cyberstars
cyberstars / purpose / blue-team

Tools for blue team

Defensive monitoring, detection and response.

95 tools indexed

Evaluate IAM permissions in AWS.

AnalyzeReconCloud
PythonAGPL-3.0

C++ library for packet capture and crafting.

InterceptAnalyzeNetworks
C++Unlicense

Active Directory health audit.

ScanHardenActive Directory
C#Proprietary

BloodHound reporting for defenders.

AnalyzeAutomateActive Directory
PythonGPL-3.0

Live PowerShell disk forensics.

AnalyzeEndpoints
C#MIT

Multi-cloud security posture.

ScanHardenCloud
PythonApache-2.0

Endgame's ATT&CK simulation framework.

AutomateExploitEndpoints
PythonCustom

Self-hosted open-source WAF.

MonitorHardenWeb apps
GoApache-2.0

Python packet manipulation library.

InterceptAnalyzeNetworksWireless
PythonGPL-2.0

Multi-cloud security auditing.

ScanHardenCloud
PythonGPL-2.0

Open SOC distribution.

MonitorAnalyzeNetworksEndpoints
ShellCustom

Remote SSH for the edge.

HardenMonitorNetworksEndpoints
TypeScriptApache-2.0

Open-source SOAR.

AutomateMonitorNetworksEndpoints
JavaScriptAGPL-3.0

Vendor-agnostic detection rules.

MonitorAnalyzeEndpointsNetworks
PythonDRL-1.1

Open-source IPS, next generation.

MonitorInterceptNetworks
C++GPL-2.0

CVE intelligence and exploit lookup CLI.

ReconAnalyzeNetworksEndpoints
PythonMIT

Build vulnerable instrumented labs.

AutomateExploitEndpointsNetworks
PythonApache-2.0

High-performance IDS / IPS.

MonitorInterceptNetworks
CGPL-2.0

All-in-one honeypot platform.

MonitorAnalyzeNetworksEndpoints
PythonGPL-3.0

Wireshark on the command line.

InterceptAnalyzeNetworks
CGPL-2.0

Zero-trust access for SSH, K8s and more.

HardenMonitorNetworksCloud
GoAGPL-3.0