Top-rated tools trusted by the cybersecurity community
Apache-2.0 local, read-only AI server investigation CLI for Linux and Windows hosts. It collects host evidence across auth logs, accounts, processes, network, persistence, services, web logs, Java clues, recent files, packages, containers, and history, then writes evidence.jsonl, commands.log, report.json, and report.md for first-pass incident triage without remediation authority.
A tool for importing vulnerability scanner data and then allowing you to manipulate the risks, affected hosts, and create risk ordered output.
An ADCS honeypot to catch attackers in your internal network.
SCCMHunter is a post-ex tool built to streamline identifying, profiling, and attacking SCCM related assets in an Active Directory domain.
Find tools organized by testing methodology and use case
Videos, podcasts, and articles about penetration testing