cyberstars
cyberstars / target / endpoint

Tools for endpoints

Workstations, servers and EDR-managed devices.

122 tools indexed

Endpoint visibility and DFIR.

MonitorAnalyzeEndpoints
GoAGPL-3.0

Memory forensics framework.

AnalyzeEndpointsBinaries
PythonVSL

Vuls

Agent-less Linux vulnerability scanner.

ScanEndpointsCloud
GoGPL-3.0

Open-source EDR for Windows.

MonitorAnalyzeEndpoints
GoGPL-3.0

Open-source XDR and SIEM.

MonitorScanEndpointsCloud
CAGPL-3.0

Windows privilege-escalation enumerator.

ReconScanEndpointsActive Directory
C#MIT

YARA

Pattern matching for malware research.

AnalyzeMonitorBinariesEndpoints
CBSD-3-Clause

Community YARA rule repository.

MonitorAnalyzeBinariesEndpoints
YARAGPL-2.0

Yeti

Open-source threat-intel platform.

AutomateAnalyzeNetworksEndpoints
PythonApache-2.0

High-speed forensic feature extractor.

AnalyzeEndpointsBinaries
C++MIT

Encrypted C2 over DNS.

ExploitAutomateNetworksEndpoints
CMIT

Capture SSL/TLS plaintext with eBPF.

InterceptAnalyzeNetworksEndpoints
CApache-2.0

GPU-accelerated password recovery.

CrackEndpointsActive Directory
CMIT

Linux privesc enumeration script.

ReconScanEndpoints
PythonCustom

Windows credential extraction.

ExploitAnalyzeEndpointsActive Directory
CCC-BY-4.0

Generate NTLMv2 hash theft files.

InterceptExploitActive DirectoryEndpoints
PythonMIT

SQL-powered endpoint visibility.

MonitorAnalyzeEndpoints
C++Apache-2.0

pspy

Spy on Linux processes without root.

MonitorReconEndpoints
GoMIT

Mimikatz in pure Python.

AnalyzeCrackActive DirectoryEndpoints
PythonMIT

Radare2 plug-in for Frida.

AnalyzeInterceptMobile appsBinaries
CMIT

rage

Modern file encryption with age.

HardenEndpointsSource code
RustMIT

SSH server and client config auditor.

ScanHardenNetworksEndpoints
PythonMIT

Easy SSH honeypot.

MonitorNetworksEndpoints
GoMIT

Transparent SSH bastion.

HardenMonitorNetworksEndpoints
GoApache-2.0