Open-source EDR for Windows.
Outils pour blue team
Defensive monitoring, detection and response.
119 tools indexed
Open-source XDR and SIEM.
Network protocol analyzer.
YARA
—Pattern matching for malware research.
Community YARA rule repository.
Yeti
—Open-source threat-intel platform.
Zeek
—Network analysis framework.
Catch malicious AUR packages before makepkg builds them.
Multi-layer bot detection for browser and server.
capa
—Identify executable capabilities.
Detect typosquats and phishing domains.
Audit Keycloak configuration for security misconfigurations
Detect malicious capabilities in code, binaries and containers.
SQL-powered endpoint visibility.
Lockfile scanner for known-compromised dependencies.
Lightweight firewall that drives the Windows Filtering Platform directly.
SSH server and client config auditor.
Easy SSH honeypot.
Transparent SSH bastion.
Modular Sysmon configuration repo.
Command-line packet capture.
Test TLS/SSL on any port.
witr
—Trace any process, port, container or file back to what started it.