High-speed forensic feature extractor.
Tools for endpoints
Workstations, servers and EDR-managed devices.
142 tools indexed
Encrypted C2 over DNS.
Capture SSL/TLS plaintext with eBPF.
GPU-accelerated password recovery.
Linux privesc enumeration script.
macOS and iOS forensic artifact parser
Secure in-memory handling of secrets for Rust
Windows credential extraction.
Turn x86/x64 shellcode into polymorphic position-independent VMs.
Generate NTLMv2 hash theft files.
SQL-powered endpoint visibility.
pspy
—Spy on Linux processes without root.
Mimikatz in pure Python.
Radare2 plug-in for Frida.
rage
—Modern file encryption with age.
Lightweight firewall that drives the Windows Filtering Platform directly.
SSH server and client config auditor.
Easy SSH honeypot.
Transparent SSH bastion.
Modular Sysmon configuration repo.
witr
—Trace any process, port, container or file back to what started it.
Embedded TLS / DTLS library.