Malicious-traffic detection system.
Tools for blue team
Defensive monitoring, detection and response.
110 tools indexed
Open-source security data lake on AWS.
Nmap
—The classic network mapper and port scanner.
Open adversarial exposure validation.
Open cyber threat intelligence platform.
Decentralized, modular honeypot.
Evaluate IAM permissions in AWS.
C++ library for packet capture and crafting.
Active Directory health audit.
Open-source AI agent firewall for MCP and agent egress.
BloodHound reporting for defenders.
Live PowerShell disk forensics.
Multi-cloud security posture.
Endgame's ATT&CK simulation framework.
Self-hosted open-source WAF.
Python packet manipulation library.
Multi-cloud security auditing.
Open SOC distribution.
Remote SSH for the edge.
Open-source SOAR.
Vendor-agnostic detection rules.
Local-first threat hunting over logs you already have
Cross-platform network traffic monitor with threat detection
Open-source IPS, next generation.