Defensive Security Tools
Browse 12 defensive security tools for protecting systems and networks
12 Defensive Tools
Cortex
StableCortex: a Powerful Observable Analysis and Active Response Engine
velociraptor
StableDigging Deeper....
fibratus
StableAdversary tradecraft detection, protection, and hunting
MISP
StableMISP (core software) - Open Source Threat Intelligence and Sharing Platform
cuckoo
StableCuckoo Sandbox is an automated dynamic malware analysis system
zentral
StableZentral is a high-visibility platform for controlling Apple endpoints in enterprises. It brings great observability to IT and makes tracking & reporting compliance much less manual.
suricata
StableSuricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community.
snort3
StableSnort++
zeek
StableZeek is a powerful network analysis framework that is much different from the typical IDS you may know.
ossec-hids
StableOSSEC is an Open Source Host-based Intrusion Detection System that performs log analysis, file integrity checking, policy monitoring, rootkit detection, real-time alerting and active response.
TheHive
StableTheHive: a Scalable, Open Source and Free Security Incident Response Platform
wazuh
StableWazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.