Blue-Team

  • Gophish – Open-Source Phishing Framework
  • Wazuh – Open-Source security platform (SIEM, FIM, IDS, IR, etc.)
  • Graylog – Open-Source centralized log analyzer
  • DeepBlueCLI – PowerShell Module for Threat Hunting via Windows Event Logs
  • Cuckoo Sandbox – Open-Source automated malware analysis
  • Volatility – Open-Source memory forensics framework
  • Logstalgia – Open-Source web server access visualization tool (Mostly just looks cool)
  • IP-Tracker – Useful site for gathering OSINT information from an IP address
  • BLUESPAWN – Active defense and EDR tool used to detect malicious activity
  • OpenEDR – Open source EDR solution