Stars
Docker image for using the guacenc utility
A next-generation crawling and spidering framework.
A curated list of awesome embedded programming.
Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.
AssemblyLine 4: File triage and malware analysis
A tool that automates regex generation for the x86 and x86-64 instruction sets
MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs
the transparent ransomware claim tracker 🥷🏼🧅🖥️
A curated list of Awesome Threat Intelligence resources
Portable Executable reversing tool with a friendly GUI
Best practices for segmentation of the corporate network of any company
The Sleuth Kit® (TSK) is a library and collection of command line digital forensics tools that allow you to investigate volume and file system data. The library can be incorporated into larger digi…
❄️ PcapXray - A Network Forensics Tool - To visualize a Packet Capture offline as a Network Diagram including device identification, highlight important communication and file extraction
Rapidly Search and Hunt through Windows Forensic Artefacts
Moneta is a live usermode memory analysis tool for Windows with the capability to detect malware IOCs
Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).
You didn't think I'd go and leave the blue team out, right?
Collection of malware source code for a variety of platforms in an array of different programming languages.
ClamAV - Documentation is here: https://docs.clamav.net
The Azure Active Directory Incident Response PowerShell module provides a number of tools, developed by the Azure Active Directory Product Group in conjunction with the Microsoft Detection and Resp…
Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, Th…
Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernet…