Tools
Security tools 36 tools
36 tools
macOS (& ios) Artifact Parsing Tool
Superagent protects your AI applications against prompt injections, data leaks, and harmful outputs. Embed safety directly into your app and prove compliance to your customers.
Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices, formerly called DMD.
Credential isolation proxy for AI agents. Injects secrets at the network boundary with domain restrictions, agent authentication, and audit logging. No SDK required — works as a transparent HTTP proxy or MCP server.
A network intrusion detection tool
Fast customisable cross-platform suspicious file finder. Supports md5/sha1/sha256 hashs, litteral/wildcard strings, regular expressions and YARA rules. Can easily be packed to be deployed on any windows / linux host.
Light-weight HTTP/HTTPS proxy daemon.
The pattern matching swiss knife
AI-safe secrets manager with MCP integration. Run commands with credentials injected as environment variables - AI agents never see plaintext secrets. Features output sanitization, AES-256-GCM encryption, and Argon2id key derivation.
CLI for managing secrets
Easy to use cryptographic framework for data protection: secure messaging with forward secrecy and secure data storage. Has unified APIs across 14 platforms.
Open Source Cloud Native Application Protection Platform (CNAPP)
GRR Rapid Response: remote live forensics for incident response
Acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container. This makes Acquire an excellent tool to, among others, speedup the process of digital forensic triage. It uses Dissect to gather that information from the raw disk, if possible.
The most advanced free and open-source browser fingerprinting library
Clone this repo to build Frida
Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from various disk and file formats, developed by Fox-IT (part of NCC Group).
A cloud native data pipeline and transformation toolkit for security teams.
Web-based dashboard for Fail2Ban log filtering and blocklist control
Proxy over your Docker socket to restrict which requests it accepts
easy-rsa - Simple shell based CA utility
Security-focused Linux distribution with 140+ pre-installed forensic and offensive security tools, custom hardened kernel, and integrated incident response workflows.
unlock: :unlock: Find secrets and passwords in container images and file systems :unlock: :unlock
7 SQL tools (validate, format, parse, lint, security scan, metadata extraction, full analysis) over Streamable HTTP. Public remote server at mcp.gosqlx.dev - no install needed. 1.25M+ ops/sec, 6 SQL dialects.
A repository of all SIGMA rules converted to KQL that runs on a weekly schedule to update the repository and align with the up to date version of the SIGMA rules repository.
Bloodhound Reporting for Blue and Purple Teams
Self-evolving MCP server that generates and improves its own tools at runtime. Built on FastMCP, Janee uses LLM-driven tool generation to dynamically create, test, and refine MCP tools from natural language descriptions — enabling AI agents to extend their own capabilities on the fly.
Keep secrets out of emails or chat logs, share them using secure links with passphrase and expiration dates. `MIT` `Python`
Keep your sensitive information out of chat logs, emails, and more with encrypted secrets.
Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust.
In-depth attack surface mapping and asset discovery
High-speed log analysis and forensics tool with multi-format parsing, pattern matching, timeline reconstruction and anomaly detection for incident response.
Simple self hosted password generator
A fully customizable, Windows-based security distribution for malware analysis, incident response, penetration testing.