolkit for threat research - and other things

A graphing toolkit for threat research - and other things

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata…

Build and manage Trivy vulnerability databases by aggregating security advisories from NVD, Red Hat, Debian, and more. A CLI tool and library for…

CLI for generating, analyzing, merging, diffing, validating, signing, and converting CycloneDX SBOMs across JSON, XML, Protobuf, CSV, and SPDX…

Cross-platform system DNS client for uBlockDNS with device wide ad and tracker blocking and real time filter updates.

Windows Process Lockdown Tool using Job Objects

Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)

Like curl, but it gets past Anubis and Cloudflare bot-walls.

ATHF is a framework for agentic threat hunting - building systems that can remember, learn, and act with increasing autonomy.

Open-source collaborative note-taking platform for cybersecurity and CTI teams. IOC auto-extraction, STIX 2.1 export, real-time editing, RBAC,…

Automated OSINT framework for reconnaissance, data harvesting, and threat intelligence gathering with modular crawlers, scanners, and extraction…

Downloads and aggregates CVSS, EPSS, and CISA known exploited vulnerability data into unified JSON/CSV files and a SQLite database. Enriches…

Distributed alerting for the masses!

The Sigma command line interface based on pySigma

Open-source security orchestration, automation, and response (SOAR) platform with a visual workflow editor, prebuilt security app integrations, and…

Create fake certs for binaries using windows binaries and the power of bat files

Manages the core lifecycle of Qubes OS domains via a Python admin API, handling secure compartmentalization with Xen and exposing an event system for…

A framework for PowerShell and PoshSec scripts for network management, security, and maintenance.