psad – Intrusion Detection with iptables Logs Introduction The Port Scan Attack Detector psad is a lightweight system daemon...
Defense
CIS Docker Benchmark – InSpec Profile This InSpec compliance profile implements the CIS Docker 1.13.0 Benchmark in an automated way to...
nginx-hardening This cookbook provides a secure overlay for nginx configuration. Platform Debian 7, 8 Ubuntu 14.04, 16.04...
DejaVU – Open Source Deception Framework DejaVu is an open-source deception framework which can be used to...
aws-security-automation Collection of scripts and resources for DevSecOps, Security Automation, and Automated Incident Response Remediation IAM Access...
bgp-monitor bgp-monitor is a prototype system designed to monitor specific AS’s and their associated routes. Implementation Uses...
Sniffles Sniffles is a tool for creating packet captures that will test IDS that use fixed patterns...
GDPatrol A Serverless Security Orchestration Automation and Response (SOAR) Framework for AWS GuardDuty. The GDPatrol Lambda function...
sheepl Sheepl: Creating realistic user behaviour for supporting tradecraft development within lab environments Introduction There are lots...
HELK [Alpha] HELK is an ELK (Elasticsearch, Logstash & Kibana) stack with advanced hunting analytic capabilities provided...
DARKSURGEON is a Windows packer project to empower incident response, digital forensics, malware analysis, and network defense....
django-admin-honeypot django-admin-honeypot is a fake Django admin login screen to log and notify admins of attempted unauthorized access....
PHP malware finder does it is very best to detect obfuscated/dodgy code as well as files using...
Invoke-Apex Invoke-Apex is a PowerShell-based toolkit consisting of a collection of techniques and tradecraft for use in red...
nShield An Easy and Simple Anti-DDoS solution for VPS, Dedicated Servers and IoT devices based on iptables...