eBPF-based runtime security.
Outils pour blue team
Defensive monitoring, detection and response.
95 tools indexed
Open-source SIRP for incident response.
Open-source cloud-native protection platform.
Container and IaC vulnerability scanner.
UAC
—Unix-like artifact collector.
Endpoint visibility and DFIR.
Vuls
—Agent-less Linux vulnerability scanner.
Open-source EDR for Windows.
Open-source XDR and SIEM.
Network protocol analyzer.
YARA
—Pattern matching for malware research.
Community YARA rule repository.
Yeti
—Open-source threat-intel platform.
Zeek
—Network analysis framework.
capa
—Identify executable capabilities.
Detect typosquats and phishing domains.
SQL-powered endpoint visibility.
SSH server and client config auditor.
Easy SSH honeypot.
Transparent SSH bastion.
Modular Sysmon configuration repo.
Command-line packet capture.
Test TLS/SSL on any port.