macOS Lockdown (mOSL) Bash script to audit and fix macOS Mojave (10.14.x) security settings Warnings Always run the latest...
Defense
Tyton Kernel-Mode Rootkit Hunter Detected Attacks Hidden Modules Syscall Table Hooking Network Protocol Hooking Netfilter Hooking Zeroed...
What is Logging Made Easy (LME)? Logging Made Easy is a self-install tutorial for small organizations to...
cloudtracker CloudTracker reviews CloudTrail logs to identify the API calls made by an actor and compares this with...
Alerting and Detection Strategies Framework This GitHub project provides the necessary building blocks for adopting this framework...
Hardentools is a collection of simple utilities designed to disable a number of “features” exposed by operating...
Real-time detection of high-risk attacks leveraging Kerberos and SMB This is a real-time detection tool for detecting...
OSSEC OSSEC is a full platform to monitor and control your systems. It mixes together all the...
winchecksec performs static detection of common Windows security features. Developed to satisfy our analysis and research needs, it...
StreamAlert is a serverless, real-time data analysis framework which empowers you to ingest, analyze, and alert on...
What is Naxsi? NAXSI means Nginx Anti XSS & SQL Injection. Technically, it is a third party nginx module, available as a...
Linux Malware Detect (LMD) is a malware scanner for Linux released under the GNU GPLv2 license, that...
Secant Secant is a security cloud assessment framework that is used to check the security characteristics of...
os-hardening This cookbook provides numerous security-related configurations, providing all-around base protection. It configures: Configures package management e.g....
WHIDS Very flexible Host IDS designed for Windows. We are making use of a previously developed rule...