KodaiFumoto's Stars
seekbytes/IPA
GUI analyzer for deep-diving into PDF files. Detect malicious payloads, understand object relationships, and extract key information for threat analysis.
aquasecurity/trivy
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
IBM/CBOM
Cryptography Bill of Materials
BushidoUK/Ransomware-Tool-Matrix
A resource containing all the tools each ransomware gangs uses
center-for-threat-informed-defense/defending-ot-with-attack
Defending OT with ATT&CK provides a customized threat collection tailored to the attack surface and threat model of operational technology environments.
WebAppPentestGuidelines/TriageGuidelines
脆弱性トリアージガイドライン作成の手引き
sandialabs/DERTranslate
cisagov/ACID
Admyral-Security/admyral
🤖 Admyral enables continuous control monitoring for any custom control
microsoft/ics-forensics-tools
Microsoft ICSpector (ICS Forensics Tools framework) is an open-source forensics framework that enables the analysis of Industrial PLC metadata and project files.
mitre/emb3d
cisagov/vulnrichment
A repo to conduct vulnerability enrichment.
Lissy93/web-check
🕵️♂️ All-in-one OSINT tool for analysing any website
ClaudiuGeorgiu/RiskInDroid
A tool for quantitative risk analysis of Android applications based on machine learning techniques
MobSF/Mobile-Security-Framework-MobSF
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
nsacyber/ELITEWOLF
OT security monitoring #nsacyber
protectai/llm-guard
The Security Toolkit for LLM Interactions
OpenInterpreter/open-interpreter
A natural language interface for computers
center-for-threat-informed-defense/tram
TRAM is an open-source platform designed to advance research into automating the mapping of cyber threat intelligence reports to MITRE ATT&CK®.
OpenCTI-Platform/opencti
Open Cyber Threat Intelligence Platform
DISARMFoundation/DISARMframeworks
Master copies of the DISARM frameworks, with generated files to help you explore the data
TactiKoolSec/MFT-Detect-Response
Common framework for designing a detection and response framework for the most common MFT solutions
center-for-threat-informed-defense/attack-sync
ATT&CK Sync is a Center for Threat-Informed Defense project that aims to improve the ability for organizations to consume MITRE ATT&CK® version updates into their internal systems and processes.
mitre/caldera-ot
MITRE Caldera™ for OT Plugins & Capabilities
claroty/opcua_network_fuzzer
docker/docker-bench-security
The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.
opcr-io/policy
CLI for building OPA policies into OCI images
grafeas/grafeas
Artifact Metadata API
kubewarden/kubewarden-controller
Manage admission policies in your Kubernetes cluster with ease
hexa-org/policy-orchestrator
Hexa Policy Orchestrator enables you to manage all of your access policies consistently across software providers.