Join or Log In

Security Operations

Browse 381 cybersecurity tools tagged with "Security Operations" (showing 250)

Logsign Unified SO Platform

Logsign Unified SO

language

Threat Hunting

Logsign Unified SO Platform on SecurityListing: SOAR platform automating threat detection, incident response, and workflows

4.8(3)
Reverse Engineering Challenges

Reverse Engineering Challenges

language

Cyber Range Training

Reverse Engineering Challenges on SecurityListing: A collection of reverse engineering challenges covering a wide range of topics and difficulty levels.

4.8(3)
CBRX

CBRX

language

Digital Forensics and Incident Response

CBRX on SecurityListing: CBRX is a cloud-based platform that automates incident analysis and reporting for cybersecurity teams.

4.8(3)
ProLion CryptoSpike

ProLion CryptoSpike

language

Extended Detection and Response

ProLion CryptoSpike on SecurityListing: Real-time ransomware detection & blocking for storage systems with recovery

4.8(3)
Damn Vulnerable iOS App (DVIA)

Damn Vulnerable iOS

language

Penetration Testing

Damn Vulnerable iOS App (DVIA) on SecurityListing: iOS application for testing iOS penetration testing skills in a legal environment.

4.8(3)
Monkey-Spider

Monkey-Spider

language

Security Operations

Monkey-Spider on SecurityListing: A crawler-based low-interaction client honeypot for exposing website threats.

4.8(3)
Brute Ratel C4

Brute Ratel C4

language

Offensive Security

Brute Ratel C4 on SecurityListing: Advanced command and control tool for red teaming and adversary simulation with extensive features and evasion capabilities.

4.7(2)
PEview

PEview

language

Digital Forensics and Incident Response

PEview on SecurityListing: A PE/COFF file viewer that displays header, section, directory, import table, export table, and resource information within various file types.

4.7(2)
Cipher xMDR

Cipher xMDR

language

Threat Hunting

Cipher xMDR on SecurityListing: AI-driven MDR service providing unified threat detection across IT, OT, cloud

4.7(2)
Anvilogic

Anvilogic

language

Security Information and Event Management

Anvilogic on SecurityListing: Anvilogic is a SIEM platform that streamlines detection engineering, offers cost-effective data management, and enhances threat detection capabilities.

4.7(2)
Nomoreransom

Nomoreransom

language

Digital Forensics and Incident Response

Nomoreransom on SecurityListing: No More Ransom is a collaborative project to combat ransomware attacks by providing decryption tools and prevention advice.

4.7(2)
Cobalt Strike HTTP C2 Redirectors with Apache mod_rewrite

Cobalt Strike HTTP

language

Offensive Security

Cobalt Strike HTTP C2 Redirectors with Apache mod_rewrite on SecurityListing: Using Apache mod_rewrite as a redirector to filter C2 traffic for Cobalt Strike servers.

4.7(2)
DorkSearch

DorkSearch

language

Offensive Security

DorkSearch on SecurityListing: An AI-powered Google Dorking tool that helps create effective search queries to uncover sensitive information on the internet.

4.7(2)
Art of Memory Forensics

Art of Memory

language

Digital Forensics and Incident Response

Art of Memory Forensics on SecurityListing: A comprehensive guide to memory forensics, covering tools, techniques, and procedures for analyzing volatile memory.

4.7(2)
Attack-Defense Online Lab

Attack-Defense Online Lab

language

Vulnerability Assessment

Attack-Defense Online Lab on SecurityListing: Hands-on cybersecurity training and testing platform with 1800+ labs

4.7(2)
AccessData FTK Imager

AccessData FTK Imager

language

Digital Forensics and Incident Response

AccessData FTK Imager on SecurityListing: A digital forensic tool for creating forensic images of computer hard drives and analyzing digital evidence.

4.7(2)
Dropzone AI

Dropzone AI

language

Security Orchestration Automation and Response

Dropzone AI on SecurityListing: Dropzone AI is an autonomous AI agent for SOCs that performs end-to-end investigations of security alerts, integrating with existing cybersecurity tools and data sources.

4.7(2)
ESET Protect MDR Ultimate

ESET Protect MDR

language

Threat Hunting

ESET Protect MDR Ultimate on SecurityListing: A managed security service providing comprehensive endpoint protection, XDR capabilities, and 24/7 managed detection and response across multiple platforms and environments.

4.7(2)
Kali

Kali

language

Vulnerability Assessment

Kali on SecurityListing: Kali Linux is a specialized Linux distribution for cybersecurity professionals, focusing on penetration testing and security auditing.

4.7(2)
Honeyd Tools

Honeyd Tools

language

Security Operations

Honeyd Tools on SecurityListing: A collection of tools that can be used with Honeyd for data analysis or other purposes

4.7(2)
LAMPSecurity Training

LAMPSecurity Training

language

Penetration Testing

LAMPSecurity Training on SecurityListing: A series of vulnerable virtual machine images with documentation to teach Linux, Apache, PHP, MySQL security.

4.7(2)
PentesterLab PRO

PentesterLab PRO

language

Penetration Testing

PentesterLab PRO on SecurityListing: Online platform offering 700+ hands-on web security exercises and training

4.7(2)
Lumifi ShieldVision™

Lumifi ShieldVision™

language

Endpoint Detection and Response

Lumifi ShieldVision™ on SecurityListing: SOAR platform with investigation, automation, and incident mgmt capabilities

4.7(2)
DuskRise Security Dashboard

DuskRise Security Dashboard

language

Security Information and Event Management

DuskRise Security Dashboard on SecurityListing: Security dashboard for remote network visibility and policy enforcement

4.7(2)
LogCraft Detection Engineering

LogCraft Detection Engineering

language

Endpoint Detection and Response

LogCraft Detection Engineering on SecurityListing: Detection-as-code platform for managing detection rules across SIEM/EDR/XDR

4.7(2)
D3 Morpheus AI SOC

D3 Morpheus AI

language

Threat Intelligence Platforms

D3 Morpheus AI SOC on SecurityListing: AI-driven SOC platform for automated alert triage, investigation, and response

4.7(2)
Intrusion Detection Honeypots

Intrusion Detection Honeypots

language

Network Security

Intrusion Detection Honeypots on SecurityListing: A foundational guide for using deception against computer network adversaries using honeypots to detect adversaries before they accomplish their goals.

4.7(2)
Metadefender Cloud

Metadefender Cloud

language

Digital Forensics and Incident Response

Metadefender Cloud on SecurityListing: Advanced threat prevention and detection platform leveraging Deep CDR, Multiscanning, and Sandbox technologies to protect against data breaches and ransom attacks.

4.7(2)
Mandiant Threat Defense

Mandiant Threat Defense

language

Threat Hunting

Mandiant Threat Defense on SecurityListing: Managed threat detection, hunting, and response service by Mandiant experts

4.7(2)
xargs

xargs

language

Offensive Security

xargs on SecurityListing: A command that builds and executes command lines from standard input, allowing for the execution of commands with multiple arguments.

4.7(2)
exif

exif

language

Digital Forensics and Incident Response

exif on SecurityListing: A command-line utility to show and change EXIF information in JPEG files

4.7(2)
Lab of a Penetration Tester: Week of Evading Microsoft ATA

Lab of a

language

Offensive Security

Lab of a Penetration Tester: Week of Evading Microsoft ATA on SecurityListing: A week-long series of articles and talks on evading Microsoft Advanced Threat Analytics (ATA) detection

4.5(3)
Capsicum

Capsicum

language

Container Security

Capsicum on SecurityListing: A security framework for process isolation and sandboxing based on capability-based security principles.

4.5(3)
ParrotSec

ParrotSec

language

Offensive Security

ParrotSec on SecurityListing: Parrot Security OS is a comprehensive, secure, and customizable operating system for cybersecurity professionals, offering over 600+ tools and utilities for red and blue team operations.

4.5(3)
Logz.io Distributed Tracing

Logz.io Distributed Tracing

language

Security Information and Event Management

Logz.io Distributed Tracing on SecurityListing: Distributed tracing platform for monitoring microservices performance

4.5(3)
Logpoint SecOps Platform

Logpoint SecOps Platform

language

Security Information and Event Management

Logpoint SecOps Platform on SecurityListing: Integrated SIEM, SOAR, NDR platform with central fleet management capabilities

4.5(3)
Combatting Incident Responders with Apache mod_rewrite

Combatting Incident Responders

language

Offensive Security

Combatting Incident Responders with Apache mod_rewrite on SecurityListing: Using Apache mod_rewrite rules to rewrite incident responder or security appliance requests to an innocuous website or the target's real website.

4.5(3)
Zenduty

Zenduty

language

Security Orchestration Automation and Response

Zenduty on SecurityListing: Zenduty's platform provides real-time operational health monitoring and incident response orchestration to improve incident response times and build a solid on-call culture.

4.5(3)
Event Log Explorer

Event Log Explorer

language

Security Information and Event Management

Event Log Explorer on SecurityListing: Event Log Explorer is a software solution for viewing, analyzing, and monitoring events recorded in Microsoft Windows event logs, offering advanced features and efficient filtering capabilities.

4.5(3)
BeEF

BeEF

language

Penetration Testing

BeEF on SecurityListing: BeEF is a specialized penetration testing tool for exploiting web browser vulnerabilities to assess security.

4.5(3)
ORDR IQ

ORDR IQ

language

Security Orchestration Automation and Response

ORDR IQ on SecurityListing: Multi-agent AI orchestrator for IT and security workflow automation

4.5(3)
Blockbit XDR

Blockbit XDR

language

Threat Intelligence Platforms

Blockbit XDR on SecurityListing: XDR platform providing detection and response across endpoints, networks, and email

4.5(3)
PoshC2

PoshC2

language

Penetration Testing

PoshC2 on SecurityListing: A proxy aware C2 framework for penetration testing, red teaming, post-exploitation, and lateral movement with modular format and highly configurable payloads.

4.5(3)
Fabric Platform by BlackStork

Fabric Platform by

language

Security Information and Event Management

Fabric Platform by BlackStork on SecurityListing: Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

4.5(1)
Devo Security Data Platform

Devo Security Data

language

Threat Hunting

Devo Security Data Platform on SecurityListing: Security data platform combining SIEM, SOAR, UEBA, and threat hunting

4.5(1)
ExploitDB

ExploitDB

language

Penetration Testing

ExploitDB on SecurityListing: A CVE compliant archive of public exploits and corresponding vulnerable software, and a categorized index of Internet search engine queries designed to uncover sensitive information.

4.5(1)
Quorum Cyber Emergency MDR

Quorum Cyber Emergency

language

Threat Hunting

Quorum Cyber Emergency MDR on SecurityListing: Emergency MDR service for orgs experiencing active cyber incidents or attacks

4.5(1)
FEX Imager™

FEX Imager™

language

Digital Forensics and Incident Response

FEX Imager™ on SecurityListing: Forensic imaging program with full hash authentication and various acquisition options.

4.5(1)
Fraud.com fcase Fraud Orchestration

Fraud.com fcase Fraud

language

API Security

Fraud.com fcase Fraud Orchestration on SecurityListing: Fraud orchestration platform for financial institutions

4.5(1)
Fidelis Security

Fidelis Security

language

Endpoint Detection and Response

Fidelis Security on SecurityListing: XDR platform with NDR, EDR, deception, AD security, and CNAPP capabilities

4.5(1)
Intelligence-Driven Incident Response

Intelligence-Driven Incident Response

language

Digital Forensics and Incident Response

Intelligence-Driven Incident Response on SecurityListing: ENISA Training Resources offers online training material for cybersecurity specialists, covering technical areas such as artefact handling and analysis.

4.5(1)
Gravwell Security Data Platform

Gravwell Security Data

language

Threat Hunting

Gravwell Security Data Platform on SecurityListing: Security data platform for log analysis, metrics, and threat hunting

4.5(1)
Logpoint Director

Logpoint Director

language

Security Information and Event Management

Logpoint Director on SecurityListing: A centralized management console for efficiently operating and monitoring large-scale, multitenant Logpoint SIEM deployments across customers, geographies, and organizational divisions.

4.5(1)
GNU Netcat

GNU Netcat

language

Offensive Security

GNU Netcat on SecurityListing: A featured networking utility for reading and writing data across network connections with advanced capabilities.

4.5(1)
Valkyrie Comodo

Valkyrie Comodo

language

Digital Forensics and Incident Response

Valkyrie Comodo on SecurityListing: Valkyrie is a sophisticated file verdict system that enhances malware detection through behavioral analysis and extensive file feature examination.

4.5(1)
Itential Orchestration

Itential Orchestration

language

API Security

Itential Orchestration on SecurityListing: AI-powered orchestration platform for network & infrastructure automation

4.5(1)
HoneyDrive

HoneyDrive

language

Security Operations

HoneyDrive on SecurityListing: HoneyDrive is the premier honeypot Linux distro with over 10 pre-installed honeypot software packages and numerous analysis tools.

4.5(1)
Harness AI for DevOps

Harness AI for

language

Security Orchestration Automation and Response

Harness AI for DevOps on SecurityListing: AI-powered DevOps platform for CI/CD, testing, security, and cost mgmt.

4.5(1)
Jupyter Notebooks for Threat Hunting

Jupyter Notebooks for

language

Threat Hunting

Jupyter Notebooks for Threat Hunting on SecurityListing: Utilize Jupyter Notebooks to enhance threat hunting capabilities by focusing on different threat categories or stages.

4.5(1)
Detecting Lateral Movement through Tracking Event Logs (Version 2)

Detecting Lateral Movement

language

Digital Forensics and Incident Response

Detecting Lateral Movement through Tracking Event Logs (Version 2) on SecurityListing: A report on detecting lateral movement through tracking event logs, updated to include analysis of various tools and commands used by attackers.

4.5(1)
Logz.io Log Management

Logz.io Log Management

language

Security Information and Event Management

Logz.io Log Management on SecurityListing: Cloud-based log management platform with AI-driven analysis and observability

4.5(1)
GNU Binutils

GNU Binutils

language

Digital Forensics and Incident Response

GNU Binutils on SecurityListing: A collection of binary tools for various purposes including linking, assembling, profiling, and more.

4.5(1)
StrangeBee Cortex

StrangeBee Cortex

language

Security Orchestration Automation and Response

StrangeBee Cortex on SecurityListing: Open-source observable analysis engine and companion tool for TheHive platform

4.5(1)
DFIR CTF: Precision Widgets of North Dakota Intrusion

DFIR CTF: Precision

language

Cyber Range Training

DFIR CTF: Precision Widgets of North Dakota Intrusion on SecurityListing: A cybersecurity challenge where you play the role of an incident response consultant investigating an intrusion at Precision Widgets of North Dakota.

4.5(1)
Covert Red Team Attack Infrastructure

Covert Red Team

language

Offensive Security

Covert Red Team Attack Infrastructure on SecurityListing: Back-end component for red team operations with crucial design considerations.

4.5(1)
How to Write Malleable C2 Profiles for Cobalt Strike

How to Write

language

Offensive Security

How to Write Malleable C2 Profiles for Cobalt Strike on SecurityListing: Learn how to create new Malleable C2 profiles for Cobalt Strike to avoid detection and signatured toolset

4.5(1)
CrowdStrike Falcon Onum

CrowdStrike Falcon Onum

language

Security Information and Event Management

CrowdStrike Falcon Onum on SecurityListing: Data pipeline mgmt for SOC transformation with real-time data processing

4.5(1)
Hunters Pathfinder AI

Hunters Pathfinder AI

language

Threat Hunting

Hunters Pathfinder AI on SecurityListing: AI-driven SOC platform with autonomous threat detection, investigation & response

4.5(1)
Hybrid-Analysis

Hybrid-Analysis

language

Threat Intelligence Platforms

Hybrid-Analysis on SecurityListing: Falcon Sandbox is a malware analysis framework that provides in-depth static and dynamic analysis of files, offering hybrid analysis, behavior indicators, and integrations with various security tools.

4.5(1)
ExoneraTor

ExoneraTor

language

Digital Forensics and Incident Response

ExoneraTor on SecurityListing: Check if an IP address was used as a Tor relay on a given date.

4.5(1)
Bifrozt

Bifrozt

language

Security Operations

Bifrozt on SecurityListing: High interaction honeypot solution for Linux systems with data control and integrity features.

4.5(1)
Enterprise Detection & Response: A Simple Hunting Maturity Model

Enterprise Detection &

language

Threat Hunting

Enterprise Detection & Response: A Simple Hunting Maturity Model on SecurityListing: A simple maturity model for enterprise detection and response

4.5(1)
Aircrack-ng

Aircrack-ng

language

Offensive Security

Aircrack-ng on SecurityListing: A complete suite of tools for assessing WiFi network security with capabilities for monitoring, attacking, testing, and cracking.

4.5(1)
Agentic AI AR2™

Agentic AI AR2™

language

Threat Intelligence Platforms

Agentic AI AR2™ on SecurityListing: Autonomous AI SOC platform for automated threat response and remediation

4.5(1)
Graylog AI-Powered Security & IT Operations

Graylog AI-Powered Security

language

API Security

Graylog AI-Powered Security & IT Operations on SecurityListing: AI-powered SIEM, API security, and log management platform

4.5(1)
Zeronsec Anrita

Zeronsec Anrita

language

Threat Hunting

Zeronsec Anrita on SecurityListing: Real-time threat detection and monitoring platform with SIEM capabilities

4.5(1)
Huntbase Platform

Huntbase Platform

language

Threat Hunting

Huntbase Platform on SecurityListing: Platform for threat investigation with automation and knowledge management

4.5(1)
Logpoint SOAR & Automation

Logpoint SOAR &

language

Security Orchestration Automation and Response

Logpoint SOAR & Automation on SecurityListing: SOAR platform for automated alert triage, investigation, and response

4.5(1)
NSFOCUS Intelligent Security Operations Platform

NSFOCUS Intelligent Security

language

Threat Hunting

NSFOCUS Intelligent Security Operations Platform on SecurityListing: XDR platform with SOAR capabilities for security operations centers

4.5(1)
Panaseer Metrics Measurement

Panaseer Metrics Measurement

language

Risk Assessment

Panaseer Metrics Measurement on SecurityListing: Automates security metrics measurement and reporting for posture management.

4.5(1)
Reversing and Exploiting ARM Binaries: rwthCTF Trafman

Reversing and Exploiting

language

Offensive Security

Reversing and Exploiting ARM Binaries: rwthCTF Trafman on SecurityListing: A tutorial on setting up a virtual ARM environment, reversing ARM binaries, and writing basic exploits for ARM using the trafman challenge of rwthCTF as an example.

4.5(1)
DNS Tunnelling

DNS Tunnelling

language

Offensive Security

DNS Tunnelling on SecurityListing: A technique to encode data within DNS queries for covert communication channels.

4.5(1)
Grafana Cloud Logs

Grafana Cloud Logs

language

Security Information and Event Management

Grafana Cloud Logs on SecurityListing: Managed log aggregation system for storing and querying application logs

4.5(1)
RAD Security RAD FusionAI Core

RAD Security RAD

language

Security Orchestration Automation and Response

RAD Security RAD FusionAI Core on SecurityListing: AI-powered security platform that correlates signals & automates actions

4.5(1)
IonX Verisys FIM

IonX Verisys FIM

language

Security Information and Event Management

IonX Verisys FIM on SecurityListing: File integrity monitoring for Windows, Linux & network devices

4.5(1)
BitLyft AIR®

BitLyft AIR®

language

Security Orchestration Automation and Response

BitLyft AIR® on SecurityListing: Automated incident response platform for Microsoft 365 and identity systems

4.5(1)
Perisai Agentic-AI Hyperautomation

Perisai Agentic-AI Hyperautomation

language

Endpoint Detection and Response

Perisai Agentic-AI Hyperautomation on SecurityListing: AI-driven SOAR platform for automated incident response & threat detection

4.5(1)
Binalyze AIR

Binalyze AIR

language

Digital Forensics and Incident Response

Binalyze AIR on SecurityListing: Modern digital forensics and incident response platform with comprehensive tools.

4.5(1)
cabextract

cabextract

language

Digital Forensics and Incident Response

cabextract on SecurityListing: Free software for extracting Microsoft cabinet files, supporting all features and formats of Microsoft cabinet files and Windows CE installation files.

4.5(1)
MFTECmd

MFTECmd

language

Digital Forensics and Incident Response

MFTECmd on SecurityListing: A command-line tool for managing and analyzing Microsoft Forefront TMG and UAG configurations.

4.5(1)
GHH - Google Hack Honeypot

GHH - Google

language

Security Operations

GHH - Google Hack Honeypot on SecurityListing: GHH is a honeypot tool to defend against search engine hackers using Google as a hacking tool.

4.5(1)
Logsign USO Platform

Logsign USO Platform

language

Security Information and Event Management

Logsign USO Platform on SecurityListing: SIEM platform with compliance reporting for regulatory standards

4.5(1)
Graylog

Graylog

language

Security Information and Event Management

Graylog on SecurityListing: Graylog offers advanced log management and SIEM capabilities to enhance security and compliance across various industries.

4.5(1)
Grep App

Grep App

language

Threat Hunting

Grep App on SecurityListing: Search engine for open-source Git repositories with advanced features like case sensitivity and regular expressions.

4.5(1)
DiskShadow

DiskShadow

language

Offensive Security

DiskShadow on SecurityListing: A tool that exposes the functionality of the Volume Shadow Copy Service (VSS) for creation, enumeration, and manipulation of volume shadow copies, with features for persistence and evasion.

4.5(1)
DVWA - Brute Force (High Level) - Anti-CSRF Tokens

DVWA - Brute

language

Offensive Security

DVWA - Brute Force (High Level) - Anti-CSRF Tokens on SecurityListing: A guide to brute forcing DVWA on the high security level with anti-CSRF tokens

4.5(1)
Alien Vault Ossim

Alien Vault Ossim

language

Vulnerability Assessment

Alien Vault Ossim on SecurityListing: AlienVault OSSIM provides an all-in-one security management solution with asset discovery, vulnerability assessment, and SIEM capabilities.

4.5(1)
Belkasoft Evidence Center

Belkasoft Evidence Center

language

Digital Forensics and Incident Response

Belkasoft Evidence Center on SecurityListing: Comprehensive digital forensics and incident response platform for law enforcement, corporate, and academic institutions.

4.5(1)
Ophcrack

Ophcrack

language

Offensive Security

Ophcrack on SecurityListing: Ophcrack is a free Windows password cracker based on rainbow tables with various features for password recovery.

4.5(1)
Impost

Impost

language

Network Security

Impost on SecurityListing: Impost is a powerful network security auditing tool with honey pot and packet sniffer capabilities.

4.5(1)
KFSensor

KFSensor

language

Penetration Testing

KFSensor on SecurityListing: KFSensor is an advanced Windows honeypot system for detecting hackers and worms by simulating vulnerable system services.

4.5(1)
PhotoRec

PhotoRec

language

Digital Forensics and Incident Response

PhotoRec on SecurityListing: A free, open-source file data recovery software that can recover lost files from hard disks, CD-ROMs, and digital camera memory.

4.5(1)
Lumifi Network Detection & Response (NDR)

Lumifi Network Detection

language

Managed Detection and Response

Lumifi Network Detection & Response (NDR) on SecurityListing: Managed NDR service monitoring network traffic for threats via co-managed model

4.5(1)
Abusing DCOM For Yet Another Lateral Movement Technique

Abusing DCOM For

language

Offensive Security

Abusing DCOM For Yet Another Lateral Movement Technique on SecurityListing: An exploration of a new method to abuse DCOM for remote payload execution and lateral movement.

4.5(1)
LogRythm SIEM

LogRythm SIEM

language

Security Information and Event Management

LogRythm SIEM on SecurityListing: LogRhythm SIEM is a comprehensive security information and event management platform that collects, analyzes, and responds to security events across an organization's IT infrastructure.

4.5(1)
Verisys File Integirty Monitoring

Verisys File Integirty

language

Security Information and Event Management

Verisys File Integirty Monitoring on SecurityListing: A next-generation file integrity monitoring and change detection system

4.5(1)
Abusing the COM Registry Structure: CLSID, LocalServer32, & InprocServer32

Abusing the COM

language

Offensive Security

Abusing the COM Registry Structure: CLSID, LocalServer32, & InprocServer32 on SecurityListing: Abusing the COM Registry Structure: CLSID, LocalServer32, & InprocServer32

4.5(1)
Magnet ACQUIRE

Magnet ACQUIRE

language

Digital Forensics and Incident Response

Magnet ACQUIRE on SecurityListing: Magnet ACQUIRE offers robust data extraction capabilities for digital forensics investigations, supporting a wide range of devices.

4.5(1)
NetWitness Cybersecurity

NetWitness Cybersecurity

language

Endpoint Detection and Response

NetWitness Cybersecurity on SecurityListing: Integrated XDR platform combining NDR, SIEM, EDR, and SOAR capabilities

4.5(1)
Threat.Zone

Threat.Zone

language

Digital Forensics and Incident Response

Threat.Zone on SecurityListing: Holistic malware analysis platform with interactive sandbox, static analyzer, and emulation capabilities.

4.5(1)
State of Security

State of Security

language

Offensive Security

State of Security on SecurityListing: Sysreptor offers a customizable security reporting solution for penetration testers and red teamers.

4.5(1)
detections.ai Detections

detections.ai Detections

language

Threat Intelligence Platforms

detections.ai Detections on SecurityListing: Community platform for sharing and creating detection rules with AI

4.5(1)
Purple Academy by Picus

Purple Academy by

language

Cyber Range Training

Purple Academy by Picus on SecurityListing: Platform offering cybersecurity courses for Red, Blue, and Purple Teamers by Picus.

4.5(1)
BitLyft True MDR

BitLyft True MDR

language

Threat Hunting

BitLyft True MDR on SecurityListing: 24/7 managed detection and response service with US-based SOC analysts

4.5(1)
H3C U-Center Unified O&M Cloud

H3C U-Center Unified

language

Security Information and Event Management

H3C U-Center Unified O&M Cloud on SecurityListing: Unified O&M cloud platform for network and IT infrastructure management

4.5(1)
hackxor

hackxor

language

Cyber Range Training

hackxor on SecurityListing: A platform offering hacking missions to test and enhance skills.

4.5(1)
Quorum Cyber Clarity

Quorum Cyber Clarity

language

Data Loss Prevention

Quorum Cyber Clarity on SecurityListing: Managed security services platform offering MDR, threat detection, and DLP

4.5(1)
Threatpost

Threatpost

language

Offensive Security

Threatpost on SecurityListing: Sysreptor offers a customizable reporting solution for penetration testing and red teaming.

4.5(1)
Userland API Monitoring and Code Injection Detection

Userland API Monitoring

language

Digital Forensics and Incident Response

Userland API Monitoring and Code Injection Detection on SecurityListing: Explores malware interaction with Windows API and methods for detection and prevention.

4.5(1)
Cydarm Platform

Cydarm Platform

language

Security Orchestration Automation and Response

Cydarm Platform on SecurityListing: SOC management platform for incident response and cyber response management

4.5(1)
Shuffler

Shuffler

language

Security Orchestration Automation and Response

Shuffler on SecurityListing: Shuffle Automation provides an open-source platform for security orchestration, automation, and response.

4.5(1)
PAGO Networks PAGO MDR

PAGO Networks PAGO

language

Endpoint Detection and Response

PAGO Networks PAGO MDR on SecurityListing: MDR service with real-time monitoring and threat response capabilities

4.5(1)
Explorer Suite

Explorer Suite

language

Digital Forensics and Incident Response

Explorer Suite on SecurityListing: A freeware suite of tools for PE editing and process viewing, including CFF Explorer and Resource Editor.

4.5(1)
Cobalt Strike's ExternalC2 framework

Cobalt Strike's ExternalC2

language

Penetration Testing

Cobalt Strike's ExternalC2 framework on SecurityListing: A specification/framework for extending default C2 communication channels in Cobalt Strike

4.5(1)
Daylight Threat Detection and Response

Daylight Threat Detection

language

Threat Hunting

Daylight Threat Detection and Response on SecurityListing: AI-powered MDR combining agentic AI with human expertise for threat detection

4.5(1)
HoneyDB

HoneyDB

language

Threat Hunting

HoneyDB on SecurityListing: HoneyDB is a honeypot-based threat intelligence platform that provides real-time insights into attacker behavior and malicious activity on networks.

4.5(1)
Attic MDR

Attic MDR

language

Threat Hunting

Attic MDR on SecurityListing: 24/7 managed detection and response service for Microsoft 365 environments

4.5(1)
Lumifi Managed Detection & Response

Lumifi Managed Detection

language

Endpoint Detection and Response

Lumifi Managed Detection & Response on SecurityListing: 24/7 MDR service with automated threat hunting and response capabilities

4.5(1)
Bait and Switch Honeypot

Bait and Switch

language

Security Operations

Bait and Switch Honeypot on SecurityListing: An active and aggressive honeypot tool for network security.

4.5(1)
Coralogix DataPrime Engine

Coralogix DataPrime Engine

language

Security Information and Event Management

Coralogix DataPrime Engine on SecurityListing: Observability platform with unified query engine for logs, metrics, and traces

4.5(1)
Coro Cybersecurity

Coro Cybersecurity

language

Security Awareness Training

Coro Cybersecurity on SecurityListing: Unified cybersecurity platform with modular security controls and AI engine

4.5(1)
Practical Memory Forensics

Practical Memory Forensics

language

Digital Forensics and Incident Response

Practical Memory Forensics on SecurityListing: A practical guide to enhancing digital investigations with cutting-edge memory forensics techniques, covering fundamental concepts, tools, and techniques for memory forensics.

4.5(1)
Positive Hack Days Fest

Positive Hack Days

language

Cyber Range Training

Positive Hack Days Fest on SecurityListing: International cybersecurity festival for all, who wants to dive into the world of cyber security and have a great time.

4.5(1)
Crowdstrike Charlotte AI

Crowdstrike Charlotte AI

language

Extended Detection and Response

Crowdstrike Charlotte AI on SecurityListing: GenAI assistant that provides faster intelligence for security operations

4.5(1)
Proxmark III

Proxmark III

language

Offensive Security

Proxmark III on SecurityListing: A tool for testing and analyzing RFID and NFC tags, allowing users to read and write data, and perform various attacks and tests.

4.5(1)
Executing Commands and Bypassing AppLocker with PowerShell Diagnostic Scripts

Executing Commands and

language

Offensive Security

Executing Commands and Bypassing AppLocker with PowerShell Diagnostic Scripts on SecurityListing: A blog post about bypassing AppLocker using PowerShell diagnostic scripts

4.5(1)
HIHAT - High Interaction Honeypot Analysis Toolkit

HIHAT - High

language

Threat Intelligence Platforms

HIHAT - High Interaction Honeypot Analysis Toolkit on SecurityListing: A toolkit that transforms PHP applications into web-based high-interaction Honeypots for monitoring and analyzing attacks.

4.5(1)
TechTarget

TechTarget

language

Offensive Security

TechTarget on SecurityListing: Sysreptor provides a customizable security reporting solution for penetration testers and red teamers.

4.5(1)
With Secure Elements Platform

With Secure Elements

language

Exposure Management

With Secure Elements Platform on SecurityListing: WithSecure Elements Cloud is a modular cybersecurity platform that combines AI-powered software and expert services to provide comprehensive protection across endpoints, identities, and cloud environments.

4.5(1)
Belkasoft X Forensic

Belkasoft X Forensic

language

Digital Forensics and Incident Response

Belkasoft X Forensic on SecurityListing: A reliable end-to-end DFIR solution for boosting cyber incident response and forensics capacity.

4.5(1)
DEF CON CTF Archive

DEF CON CTF

language

Container Security

DEF CON CTF Archive on SecurityListing: A live archive of DEF CON CTF challenges, vulnerable by design, for hackers to play safely.

4.5(1)
Daniel Miessler/Unsupervised Learning

Daniel Miessler/Unsupervised Learning

language

Offensive Security

Daniel Miessler/Unsupervised Learning on SecurityListing: Sysreptor offers a customizable reporting solution for offensive security assessments.

4.5(1)
CyberCPR

CyberCPR

language

Digital Forensics and Incident Response

CyberCPR on SecurityListing: Incident response and case management solution for efficient incident response and management.

4.5(1)
LastActivityView

LastActivityView

language

Digital Forensics and Incident Response

LastActivityView on SecurityListing: A tool that collects and displays user activity and system events on a Windows system.

4.5(1)
Contagio Mobile

Contagio Mobile

language

Digital Forensics and Incident Response

Contagio Mobile on SecurityListing: A collection of Android Fakebank and Tizi samples for analyzing spyware on Android devices.

4.5(1)
CrowdStrike Community Tools

CrowdStrike Community Tools

language

Digital Forensics and Incident Response

CrowdStrike Community Tools on SecurityListing: Free tools for the CrowdStrike customer community to support their use of the Falcon platform.

4.5(1)
Dynatrace

Dynatrace

language

Security Information and Event Management

Dynatrace on SecurityListing: Unified observability and security platform with AI-powered analytics

4.5(1)
Hunters Next-Gen SIEM

Hunters Next-Gen SIEM

language

Threat Hunting

Hunters Next-Gen SIEM on SecurityListing: Next-gen SIEM with AI-powered triage, automated investigation & detection

4.5(1)
Mandiant Managed Defense

Mandiant Managed Defense

language

Threat Hunting

Mandiant Managed Defense on SecurityListing: 24/7 managed threat detection, investigation, and response service

4.5(1)
0xf.at Hackits

0xf.at Hackits

language

Cyber Range Training

0xf.at Hackits on SecurityListing: Solve password-riddles on a website without logins or ads.

4.5(1)
Prophet Security Prophet AI Threat Hunter

Prophet Security Prophet

language

Threat Hunting

Prophet Security Prophet AI Threat Hunter on SecurityListing: AI-driven threat hunting platform for SOC alert triage and investigation

4.5(1)
Prophet Security Prophet AI SOC Analyst

Prophet Security Prophet

language

Security Orchestration Automation and Response

Prophet Security Prophet AI SOC Analyst on SecurityListing: AI-powered SOC analyst that automates alert triage and investigation

4.5(1)
IO Wargame

IO Wargame

language

Cyber Range Training

IO Wargame on SecurityListing: Frontpage of the IO wargame with various versions and connection details.

4.5(1)
HoneyView

HoneyView

language

Security Operations

HoneyView on SecurityListing: HoneyView is a tool for analyzing honeyd logfiles graphically and textually.

4.5(1)
OODA-driven SOC Strategy

OODA-driven SOC Strategy

language

Endpoint Detection and Response

OODA-driven SOC Strategy on SecurityListing: Utilizing SIEM, SOAR, and EDR technologies to enhance security operations with a focus on reducing incident response time.

4.5(1)
LaBrea

LaBrea

language

Penetration Testing

LaBrea on SecurityListing: LaBrea is a 'sticky' honeypot and IDS tool that traps malicious actors by creating virtual servers on unused IP addresses.

4.5(1)
Highlighter

Highlighter

language

Threat Hunting

Highlighter on SecurityListing: Highlighter is a FireEye Market app that integrates with FireEye products to provide enhanced cybersecurity capabilities.

4.5(1)
Heimdal Unified Cybersecurity Platform

Heimdal Unified Cybersecurity

language

Endpoint Detection and Response

Heimdal Unified Cybersecurity Platform on SecurityListing: Unified cybersecurity platform with XDR, EDR, PAM, email security, and compliance

4.5(1)
Logsign Unified Security Operations Platform

Logsign Unified Security

language

Threat Intelligence Platforms

Logsign Unified Security Operations Platform on SecurityListing: Unified security operations platform combining SIEM, TI, UEBA, and TDIR

4.5(1)
Graylog Graylog

Graylog Graylog

language

API Security

Graylog Graylog on SecurityListing: AI-powered SIEM, API security, and log management platform

4.3(2)
Operating System Based Redirection with Apache mod_rewrite

Operating System Based

language

Offensive Security

Operating System Based Redirection with Apache mod_rewrite on SecurityListing: Detect users' operating systems and perform redirection with Apache mod_rewrite.

4.3(2)
Prophet Security Prophet AI

Prophet Security Prophet

language

Security Orchestration Automation and Response

Prophet Security Prophet AI on SecurityListing: AI-driven SOC platform for automated alert triage, investigation & response

4.3(2)
CyberSight Demo

CyberSight Demo

language

Security Information and Event Management

CyberSight Demo on SecurityListing: Client-facing dashboard for cybersecurity posture visibility and monitoring

4.3(2)
Golismero

Golismero

language

Threat Hunting

Golismero on SecurityListing: A free and open-source OSINT framework for gathering and analyzing data from various sources

4.3(2)
PTJunior

PTJunior

language

Offensive Security

PTJunior on SecurityListing: AI agent that autonomously discovers, exploits, and documents vulnerabilities.

4.3(2)
D3 Security Smart SOAR

D3 Security Smart

language

Threat Intelligence Platforms

D3 Security Smart SOAR on SecurityListing: SOAR platform for security orchestration, automation, and incident response

4.3(2)
Java Decompiler Online

Java Decompiler Online

language

Offensive Security

Java Decompiler Online on SecurityListing: Online Java decompiler tool with support for modern Java features.

4.3(2)
CyberMaxx MaxxMDR

CyberMaxx MaxxMDR

language

Endpoint Detection and Response

CyberMaxx MaxxMDR on SecurityListing: MDR solution combining threat detection, response, and offensive security

4.3(2)
Gravwell

Gravwell

language

Security Information and Event Management

Gravwell on SecurityListing: Data analytics platform for security operations with search and automation

4.3(2)
Netdude

Netdude

language

Digital Forensics and Incident Response

Netdude on SecurityListing: Network Dump data Displayer and Editor framework for tcpdump trace files manipulation.

4.3(2)
Logsign SAP Security

Logsign SAP Security

language

Security Information and Event Management

Logsign SAP Security on SecurityListing: SIEM platform for SAP security monitoring and threat detection

4.3(2)
Caldera

Caldera

language

Offensive Security

Caldera on SecurityListing: Caldera is a cybersecurity framework by MITRE for automated security assessments and adversary emulation.

4.3(2)
BluSapphire SIEMless™ SIEM

BluSapphire SIEMless™ SIEM

language

Security Information and Event Management

BluSapphire SIEMless™ SIEM on SecurityListing: Distributed SIEM with edge processing, AI filtering, and autonomous response

4.3(2)
Empire Communication Profiles

Empire Communication Profiles

language

Offensive Security

Empire Communication Profiles on SecurityListing: Customize Empire's GET request URIs, user agent, and headers for evading detection and masquerading as other applications.

4.3(2)
Detecting the Elusive - Active Directory Threat Hunting

Detecting the Elusive

language

Threat Hunting

Detecting the Elusive - Active Directory Threat Hunting on SecurityListing: A comprehensive resource for threat hunting in Active Directory environments, covering tracking command-line/PowerShell activity, Kerberoasting detection, auditing attacker activity, and monitoring enterprise command-line activity.

4.3(2)
Logz.io Observability Platform

Logz.io Observability Platform

language

Security Information and Event Management

Logz.io Observability Platform on SecurityListing: Observability platform with log mgmt, metrics, tracing & AI-powered RCA

4.3(2)
Forensic Registry EDitor (FRED)

Forensic Registry EDitor

language

Digital Forensics and Incident Response

Forensic Registry EDitor (FRED) on SecurityListing: A cross-platform registry hive editor for forensic analysis with advanced features like hex viewer and reporting engine.

4.3(2)
JS NICE

JS NICE

language

Digital Forensics and Incident Response

JS NICE on SecurityListing: Statistical renaming, Type inference, and Deobfuscation tool for JavaScript code.

4.3(2)
Echotrail Insights

Echotrail Insights

language

Digital Forensics and Incident Response

Echotrail Insights on SecurityListing: Search engine for Windows executable files and hashes, providing insights into file prevalence, behavior, and security information.

4.3(2)
Binary Ninja

Binary Ninja

language

Digital Forensics and Incident Response

Binary Ninja on SecurityListing: Binary Ninja is an interactive decompiler, disassembler, debugger, and binary analysis platform with a focus on automation and a clean GUI.

4.3(2)
Coro Platform

Coro Platform

language

Data Loss Prevention

Coro Platform on SecurityListing: Unified cybersecurity platform with multiple security modules and single agent

4.3(2)
dfir.org

dfir.org

language

Digital Forensics and Incident Response

dfir.org on SecurityListing: Andrew Case's personal page for research, software projects, and speaking events

4.3(2)
Metasploit Unleashed

Metasploit Unleashed

language

Penetration Testing

Metasploit Unleashed on SecurityListing: Free online ethical hacking course covering penetration testing, web app assessments, exploit development, and security operations.

4.3(2)
Devo Platform

Devo Platform

language

Threat Intelligence Platforms

Devo Platform on SecurityListing: Integrated SIEM, SOAR, and UEBA platform with AI-driven threat detection

4.3(2)
Log Parser Lizard

Log Parser Lizard

language

Security Information and Event Management

Log Parser Lizard on SecurityListing: A dynamic GUI for advanced log analysis, allowing users to execute SQL queries on structured log data.

4.3(2)
Axoflow Platform

Axoflow Platform

language

Security Information and Event Management

Axoflow Platform on SecurityListing: Security data pipeline platform for collecting, curating, and routing logs

4.3(2)
bohops Leveraging INF-SCT Fetch & Execute Techniques For Bypass, Evasion, & Persistence

bohops Leveraging INF-SCT

language

Offensive Security

bohops Leveraging INF-SCT Fetch & Execute Techniques For Bypass, Evasion, & Persistence on SecurityListing: A blog post discussing INF-SCT fetch and execute techniques for bypass, evasion, and persistence

4.3(2)
D3 Smart SOAR

D3 Smart SOAR

language

Threat Hunting

D3 Smart SOAR on SecurityListing: SOAR platform with automated threat hunting and investigation capabilities

4.2(3)
DNIF HYPERCLOUD

DNIF HYPERCLOUD

language

Threat Hunting

DNIF HYPERCLOUD on SecurityListing: SIEM platform with user analytics and automation for threat detection

4.2(3)
Viper

Viper

language

Digital Forensics and Incident Response

Viper on SecurityListing: A binary analysis and management framework for organizing and analyzing malware and exploit samples, and creating plugins.

3.9(2)
Intezer

Intezer

language

Threat Hunting

Intezer on SecurityListing: Intezer is a cloud-based malware analysis platform that detects and classifies malware using genetic code analysis.

3.8(1)
CyberForce

CyberForce

language

Threat Intelligence Platforms

CyberForce|Q COSOC on SecurityListing: 24x7x365 Security Operations Center with threat detection and response services

3.8(1)
ARM Assembly and Shellcode

ARM Assembly and

language

Offensive Security

ARM Assembly and Shellcode on SecurityListing: A comprehensive collection of resources for learning ARM assembly language and shellcode development.

3.8(1)
Fraud.com aiReflex

Fraud.com aiReflex

language

Risk Assessment

Fraud.com aiReflex on SecurityListing: AI-powered fraud detection platform for transaction monitoring and prevention

3.8(1)
Ekasha Incident Management

Ekasha Incident Management

language

Security Orchestration Automation and Response

Ekasha Incident Management on SecurityListing: Incident management platform with automation, workflows, and playbooks

3.8(1)
Granef

Granef

language

Digital Forensics and Incident Response

Granef on SecurityListing: A network forensics toolkit that transforms network traffic data into graph-based representations for interactive analysis and visualization through a web interface.

3.8(1)
Guardpot AI-Powered Cyber Deception

Guardpot AI-Powered Cyber

language

Threat Intelligence Platforms

Guardpot AI-Powered Cyber Deception on SecurityListing: AI-powered deception platform using honeypots to detect & disrupt attacks

3.8(1)
Huntress Managed Security Platform

Huntress Managed Security

language

Endpoint Detection and Response

Huntress Managed Security Platform on SecurityListing: Managed security platform with EDR, ITDR, SIEM, and SAT backed by 24/7 SOC

3.8(1)
Netenrich Adaptive MDR

Netenrich Adaptive MDR

language

Threat Intelligence Platforms

Netenrich Adaptive MDR on SecurityListing: AI-powered MDR service with Google SecOps integration for threat detection

3.8(1)
Graylog AI-Powered Security

Graylog AI-Powered Security

language

API Security

Graylog AI-Powered Security on SecurityListing: AI-powered SIEM, API security, and log management platform

3.8(1)
Hunters SOC Platform

Hunters SOC Platform

language

Threat Hunting

Hunters SOC Platform on SecurityListing: Next-gen SIEM with AI-powered alert investigation and automated response

3.8(1)
Honeybrid

Honeybrid

language

Network Security

Honeybrid on SecurityListing: A hybrid honeypot framework that combines low and high interaction honeypots for network security

3.8(1)
THOR Lite

THOR Lite

language

Digital Forensics and Incident Response

THOR Lite on SecurityListing: A free, fast, and flexible multi-platform IOC and YARA scanner for Windows, Linux, and macOS.

3.8(1)
DBAppSecurity AiLog Big Data Log Management and Analysis Platform

DBAppSecurity AiLog Big

language

Threat Intelligence Platforms

DBAppSecurity AiLog Big Data Log Management and Analysis Platform on SecurityListing: Big data log management platform for collection, parsing, storage & analysis

3.8(1)
ERM Protect Digital Forensics

ERM Protect Digital

language

Digital Forensics and Incident Response

ERM Protect Digital Forensics on SecurityListing: Digital forensics services provided by ERM Protect

3.8(1)
Bastille-Linux

Bastille-Linux

language

Offensive Security

Bastille-Linux on SecurityListing: Bastille-Linux is a system hardening program that proactively configures the system for increased security and educates users about security settings.

3.8(1)
Quorum Cyber Clarity Extend

Quorum Cyber Clarity

language

Threat Hunting

Quorum Cyber Clarity Extend on SecurityListing: Managed detection and response service with 24/7 SOC monitoring

3.8(1)
edb

edb

language

Digital Forensics and Incident Response

edb on SecurityListing: edb is a powerful debugger for Linux binaries, enhancing reverse engineering efforts with a user-friendly interface and extensible plugins.

3.8(1)
Proxmark 3

Proxmark 3

language

Offensive Security

Proxmark 3 on SecurityListing: The Proxmark III is a versatile device for sniffing, reading, and cloning RFID tags with strong community support.

3.8(1)
checkra1n

checkra1n

language

Offensive Security

checkra1n on SecurityListing: Semi-tethered jailbreak for iPhone 5s to iPhone X, running iOS 12.0 and up, using the 'checkm8' bootrom exploit.

3.8(1)
strings

strings

language

Digital Forensics and Incident Response

strings on SecurityListing: A command-line utility for extracting human-readable text from binary files.

3.8(1)
LeakIX

LeakIX

language

Offensive Security

LeakIX on SecurityListing: LeakIX is a red-team search engine that indexes mis-configurations and vulnerabilities online.

3.8(1)
Gradient Cyber Quorum™

Gradient Cyber Quorum™

language

Threat Intelligence Platforms

Gradient Cyber Quorum™ on SecurityListing: Unified threat detection platform for network, endpoint, cloud, and user telemetry

3.8(1)
Loading Alternate Data Stream (ADS) DLL/CPL Binaries to Bypass AppLocker

Loading Alternate Data

language

Offensive Security

Loading Alternate Data Stream (ADS) DLL/CPL Binaries to Bypass AppLocker on SecurityListing: Utilizing Alternate Data Streams (ADS) to bypass AppLocker default policies by loading DLL/CPL binaries.

3.8(1)
Randomized Malleable C2 Profiles Made Easy

Randomized Malleable C2

language

Penetration Testing

Randomized Malleable C2 Profiles Made Easy on SecurityListing: Tool for randomizing Cobalt Strike Malleable C2 profiles to evade static, signature-based detection controls.

3.8(1)
Lumifi Endpoint Detection & Response (EDR/XDR)

Lumifi Endpoint Detection

language

Endpoint Detection and Response

Lumifi Endpoint Detection & Response (EDR/XDR) on SecurityListing: Managed EDR/XDR service with 24/7 SOC monitoring and threat response

3.8(1)
NETRESEC

NETRESEC

language

Digital Forensics and Incident Response

NETRESEC on SecurityListing: Independent software vendor specializing in network security tools and network forensics.

3.8(1)
Workbench

Workbench

language

Digital Forensics and Incident Response

Workbench on SecurityListing: A scalable python framework for security research and development teams.

3.8(1)
Logz.io Infrastructure Monitoring

Logz.io Infrastructure Monitoring

language

Security Information and Event Management

Logz.io Infrastructure Monitoring on SecurityListing: Prometheus-based infrastructure monitoring with unified logs, metrics, and traces

3.8(1)
Catalyst SOAR

Catalyst SOAR

language

Security Orchestration Automation and Response

Catalyst SOAR on SecurityListing: Catalyst is a SOAR system that automates alert handling and incident response processes, adapting to your workflows and being open source.

3.8(1)
Google Search Operators: The Complete List (44 Advanced Operators)

Google Search Operators:

language

Threat Hunting

Google Search Operators: The Complete List (44 Advanced Operators) on SecurityListing: A reference guide listing 44 advanced Google search operators for enhanced search filtering and precision in information gathering activities.

3.8(1)
dc3dd

dc3dd

language

Digital Forensics and Incident Response

dc3dd on SecurityListing: dc3dd is a patch to the GNU dd program, tailored for forensic acquisition with features like hashing and file verification.

3.8(1)
Abusing Exported Functions and Exposed DCOM Interfaces for Pass-Thru Command Execution and Lateral Movement

Abusing Exported Functions

language

Offensive Security

Abusing Exported Functions and Exposed DCOM Interfaces for Pass-Thru Command Execution and Lateral Movement on SecurityListing: A blog post about abusing exported functions and exposed DCOM interfaces for pass-thru command execution and lateral movement

3.8(1)
FastIntercept

FastIntercept

language

Security Orchestration Automation and Response

FastIntercept on SecurityListing: Fast Intercept is a security automation platform that empowers users to maximize their existing security products and automate routine tasks.

3.8(1)
LogRhythm Axon

LogRhythm Axon

language

Security Information and Event Management

LogRhythm Axon on SecurityListing: A cloud-native SIEM platform that provides security analytics, intuitive workflow, and simplified incident response to help security teams defend against cyber threats.

3.8(1)
Huawei SecoManager Security Controller

Huawei SecoManager Security

language

Security Orchestration Automation and Response

Huawei SecoManager Security Controller on SecurityListing: Security controller for policy mgmt, orchestration & log management

3.8(1)
netsniff-ng toolkit

netsniff-ng toolkit

language

Digital Forensics and Incident Response

netsniff-ng toolkit on SecurityListing: netsniff-ng is a free Linux networking toolkit with zero-copy mechanisms for network development, analysis, and auditing.

3.8(1)
GroupSense Ransomware Readiness

GroupSense Ransomware Readiness

language

Digital Risk Protection

GroupSense Ransomware Readiness on SecurityListing: Ransomware preparedness & response service with playbooks and negotiation

3.8(1)
Kojoney

Kojoney

language

Security Operations

Kojoney on SecurityListing: A honeypot for the SSH Service

3.8(1)
extundelete

extundelete

language

Digital Forensics and Incident Response

extundelete on SecurityListing: A utility for recovering deleted files from ext3 or ext4 partitions.

3.8(1)
Foremost

Foremost

language

Digital Forensics and Incident Response

Foremost on SecurityListing: A console program for file recovery through data carving.

3.8(1)
Amazon Detective

Amazon Detective

language

Digital Forensics and Incident Response

Amazon Detective on SecurityListing: A service that analyzes and visualizes security data to investigate potential security issues.

3.8(1)
Charles Web Debugging Proxy

Charles Web Debugging

language

Digital Forensics and Incident Response

Charles Web Debugging Proxy on SecurityListing: An HTTP proxy, monitor, and reverse proxy tool for viewing HTTP and SSL/HTTPS traffic.

3.8(1)
LockBoxx

LockBoxx

language

Offensive Security

LockBoxx on SecurityListing: Introduction to using GScript for Red Teams

3.8(1)
Mature SIEM Environment for SOAR Implementation

Mature SIEM Environment

language

Security Orchestration Automation and Response

Mature SIEM Environment for SOAR Implementation on SecurityListing: A mature SIEM environment is critical for successful SOAR implementation.

3.8(1)
Cribl Edge

Cribl Edge

language

Security Information and Event Management

Cribl Edge on SecurityListing: Vendor-neutral agent for unified telemetry collection across distributed infra

Seceon aiSIEM CGuard 2.0

Seceon aiSIEM CGuard

language

Security Information and Event Management

Seceon aiSIEM CGuard 2.0 on SecurityListing: AI-powered SIEM for cloud security across Microsoft 365, Azure, AWS, and GCP

Radiant Agentic AI

Radiant Agentic AI

language

Threat Hunting

Radiant Agentic AI on SecurityListing: AI-powered SOC platform for automated alert triage, incident response & logging

Trust Direction: An Enabler for Active Directory Enumeration and Trust Exploitation

Trust Direction: An

language

Offensive Security

Trust Direction: An Enabler for Active Directory Enumeration and Trust Exploitation on SecurityListing: A blog post explaining the concept of Active Directory Trusts and their enumeration and exploitation

SecGame #1: Sauron

SecGame #1: Sauron

language

Penetration Testing

SecGame #1: Sauron on SecurityListing: A Linux-based environment for penetration testing and vulnerability exploitation

RTIR

RTIR

language

Digital Forensics and Incident Response

RTIR on SecurityListing: Request Tracker for Incident Response (RTIR) is a tool for incident response teams to manage incident reports, correlate data, and facilitate communication.

Reveald ManagedDetection and Response

Reveald ManagedDetection and

language

Threat Hunting

Reveald ManagedDetection and Response on SecurityListing: MDR service for CrowdStrike, Microsoft, and Trellix endpoints with 24/7 monitoring

Preparing for Red Team at PRCCDC 2015

Preparing for Red

language

Penetration Testing

Preparing for Red Team at PRCCDC 2015 on SecurityListing: Preparation process for participating in the Pacific Rim CCDC 2015.

DDE attack with PowerShell Empire

DDE attack with

language

Offensive Security

DDE attack with PowerShell Empire on SecurityListing: Weaponize Word documents with PowerShell Empire using the Microsoft DDE exploit.

StrangeBee TheHive

StrangeBee TheHive

language

Security Orchestration Automation and Response

StrangeBee TheHive on SecurityListing: Security case management platform for SOCs, CERTs, and CSIRTs

xxd

xxd

language

Digital Forensics and Incident Response

xxd on SecurityListing: A command-line tool for creating hex dumps, converting between binary and human-readable representations, and patching binary files.

WindowsSCOPE

WindowsSCOPE

language

Digital Forensics and Incident Response

WindowsSCOPE on SecurityListing: A comprehensive incident response tool for Windows computers, providing advanced memory forensics and access to locked systems.

The Security Ledger

The Security Ledger

language

Offensive Security

The Security Ledger on SecurityListing: Sysreptor offers a customizable reporting solution for pentesters and red teamers to enhance security documentation.

Webhacking.kr

Webhacking.kr

language

Vulnerability Assessment

Webhacking.kr on SecurityListing: Korean cyber-security challenge platform for exploiting and defending web application vulnerabilities.

Sumo Logic Application Modernization

Sumo Logic Application

language

Security Information and Event Management

Sumo Logic Application Modernization on SecurityListing: Cloud-based log analytics & monitoring platform for app modernization