<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <title>Track Awesome Cybersecurity Blueteam Updates Daily</title>
  <id>https://www.trackawesomelist.com/fabacab/awesome-cybersecurity-blueteam/feed.xml</id>
  <updated>2024-07-07T08:56:29.223Z</updated>
  <link rel="self" type="application/atom+xml" href="https://www.trackawesomelist.com/fabacab/awesome-cybersecurity-blueteam/feed.xml"/>
  <link rel="alternate" type="application/json" href="https://www.trackawesomelist.com/fabacab/awesome-cybersecurity-blueteam/feed.json"/>
  <link rel="alternate" type="text/html" href="https://www.trackawesomelist.com/fabacab/awesome-cybersecurity-blueteam/"/>
  <generator uri="https://github.com/bcomnes/jsonfeed-to-atom#readme" version="1.2.2">jsonfeed-to-atom</generator>
  <icon>https://www.trackawesomelist.com/favicon.ico</icon>
  <logo>https://www.trackawesomelist.com/icon.png</logo>
  <subtitle>:computer:🛡️ A curated collection of awesome resources, tools, and other shiny things for cybersecurity blue teams.</subtitle>
  <entry>
    <id>https://www.trackawesomelist.com/2024/07/07/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 07, 2024</title>
    <updated>2024-07-07T08:56:29.223Z</updated>
    <published>2024-07-07T08:56:29.072Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention</p>
</h3>
<ul>
<li><a href="https://github.com/apple/password-manager-resources" rel="noopener noreferrer">Password Manager Resources (⭐4.1k)</a> - Collaborative, crowd-sourced data and code to make password management better.</li>
</ul>
<h3><p>Operating System distributions / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://securityonionsolutions.com/" rel="noopener noreferrer">Security Onion</a> - Free and open source GNU/Linux distribution for intrusion detection, enterprise security monitoring, and log management.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2024/07/07/"/>
    <summary>2 awesome projects updated on Jul 07, 2024</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2023/11/10/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Nov 10, 2023</title>
    <updated>2023-11-10T01:23:59.419Z</updated>
    <published>2023-11-10T01:23:59.419Z</published>
    <content type="html"><![CDATA[<h3><p>Security monitoring / Threat hunting</p>
</h3>
<ul>
<li><a href="https://www.cisa.gov/resources-tools/services/logging-made-easy" rel="noopener noreferrer">Logging Made Easy (LME)</a> - Free and open logging and protective monitoring solution serving.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2023/11/10/"/>
    <summary>1 awesome projects updated on Nov 10, 2023</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2023/08/18/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 18, 2023</title>
    <updated>2023-08-18T01:18:56.516Z</updated>
    <published>2023-08-18T01:18:56.516Z</published>
    <content type="html"><![CDATA[<h3><p>Preparedness training and wargaming / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://stratus-red-team.cloud/" rel="noopener noreferrer">Stratus Red Team</a> - Emulate offensive attack techniques in a granular and self-contained manner against a cloud environment; think "Atomic Red Team™ for the cloud."</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2023/08/18/"/>
    <summary>1 awesome projects updated on Aug 18, 2023</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2023/07/19/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 19, 2023</title>
    <updated>2023-07-19T08:35:42.834Z</updated>
    <published>2023-07-19T08:35:42.774Z</published>
    <content type="html"><![CDATA[<h3><p>Incident Response tools / Evidence collection</p>
</h3>
<ul>
<li><a href="https://github.com/cisagov/untitledgoosetool" rel="noopener noreferrer">Untitled Goose Tool (⭐899)</a> - Assists incident response teams by exporting cloud artifacts from Azure/AzureAD/M365 environments in order to run a full investigation despite lacking in logs ingested by a SIEM.</li>
</ul>
<h3><p>Preparedness training and wargaming / Post-engagement analysis and reporting</p>
</h3>
<ul>
<li><a href="https://cisagov.github.io/RedEye/" rel="noopener noreferrer">RedEye</a> - Analytic tool to assist both Red and Blue teams with visualizing and reporting command and control activities, replay and demonstrate attack paths, and more clearly communicate remediation recommendations to stakeholders.</li>
</ul>
<h3><p>Security monitoring / Post-engagement analysis and reporting</p>
</h3>
<ul>
<li><a href="https://docs.crossfeed.cyber.dhs.gov/" rel="noopener noreferrer">Crossfeed</a> - Continuously enumerates and monitors an organization’s public-facing attack surface in order to discover assets and flag potential security flaws.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2023/07/19/"/>
    <summary>3 awesome projects updated on Jul 19, 2023</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2023/03/17/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 17, 2023</title>
    <updated>2023-03-17T01:49:07.594Z</updated>
    <published>2023-03-17T01:49:07.594Z</published>
    <content type="html"><![CDATA[<h3><p>Host-based tools / Tarpits</p>
</h3>
<ul>
<li><a href="https://shufflecake.net/" rel="noopener noreferrer">Shufflecake</a> - Plausible deniability for multiple hidden filesystems on Linux.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2023/03/17/"/>
    <summary>1 awesome projects updated on Mar 17, 2023</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/12/22/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Dec 22, 2022</title>
    <updated>2022-12-22T11:34:58.780Z</updated>
    <published>2022-12-22T11:34:58.780Z</published>
    <content type="html"><![CDATA[<h3><p>Host-based tools / Tarpits</p>
</h3>
<ul>
<li><a href="https://github.com/google/ukip" rel="noopener noreferrer">USB Keystroke Injection Protection (⭐499)</a> - Daemon for blocking USB keystroke injection devices on Linux systems.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/12/22/"/>
    <summary>1 awesome projects updated on Dec 22, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/12/16/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Dec 16, 2022</title>
    <updated>2022-12-16T01:44:35.904Z</updated>
    <published>2022-12-16T01:44:35.780Z</published>
    <content type="html"><![CDATA[<h3><p>Security monitoring / Network Security Monitoring (NSM)</p>
</h3>
<ul>
<li><a href="https://github.com/arkime/arkime" rel="noopener noreferrer">Arkime (⭐6.2k)</a> - Augments your current security infrastructure to store and index network traffic in standard PCAP format, providing fast, indexed access.</li>
</ul>
<h3><p>Transport-layer defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://www.firezone.dev/" rel="noopener noreferrer">Firezone</a> - Self-hosted VPN server built on WireGuard that supports MFA and SSO.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/12/16/"/>
    <summary>2 awesome projects updated on Dec 16, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/09/28/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Sep 28, 2022</title>
    <updated>2022-09-28T19:06:22.000Z</updated>
    <published>2022-09-28T19:06:22.000Z</published>
    <content type="html"><![CDATA[<h3><p>Transport-layer defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://github.com/juanfont/headscale" rel="noopener noreferrer">Headscale (⭐21k)</a> - Open source, self-hosted implementation of the Tailscale control server.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/09/28/"/>
    <summary>1 awesome projects updated on Sep 28, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/09/14/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Sep 14, 2022</title>
    <updated>2022-09-14T18:02:50.000Z</updated>
    <published>2022-09-14T18:02:50.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Policy enforcement</p>
</h3>
<ul>
<li><a href="https://regula.dev/" rel="noopener noreferrer">Regula</a> - Checks infrastructure as code templates (Terraform, CloudFormation, K8s manifests) for AWS, Azure, Google Cloud, and Kubernetes security and compliance using Open Policy Agent/Rego.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/09/14/"/>
    <summary>1 awesome projects updated on Sep 14, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/08/11/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 11, 2022</title>
    <updated>2022-08-11T17:31:33.000Z</updated>
    <published>2022-08-11T17:31:33.000Z</published>
    <content type="html"><![CDATA[<h3><p>Preparedness training and wargaming / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://tcpreplay.appneta.com/" rel="noopener noreferrer">tcpreplay</a> - Suite of free Open Source utilities for editing and replaying previously captured network traffic originally designed to replay malicious traffic patterns to Intrusion Detection/Prevention Systems.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/08/11/"/>
    <summary>1 awesome projects updated on Aug 11, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/05/16/</id>
    <title>Awesome Cybersecurity Blueteam Updates on May 16, 2022</title>
    <updated>2022-05-16T21:52:22.000Z</updated>
    <published>2022-05-16T21:52:22.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://www.checkov.io/" rel="noopener noreferrer">Checkov</a> - Static analysis for Terraform (infrastructure as code) to help detect CIS policy violations and prevent cloud security misconfiguration.</li>
</ul>

<ul>
<li><a href="https://runterrascan.io/" rel="noopener noreferrer">terrascan</a> - Static code analyzer for Infrastructure as Code tools that helps detect compliance and security violations to mitigate risk before provisioning cloud native resources.</li>
</ul>

<ul>
<li><a href="https://aquasecurity.github.io/tfsec/" rel="noopener noreferrer">tfsec</a> - Static analysis security scanner for your Terraform code designed to run locally and in CI pipelines.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/05/16/"/>
    <summary>3 awesome projects updated on May 16, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/05/09/</id>
    <title>Awesome Cybersecurity Blueteam Updates on May 09, 2022</title>
    <updated>2022-05-09T17:09:41.000Z</updated>
    <published>2022-05-09T17:09:41.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Dependency confusion</p>
</h3>
<ul>
<li><a href="https://github.com/snyk-labs/snync" rel="noopener noreferrer">snync (⭐36)</a> - Prevent and detect if you're vulnerable to dependency confusion supply chain security attacks.</li>
</ul>
<h3><p>Threat intelligence / Fingerprinting</p>
</h3>
<ul>
<li><a href="https://github.com/salesforce/hassh" rel="noopener noreferrer">HASSH (⭐531)</a> - Network fingerprinting standard which can be used to identify specific client and server SSH implementations.</li>
</ul>

<ul>
<li><a href="https://ja3er.com/" rel="noopener noreferrer">JA3</a> - Extracts SSL/TLS handshake settings for fingerprinting and communicating about a given TLS implementation.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/05/09/"/>
    <summary>3 awesome projects updated on May 09, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/03/30/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 30, 2022</title>
    <updated>2022-03-30T15:56:08.000Z</updated>
    <published>2022-03-30T15:56:08.000Z</published>
    <content type="html"><![CDATA[<h3><p>Transport-layer defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://openziti.github.io/" rel="noopener noreferrer">OpenZITI</a> - Open source initiative focused on bringing Zero Trust to any application via an overlay network, tunelling applications, and numerous SDKs.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/03/30/"/>
    <summary>1 awesome projects updated on Mar 30, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/02/26/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Feb 26, 2022</title>
    <updated>2022-02-26T18:10:21.000Z</updated>
    <published>2022-02-26T18:10:21.000Z</published>
    <content type="html"><![CDATA[<h3><p>Security monitoring / Post-engagement analysis and reporting</p>
</h3>
<ul>
<li><a href="https://github.com/JupiterOne/starbase" rel="noopener noreferrer">Starbase (⭐333)</a> - Collects assets and relationships from services and systems into an intuitive graph view to offer graph-based security analysis for everyone.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/02/26/"/>
    <summary>1 awesome projects updated on Feb 26, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/02/10/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Feb 10, 2022</title>
    <updated>2022-02-10T19:34:10.000Z</updated>
    <published>2022-02-10T19:34:10.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Kubernetes</p>
</h3>
<ul>
<li><a href="https://github.com/bitnami-labs/sealed-secrets" rel="noopener noreferrer">Sealed Secrets (⭐7.3k)</a> - Kubernetes controller and tool for one-way encrypted Secrets.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/02/10/"/>
    <summary>1 awesome projects updated on Feb 10, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/02/05/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Feb 05, 2022</title>
    <updated>2022-02-05T03:09:24.000Z</updated>
    <published>2022-02-05T03:09:24.000Z</published>
    <content type="html"><![CDATA[<h3><p>Transport-layer defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://github.com/hwdsl2/setup-ipsec-vpn" rel="noopener noreferrer">IPsec VPN Server Auto Setup Scripts (⭐24k)</a> - Scripts to build your own IPsec VPN server, with IPsec/L2TP, Cisco IPsec and IKEv2.</li>
</ul>

<ul>
<li><a href="https://github.com/tonarino/innernet" rel="noopener noreferrer">Innernet (⭐4.9k)</a> - Free Software private network system that uses WireGuard under the hood, made to be self-hosted.</li>
</ul>

<ul>
<li><a href="https://github.com/slackhq/nebula" rel="noopener noreferrer">Nebula (⭐14k)</a> - Completely open source and self-hosted, scalable overlay networking tool with a focus on performance, simplicity, and security, inspired by tinc.</li>
</ul>

<ul>
<li><a href="https://openvpn.net/" rel="noopener noreferrer">OpenVPN</a> - Longstanding Free Software traditional SSL/TLS-based virtual private network.</li>
</ul>

<ul>
<li><a href="https://tailscale.com/" rel="noopener noreferrer">Tailscale</a> - Managed freemium mesh VPN service built on top of WireGuard.</li>
</ul>

<ul>
<li><a href="https://tinc-vpn.org/" rel="noopener noreferrer">tinc</a> - Free Software mesh VPN implemented entirely in userspace that supports expandable network space, bridged ethernet segments, and more.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/02/05/"/>
    <summary>6 awesome projects updated on Feb 05, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2022/01/13/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jan 13, 2022</title>
    <updated>2022-01-13T23:25:42.000Z</updated>
    <published>2022-01-13T23:25:42.000Z</published>
    <content type="html"><![CDATA[<h3><p>Preparedness training and wargaming / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://caldera.mitre.org/" rel="noopener noreferrer">Caldera</a> - Scalable, automated, and extensible adversary emulation platform developed by MITRE.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2022/01/13/"/>
    <summary>1 awesome projects updated on Jan 13, 2022</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/11/28/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Nov 28, 2021</title>
    <updated>2021-11-28T15:53:53.000Z</updated>
    <published>2021-11-28T15:49:30.000Z</published>
    <content type="html"><![CDATA[<h3><p>Honeypots / Supply chain security</p>
</h3>
<ul>
<li><a href="https://github.com/spaceraccoon/manuka" rel="noopener noreferrer">Manuka (⭐321)</a> - Open-sources intelligence (OSINT) honeypot that monitors reconnaissance attempts by threat actors and generates actionable intelligence for Blue Teamers.</li>
</ul>
<h3><p>Preparedness training and wargaming / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://www.guardicore.com/infectionmonkey/" rel="noopener noreferrer">Infection Monkey</a> - Open-source breach and attack simulation (BAS) platform that helps you validate existing controls and identify how attackers might exploit your current network security gaps.</li>
</ul>
<h3><p>Windows-based defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://github.com/Apr4h/CobaltStrikeScan" rel="noopener noreferrer">CobaltStrikeScan (⭐879)</a> - Scan files or process memory for Cobalt Strike beacons and parse their configuration.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/11/28/"/>
    <summary>3 awesome projects updated on Nov 28, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/11/27/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Nov 27, 2021</title>
    <updated>2021-11-27T03:24:47.000Z</updated>
    <published>2021-11-27T03:24:47.000Z</published>
    <content type="html"><![CDATA[<h3><p>Windows-based defenses / Active Directory</p>
</h3>
<ul>
<li><a href="https://github.com/ANSSI-FR/AD-control-paths" rel="noopener noreferrer">Active Directory Control Paths (⭐649)</a> - Visualize and graph Active Directory permission configs ("control relations") to audit questions such as "Who can read the CEO's email?" and similar.</li>
</ul>

<ul>
<li><a href="https://www.pingcastle.com/" rel="noopener noreferrer">PingCastle</a> - Active Directory vulnerability detection and reporting tool.</li>
</ul>

<ul>
<li><a href="https://github.com/PlumHound/PlumHound" rel="noopener noreferrer">PlumHound (⭐1.1k)</a> - More effectively use BloodHoundAD in continual security life-cycles by utilizing its pathfinding engine to identify Active Directory security vulnerabilities.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/11/27/"/>
    <summary>3 awesome projects updated on Nov 27, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/11/13/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Nov 13, 2021</title>
    <updated>2021-11-13T14:59:27.000Z</updated>
    <published>2021-11-13T14:59:27.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Dependency confusion</p>
</h3>
<ul>
<li><a href="https://github.com/apiiro/combobulator" rel="noopener noreferrer">Dependency Combobulator (⭐85)</a> - Open source, modular and extensible framework to detect and prevent dependency confusion leakage and potential attacks.</li>
</ul>

<ul>
<li><a href="https://github.com/sonatype-nexus-community/repo-diff" rel="noopener noreferrer">Confusion checker (⭐60)</a> - Script to check if you have artifacts containing the same name between your repositories.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/11/13/"/>
    <summary>2 awesome projects updated on Nov 13, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/10/28/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Oct 28, 2021</title>
    <updated>2021-10-28T20:56:27.000Z</updated>
    <published>2021-10-28T20:56:27.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Security Orchestration, Automation, and Response (SOAR)</p>
</h3>
<ul>
<li><a href="https://github.com/rams3sh/Aaia" rel="noopener noreferrer">Aaia (⭐282)</a> - Helps in visualizing AWS IAM and Organizations in a graph format with help of Neo4j.</li>
</ul>

<ul>
<li><a href="https://github.com/nccgroup/PMapper" rel="noopener noreferrer">Principal Mapper (PMapper) (⭐1.4k)</a> - Quickly evaluate IAM permissions in AWS via script and library capable of identifying risks in the configuration of AWS Identity and Access Management (IAM) for an AWS account or an AWS organization.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/10/28/"/>
    <summary>2 awesome projects updated on Oct 28, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/10/12/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Oct 12, 2021</title>
    <updated>2021-10-12T15:19:09.000Z</updated>
    <published>2021-10-12T15:19:09.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Supply chain security</p>
</h3>
<ul>
<li><a href="https://in-toto.io/" rel="noopener noreferrer">in-toto</a> - Framework to secure the integrity of software supply chains.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/10/12/"/>
    <summary>1 awesome projects updated on Oct 12, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/09/18/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Sep 18, 2021</title>
    <updated>2021-09-18T17:14:21.000Z</updated>
    <published>2021-09-18T17:14:21.000Z</published>
    <content type="html"><![CDATA[<h3><p>Identity and AuthN/AuthZ / Sandboxes</p>
</h3>
<ul>
<li><a href="https://gluu.org/" rel="noopener noreferrer">Gluu Server</a> - Central authentication and authorization for Web and mobile applications with a Free and Open Source Software cloud-native community distribution.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/09/18/"/>
    <summary>1 awesome projects updated on Sep 18, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/08/14/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 14, 2021</title>
    <updated>2021-08-14T20:07:40.000Z</updated>
    <published>2021-08-14T20:07:40.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Policy enforcement</p>
</h3>
<ul>
<li><a href="https://github.com/ossf/allstar" rel="noopener noreferrer">AllStar (⭐1.2k)</a> - GitHub App installed on organizations or repositories to set and enforce security policies.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/08/14/"/>
    <summary>1 awesome projects updated on Aug 14, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/08/06/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 06, 2021</title>
    <updated>2021-08-06T19:00:41.000Z</updated>
    <published>2021-08-06T19:00:41.000Z</published>
    <content type="html"><![CDATA[<h3><p>Transport-layer defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://www.wireguard.com/" rel="noopener noreferrer">WireGuard</a> - Extremely simple yet fast and modern VPN that utilizes state-of-the-art cryptography.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/08/06/"/>
    <summary>1 awesome projects updated on Aug 06, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/08/02/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 02, 2021</title>
    <updated>2021-08-02T19:48:12.000Z</updated>
    <published>2021-08-02T19:48:12.000Z</published>
    <content type="html"><![CDATA[<h3><p>Preparedness training and wargaming / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://www.dns-oarc.net/tools/drool" rel="noopener noreferrer">Drool</a> - Replay DNS traffic from packet capture files and send it to a specified server, such as for simulating DDoS attacks on the DNS and measuring normal DNS querying.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/08/02/"/>
    <summary>1 awesome projects updated on Aug 02, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/06/11/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jun 11, 2021</title>
    <updated>2021-06-11T13:59:11.000Z</updated>
    <published>2021-06-11T13:59:11.000Z</published>
    <content type="html"><![CDATA[<h3><p>Threat intelligence / Threat hunting</p>
</h3>
<ul>
<li><a href="https://github.com/tenzir/threatbus" rel="noopener noreferrer">Threat Bus (⭐258)</a> - Threat intelligence dissemination layer to connect security tools through a distributed publish/subscribe message broker.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/06/11/"/>
    <summary>1 awesome projects updated on Jun 11, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/05/22/</id>
    <title>Awesome Cybersecurity Blueteam Updates on May 22, 2021</title>
    <updated>2021-05-22T08:48:49.000Z</updated>
    <published>2021-05-22T08:48:49.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Policy enforcement</p>
</h3>
<ul>
<li><a href="https://conftest.dev/" rel="noopener noreferrer">Conftest</a> - Utility to help you write tests against structured configuration data.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/05/22/"/>
    <summary>1 awesome projects updated on May 22, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/05/18/</id>
    <title>Awesome Cybersecurity Blueteam Updates on May 18, 2021</title>
    <updated>2021-05-18T22:12:09.000Z</updated>
    <published>2021-05-18T00:27:50.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Supply chain security</p>
</h3>
<ul>
<li><a href="https://grafeas.io/" rel="noopener noreferrer">Grafeas</a> - Open artifact metadata API to audit and govern your software supply chain.</li>
</ul>

<ul>
<li><a href="https://github.com/technosophos/helm-gpg" rel="noopener noreferrer">Helm GPG (GnuPG) Plugin (⭐25)</a> - Chart signing and verification with GnuPG for Helm.</li>
</ul>

<ul>
<li><a href="https://github.com/theupdateframework/notary" rel="noopener noreferrer">Notary (⭐3.2k)</a> - Aims to make the internet more secure by making it easy for people to publish and verify content.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/05/18/"/>
    <summary>3 awesome projects updated on May 18, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/05/15/</id>
    <title>Awesome Cybersecurity Blueteam Updates on May 15, 2021</title>
    <updated>2021-05-15T22:05:57.000Z</updated>
    <published>2021-05-15T22:05:57.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://github.com/jkroepke/helm-secrets" rel="noopener noreferrer">helm-secrets (⭐1.4k)</a> - Helm plugin that helps manage secrets with Git workflow and stores them anywhere, backed by SOPS.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/05/15/"/>
    <summary>1 awesome projects updated on May 15, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/05/09/</id>
    <title>Awesome Cybersecurity Blueteam Updates on May 09, 2021</title>
    <updated>2021-05-09T19:13:30.000Z</updated>
    <published>2021-05-09T19:13:30.000Z</published>
    <content type="html"><![CDATA[<h3><p>Communications security (COMSEC) / Service meshes</p>
</h3>
<ul>
<li><a href="https://goteleport.com/" rel="noopener noreferrer">Teleport</a> - Allows engineers and security professionals to unify access for SSH servers, Kubernetes clusters, web applications, and databases across all environments.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/05/09/"/>
    <summary>1 awesome projects updated on May 09, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/05/04/</id>
    <title>Awesome Cybersecurity Blueteam Updates on May 04, 2021</title>
    <updated>2021-05-04T13:45:34.000Z</updated>
    <published>2021-05-04T13:45:34.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Kubernetes</p>
</h3>
<ul>
<li><a href="https://kyverno.io/" rel="noopener noreferrer">Kyverno</a> - Policy engine designed for Kubernetes.</li>
</ul>

<ul>
<li><a href="https://github.com/cruise-automation/k-rail" rel="noopener noreferrer">k-rail (⭐445)</a> - Workload policy enforcement tool for Kubernetes.</li>
</ul>

<ul>
<li><a href="https://github.com/opsgenie/kubernetes-event-exporter" rel="noopener noreferrer">kubernetes-event-exporter (⭐1k)</a> - Allows exporting the often missed Kubernetes events to various outputs so that they can be used for observability or alerting purposes.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/05/04/"/>
    <summary>3 awesome projects updated on May 04, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/04/26/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Apr 26, 2021</title>
    <updated>2021-04-26T03:37:05.000Z</updated>
    <published>2021-04-26T03:37:05.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Policy enforcement</p>
</h3>
<ul>
<li><a href="https://www.openpolicyagent.org/" rel="noopener noreferrer">Open Policy Agent (OPA)</a> - Unified toolset and framework for policy across the cloud native stack.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/04/26/"/>
    <summary>1 awesome projects updated on Apr 26, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/04/11/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Apr 11, 2021</title>
    <updated>2021-04-11T04:06:04.000Z</updated>
    <published>2021-04-11T04:06:04.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Distributed monitoring</p>
</h3>
<ul>
<li><a href="https://cortexmetrics.io/" rel="noopener noreferrer">Cortex</a> - Provides horizontally scalable, highly available, multi-tenant, long term storage for Prometheus.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/04/11/"/>
    <summary>1 awesome projects updated on Apr 11, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/04/10/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Apr 10, 2021</title>
    <updated>2021-04-10T18:19:56.000Z</updated>
    <published>2021-04-10T18:17:29.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Distributed monitoring</p>
</h3>
<ul>
<li><a href="https://opentelemetry.io/" rel="noopener noreferrer">OpenTelemetry</a> - Observability framework for cloud-native software, comprising a collection of tools, APIs, and SDKs for exporting application performance metrics to a tracing backend (formerly maintained by the OpenTracing and OpenCensus projects).</li>
</ul>

<ul>
<li><a href="https://prometheus.io/" rel="noopener noreferrer">Prometheus</a> - Open-source systems monitoring and alerting toolkit originally built at SoundCloud.</li>
</ul>
<h3><p>Cloud platform security / Kubernetes</p>
</h3>
<ul>
<li><a href="https://github.com/muxinc/certificate-expiry-monitor" rel="noopener noreferrer">certificate-expiry-monitor (⭐159)</a> - Utility that exposes the expiry of TLS certificates as Prometheus metrics.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/04/10/"/>
    <summary>3 awesome projects updated on Apr 10, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/04/04/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Apr 04, 2021</title>
    <updated>2021-04-04T15:22:33.000Z</updated>
    <published>2021-04-04T15:22:33.000Z</published>
    <content type="html"><![CDATA[<h3><p>Network perimeter defenses / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://www.ipfire.org/" rel="noopener noreferrer">IPFire</a> - Hardened GNU/Linux based router and firewall distribution forked from IPCop.</li>
</ul>

<ul>
<li><a href="https://opnsense.org/" rel="noopener noreferrer">OPNsense</a> - Hardened FreeBSD based firewall and routing platform forked from pfSense.</li>
</ul>

<ul>
<li><a href="https://www.pfsense.org/" rel="noopener noreferrer">pfSense</a> - FreeBSD firewall and router distribution forked from m0n0wall.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/04/04/"/>
    <summary>3 awesome projects updated on Apr 04, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/03/29/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 29, 2021</title>
    <updated>2021-03-29T15:21:21.000Z</updated>
    <published>2021-03-29T15:21:21.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Distributed monitoring</p>
</h3>
<ul>
<li><a href="https://www.jaegertracing.io/" rel="noopener noreferrer">Jaeger</a> - Distributed tracing platform backend used for monitoring and troubleshooting microservices-based distributed systems.</li>
</ul>

<ul>
<li><a href="https://zipkin.io/" rel="noopener noreferrer">Zipkin</a> - Distributed tracing system backend that helps gather timing data needed to troubleshoot latency problems in service architectures.</li>
</ul>
<h3><p>Cloud platform security / Kubernetes</p>
</h3>
<ul>
<li><a href="https://linkerd.io/" rel="noopener noreferrer">Linkerd</a> - Ultra light Kubernetes-specific service mesh that adds observability, reliability, and security to Kubernetes applications without requiring any modification of the application itself.</li>
</ul>
<h3><p>Cloud platform security / Service meshes</p>
</h3>
<ul>
<li><a href="https://consul.io/" rel="noopener noreferrer">Consul</a> - Solution to connect and configure applications across dynamic, distributed infrastructure and, with Consul Connect, enabling secure service-to-service communication with automatic TLS encryption and identity-based authorization.</li>
</ul>

<ul>
<li><a href="https://istio.io/" rel="noopener noreferrer">Istio</a> - Open platform for providing a uniform way to integrate microservices, manage traffic flow across microservices, enforce policies and aggregate telemetry data.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/03/29/"/>
    <summary>5 awesome projects updated on Mar 29, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/03/27/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 27, 2021</title>
    <updated>2021-03-27T18:51:59.000Z</updated>
    <published>2021-03-27T02:44:20.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Kubernetes</p>
</h3>
<ul>
<li><a href="https://github.com/keikoproj/kube-forensics" rel="noopener noreferrer">kube-forensics (⭐212)</a> - Allows a cluster administrator to dump the current state of a running pod and all its containers so that security professionals can perform off-line forensic analysis.</li>
</ul>
<h3><p>Communications security (COMSEC) / Service meshes</p>
</h3>
<ul>
<li><a href="https://www.globaleaks.org/" rel="noopener noreferrer">GlobaLeaks</a> - Free, open source software enabling anyone to easily set up and maintain a secure whistleblowing platform.</li>
</ul>

<ul>
<li><a href="https://securedrop.org/" rel="noopener noreferrer">SecureDrop</a> - Open source whistleblower submission system that media organizations and NGOs can install to securely accept documents from anonymous sources.</li>
</ul>
<h3><p>Operating System distributions / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://qubes-os.org/" rel="noopener noreferrer">Qubes OS</a> - Desktop environment built atop the Xen hypervisor project that runs each end-user program in its own virtual machine intended to provide strict security controls to constrain the reach of any successful malware exploit.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/03/27/"/>
    <summary>4 awesome projects updated on Mar 27, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/03/16/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 16, 2021</title>
    <updated>2021-03-16T05:26:31.000Z</updated>
    <published>2021-03-16T05:26:31.000Z</published>
    <content type="html"><![CDATA[<h3><p>Host-based tools / Sandboxes</p>
</h3>
<ul>
<li><a href="https://dangerzone.rocks/" rel="noopener noreferrer">Dangerzone</a> - Take potentially dangerous PDFs, office documents, or images and convert them to a safe PDF.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/03/16/"/>
    <summary>1 awesome projects updated on Mar 16, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/03/14/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 14, 2021</title>
    <updated>2021-03-14T18:26:03.000Z</updated>
    <published>2021-03-14T18:26:03.000Z</published>
    <content type="html"><![CDATA[<h3><p>Threat intelligence / Threat signature packages and collections</p>
</h3>
<ul>
<li><a href="https://github.com/eset/malware-ioc" rel="noopener noreferrer">ESET's Malware IoCs (⭐1.6k)</a> - Indicators of Compromises (IOCs) derived from ESET's various investigations.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/03/14/"/>
    <summary>1 awesome projects updated on Mar 14, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/03/06/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 06, 2021</title>
    <updated>2021-03-06T16:47:15.000Z</updated>
    <published>2021-03-06T16:47:15.000Z</published>
    <content type="html"><![CDATA[<h3><p>Host-based tools / Sandboxes</p>
</h3>
<ul>
<li><a href="https://github.com/containers/bubblewrap" rel="noopener noreferrer">Bubblewrap (⭐3.8k)</a> - Sandboxing tool for use by unprivileged Linux users capable of restricting access to parts of the operating system or user data.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/03/06/"/>
    <summary>1 awesome projects updated on Mar 06, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/02/06/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Feb 06, 2021</title>
    <updated>2021-02-06T13:32:17.000Z</updated>
    <published>2021-02-06T12:34:01.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Kubernetes</p>
</h3>
<ul>
<li><a href="https://kubesec.io/" rel="noopener noreferrer">KubeSec</a> - Static analyzer of Kubernetes manifests that can be run locally, as a Kuberenetes admission controller, or as its own cloud service.</li>
</ul>

<ul>
<li><a href="https://github.com/darkbitio/mkit" rel="noopener noreferrer">Managed Kubernetes Inspection Tool (MKIT) (⭐401)</a> - Query and validate several common security-related configuration settings of managed Kubernetes cluster objects and the workloads/resources running inside the cluster.</li>
</ul>

<ul>
<li><a href="https://polaris.docs.fairwinds.com/" rel="noopener noreferrer">Polaris</a> - Validates Kubernetes best practices by running tests against code commits, a Kubernetes admission request, or live resources already running in a cluster.</li>
</ul>

<ul>
<li><a href="https://kube-hunter.aquasec.com/" rel="noopener noreferrer">kube-hunter</a> - Open-source tool that runs a set of tests ("hunters") for security issues in Kubernetes clusters from either outside ("attacker's view") or inside a cluster.</li>
</ul>
<h3><p>Threat intelligence / Threat hunting</p>
</h3>
<ul>
<li><a href="https://osv.dev/" rel="noopener noreferrer">Open Source Vulnerabilities (OSV)</a> - Vulnerability database and triage infrastructure for open source projects aimed at helping both open source maintainers and consumers of open source.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/02/06/"/>
    <summary>5 awesome projects updated on Feb 06, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2021/01/01/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jan 01, 2021</title>
    <updated>2021-01-01T19:54:32.000Z</updated>
    <published>2021-01-01T19:54:32.000Z</published>
    <content type="html"><![CDATA[<h3><p>Security configurations / Post-engagement analysis and reporting</p>
</h3>
<ul>
<li><a href="https://github.com/bunkerity/bunkerized-nginx" rel="noopener noreferrer">Bunkerized-nginx (⭐3.8k)</a> - Docker image of an NginX configuration and scripts implementing many defensive techniques for Web sites.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2021/01/01/"/>
    <summary>1 awesome projects updated on Jan 01, 2021</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/12/14/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Dec 14, 2020</title>
    <updated>2020-12-14T07:05:07.000Z</updated>
    <published>2020-12-14T07:05:07.000Z</published>
    <content type="html"><![CDATA[<h3><p>Threat intelligence / Threat signature packages and collections</p>
</h3>
<ul>
<li><a href="https://github.com/fireeye/sunburst_countermeasures" rel="noopener noreferrer">FireEye's Sunburst Countermeasures (⭐560)</a> - Collection of IoC in various languages for detecting backdoored SolarWinds Orion NMS activities and related vulnerabilities.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/12/14/"/>
    <summary>1 awesome projects updated on Dec 14, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/12/12/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Dec 12, 2020</title>
    <updated>2020-12-12T05:39:51.000Z</updated>
    <published>2020-12-12T05:39:51.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Fuzzing</p>
</h3>
<ul>
<li><a href="https://pypi.org/project/atheris/" rel="noopener noreferrer">Atheris</a> - Coverage-guided Python fuzzing engine based off of libFuzzer that supports fuzzing of Python code but also native extensions written for CPython.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/12/12/"/>
    <summary>1 awesome projects updated on Dec 12, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/12/09/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Dec 09, 2020</title>
    <updated>2020-12-09T00:54:02.000Z</updated>
    <published>2020-12-09T00:54:02.000Z</published>
    <content type="html"><![CDATA[<h3><p>Threat intelligence / Threat signature packages and collections</p>
</h3>
<ul>
<li><a href="https://github.com/fireeye/red_team_tool_countermeasures" rel="noopener noreferrer">FireEye's Red Team Tool Countermeasures (⭐2.6k)</a> - Collection of Snort and YARA rules to detect attacks carried out with FireEye's own Red Team tools, first released after FireEye disclosed a breach in December 2020.</li>
</ul>

<ul>
<li><a href="https://github.com/Yara-Rules/rules" rel="noopener noreferrer">YARA Rules (⭐4k)</a> - Project covering the need for IT security researchers to have a single repository where different Yara signatures are compiled, classified and kept as up to date as possible.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/12/09/"/>
    <summary>2 awesome projects updated on Dec 09, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/12/06/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Dec 06, 2020</title>
    <updated>2020-12-06T20:49:44.000Z</updated>
    <published>2020-12-06T20:05:06.000Z</published>
    <content type="html"><![CDATA[<h3><p>Preparedness training and wargaming / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://www.secframe.com/badblood/" rel="noopener noreferrer">BadBlood</a> - Fills a test (non-production) Windows Domain with data that enables security analysts and engineers to practice using tools to gain an understanding and prescribe to securing Active Directory.</li>
</ul>
<h3><p>Threat intelligence / Threat hunting</p>
</h3>
<ul>
<li><a href="https://github.com/Neo23x0/sigma" rel="noopener noreferrer">Sigma (⭐7.9k)</a> - Generic signature format for SIEM systems, offering an open signature format that allows you to describe relevant log events in a straightforward manner.</li>
</ul>

<ul>
<li><a href="https://github.com/VirusTotal/yara" rel="noopener noreferrer">YARA (⭐7.9k)</a> - Tool aimed at (but not limited to) helping malware researchers to identify and classify malware samples, described as "the pattern matching swiss army knife" for file patterns and signatures.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/12/06/"/>
    <summary>3 awesome projects updated on Dec 06, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/11/13/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Nov 13, 2020</title>
    <updated>2020-11-13T20:30:17.000Z</updated>
    <published>2020-11-13T20:30:17.000Z</published>
    <content type="html"><![CDATA[<h3><p>macOS-based defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://github.com/google/santa" rel="noopener noreferrer">Santa (⭐4.4k)</a> - Keep track of binaries that are naughty or nice in an allow/deny-listing system for macOS.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/11/13/"/>
    <summary>1 awesome projects updated on Nov 13, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/10/25/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Oct 25, 2020</title>
    <updated>2020-10-25T23:29:48.000Z</updated>
    <published>2020-10-25T23:29:48.000Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention</p>
</h3>
<ul>
<li><a href="https://talosintelligence.com/pyrebox" rel="noopener noreferrer">PyREBox</a> - Python-scriptable reverse engineering sandbox, based on QEMU.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/10/25/"/>
    <summary>1 awesome projects updated on Oct 25, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/10/11/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Oct 11, 2020</title>
    <updated>2020-10-11T16:26:48.000Z</updated>
    <published>2020-10-11T16:26:48.000Z</published>
    <content type="html"><![CDATA[<h3><p>Threat intelligence / Threat hunting</p>
</h3>
<ul>
<li><a href="https://github.com/hadojae/DATA" rel="noopener noreferrer">DATA (⭐94)</a> - Credential phish analysis and automation tool that can accept suspected phishing URLs directly or trigger on observed network traffic containing such a URL.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/10/11/"/>
    <summary>1 awesome projects updated on Oct 11, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/09/19/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Sep 19, 2020</title>
    <updated>2020-09-19T19:42:28.000Z</updated>
    <published>2020-09-19T19:42:28.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Fuzzing</p>
</h3>
<ul>
<li><a href="https://github.com/microsoft/onefuzz" rel="noopener noreferrer">OneFuzz (⭐2.8k)</a> - Self-hosted Fuzzing-as-a-Service (FaaS) platform.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/09/19/"/>
    <summary>1 awesome projects updated on Sep 19, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/09/16/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Sep 16, 2020</title>
    <updated>2020-09-16T22:24:39.000Z</updated>
    <published>2020-09-16T22:24:39.000Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention</p>
</h3>
<ul>
<li><a href="https://containrrr.dev/watchtower/" rel="noopener noreferrer">Watchtower</a> - Container-based solution for automating Docker container base image updates, providing an unattended upgrade experience.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/09/16/"/>
    <summary>1 awesome projects updated on Sep 16, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/08/14/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 14, 2020</title>
    <updated>2020-08-14T22:07:56.000Z</updated>
    <published>2020-08-14T02:11:41.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://github.com/genuinetools/bane" rel="noopener noreferrer">Bane (⭐1.2k)</a> - Custom and better AppArmor profile generator for Docker containers.</li>
</ul>

<ul>
<li><a href="https://github.com/aquasecurity/trivy" rel="noopener noreferrer">Trivy (⭐22k)</a> - Simple and comprehensive vulnerability scanner for containers and other artifacts, suitable for use in continuous integration pipelines.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/08/14/"/>
    <summary>2 awesome projects updated on Aug 14, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/08/13/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 13, 2020</title>
    <updated>2020-08-13T00:57:00.000Z</updated>
    <published>2020-08-13T00:57:00.000Z</published>
    <content type="html"><![CDATA[<h3><p>Communications security (COMSEC) / Service meshes</p>
</h3>
<ul>
<li><a href="https://censorship.ai/" rel="noopener noreferrer">Geneva (Genetic Evasion)</a> - Novel experimental genetic algorithm that evolves packet-manipulation-based censorship evasion strategies against nation-state level censors to increase availability of otherwise blocked content.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/08/13/"/>
    <summary>1 awesome projects updated on Aug 13, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/08/11/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 11, 2020</title>
    <updated>2020-08-11T04:54:07.000Z</updated>
    <published>2020-08-11T04:54:07.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Compliance testing and reporting</p>
</h3>
<ul>
<li><a href="https://www.chef.io/products/chef-inspec" rel="noopener noreferrer">Chef InSpec</a> - Language for describing security and compliance rules, which become automated tests that can be run against IT infrastructures to discover and report on non-compliance.</li>
</ul>

<ul>
<li><a href="https://www.open-scap.org/tools/openscap-base/" rel="noopener noreferrer">OpenSCAP Base</a> - Both a library and a command line tool (<code>oscap</code>) used to evaluate a system against SCAP baseline profiles to report on the security posture of the scanned system(s).</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/08/11/"/>
    <summary>2 awesome projects updated on Aug 11, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/07/28/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 28, 2020</title>
    <updated>2020-07-28T02:45:47.000Z</updated>
    <published>2020-07-28T02:45:47.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Application or Binary Hardening</p>
</h3>
<ul>
<li><a href="https://dyninst.org/dyninst" rel="noopener noreferrer">DynInst</a> - Tools for binary instrumentation, analysis, and modification, useful for binary patching.</li>
</ul>

<ul>
<li><a href="https://dynamorio.org/" rel="noopener noreferrer">DynamoRIO</a> - Runtime code manipulation system that supports code transformations on any part of a program, while it executes, implemented as a process-level virtual machine.</li>
</ul>

<ul>
<li><a href="https://www.valgrind.org/" rel="noopener noreferrer">Valgrind</a> - Instrumentation framework for building dynamic analysis tools.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/07/28/"/>
    <summary>3 awesome projects updated on Jul 28, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/07/15/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 15, 2020</title>
    <updated>2020-07-15T23:35:40.000Z</updated>
    <published>2020-07-15T22:06:58.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Security Orchestration, Automation, and Response (SOAR)</p>
</h3>
<ul>
<li><a href="https://katacontainers.io/" rel="noopener noreferrer">Kata Containers</a> - Secure container runtime with lightweight virtual machines that feel and perform like containers, but provide stronger workload isolation using hardware virtualization technology as a second layer of defense.</li>
</ul>

<ul>
<li><a href="https://github.com/google/gvisor" rel="noopener noreferrer">gVisor (⭐15k)</a> - Application kernel, written in Go, that implements a substantial portion of the Linux system surface to provide an isolation boundary between the application and the host kernel.</li>
</ul>
<h3><p>Security monitoring / Network Security Monitoring (NSM)</p>
</h3>
<ul>
<li><a href="https://github.com/codeexpress/respounder" rel="noopener noreferrer">Respounder (⭐312)</a> - Detects the presence of the Responder LLMNR/NBT-NS/MDNS poisoner on a network.</li>
</ul>

<ul>
<li><a href="https://github.com/google/tsunami-security-scanner" rel="noopener noreferrer">Tsunami (⭐8.2k)</a> - General purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/07/15/"/>
    <summary>4 awesome projects updated on Jul 15, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/07/14/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 14, 2020</title>
    <updated>2020-07-14T00:15:24.000Z</updated>
    <published>2020-07-14T00:15:24.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://github.com/mozilla/sops" rel="noopener noreferrer">SOPS (⭐16k)</a> - Editor of encrypted files that supports YAML, JSON, ENV, INI and binary formats and encrypts with AWS KMS, GCP KMS, Azure Key Vault, and PGP.</li>
</ul>

<ul>
<li><a href="https://www.vaultproject.io/" rel="noopener noreferrer">Vault</a> - Tool for securely accessing secrets such as API keys, passwords, or certificates through a unified interface.</li>
</ul>

<ul>
<li><a href="https://www.agwa.name/projects/git-crypt/" rel="noopener noreferrer">git-crypt</a> - Transparent file encryption in git; files which you choose to protect are encrypted when committed, and decrypted when checked out.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/07/14/"/>
    <summary>3 awesome projects updated on Jul 14, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/06/24/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jun 24, 2020</title>
    <updated>2020-06-24T20:26:58.000Z</updated>
    <published>2020-06-24T20:26:58.000Z</published>
    <content type="html"><![CDATA[<h3><p>Network perimeter defenses / Evidence collection</p>
</h3>
<ul>
<li><a href="https://github.com/AltraMayor/gatekeeper" rel="noopener noreferrer">Gatekeeper (⭐1.3k)</a> - First open source Distributed Denial of Service (DDoS) protection system.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/06/24/"/>
    <summary>1 awesome projects updated on Jun 24, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/06/21/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jun 21, 2020</title>
    <updated>2020-06-21T23:38:20.000Z</updated>
    <published>2020-06-21T23:38:20.000Z</published>
    <content type="html"><![CDATA[<h3><p>Incident Response tools / Sandboxes</p>
</h3>
<ul>
<li><a href="https://github.com/JPCERTCC/LogonTracer" rel="noopener noreferrer">LogonTracer (⭐2.7k)</a> - Investigate malicious Windows logon by visualizing and analyzing Windows event log.</li>
</ul>

<ul>
<li><a href="https://www.volatilityfoundation.org/" rel="noopener noreferrer">Volatility</a> - Advanced memory forensics framework.</li>
</ul>
<h3><p>Security monitoring / Network Security Monitoring (NSM)</p>
</h3>
<ul>
<li><a href="https://github.com/activecm/rita" rel="noopener noreferrer">Real Intelligence Threat Analysis (RITA) (⭐7)</a> - Open source framework for network traffic analysis that ingests Zeek logs and detects beaconing, DNS tunneling, and more.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/06/21/"/>
    <summary>3 awesome projects updated on Jun 21, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/06/18/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jun 18, 2020</title>
    <updated>2020-06-18T18:21:21.000Z</updated>
    <published>2020-06-18T18:21:21.000Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention</p>
</h3>
<ul>
<li><a href="https://dev-sec.io/" rel="noopener noreferrer">Dev-Sec.io</a> - Server hardening framework providing Ansible, Chef, and Puppet implementations of various baseline security configurations.</li>
</ul>

<ul>
<li><a href="https://eternal-todo.com/tools/peepdf-pdf-analysis-tool" rel="noopener noreferrer">peepdf</a> - Scriptable PDF file analyzer.</li>
</ul>
<h3><p>Automation and Convention / Security Orchestration, Automation, and Response (SOAR)</p>
</h3>
<ul>
<li><a href="https://shuffler.io/" rel="noopener noreferrer">Shuffle</a> - Graphical generalized workflow (automation) builder for IT professionals and blue teamers.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/06/18/"/>
    <summary>3 awesome projects updated on Jun 18, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/06/08/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jun 08, 2020</title>
    <updated>2020-06-08T22:38:27.000Z</updated>
    <published>2020-06-08T18:01:40.000Z</published>
    <content type="html"><![CDATA[<h3><p>Security monitoring / Network Security Monitoring (NSM)</p>
</h3>
<ul>
<li><a href="https://github.com/google/stenographer" rel="noopener noreferrer">Stenographer (⭐1.8k)</a> - Full-packet-capture utility for buffering packets to disk for intrusion detection and incident response purposes.</li>
</ul>
<h3><p>Security monitoring / Service and performance monitoring</p>
</h3>
<ul>
<li><a href="https://www.zabbix.com/" rel="noopener noreferrer">Zabbix</a> - Mature, enterprise-level platform to monitor large-scale IT environments.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/06/08/"/>
    <summary>2 awesome projects updated on Jun 08, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/05/29/</id>
    <title>Awesome Cybersecurity Blueteam Updates on May 29, 2020</title>
    <updated>2020-05-29T04:09:24.000Z</updated>
    <published>2020-05-29T04:09:24.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Security Orchestration, Automation, and Response (SOAR)</p>
</h3>
<ul>
<li><a href="https://falco.org/" rel="noopener noreferrer">Falco</a> - Behavioral activity monitor designed to detect anomalous activity in containerized applications, hosts, and network packet flows by auditing the Linux kernel and enriched by runtime data such as Kubernetes metrics.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/05/29/"/>
    <summary>1 awesome projects updated on May 29, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/05/11/</id>
    <title>Awesome Cybersecurity Blueteam Updates on May 11, 2020</title>
    <updated>2020-05-11T20:57:59.000Z</updated>
    <published>2020-05-11T20:57:59.000Z</published>
    <content type="html"><![CDATA[<h3><p>macOS-based defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://objective-see.com/products/blockblock.html" rel="noopener noreferrer">BlockBlock</a> - Monitors common persistence locations and alerts whenever a persistent component is added, which helps to detect and prevent malware installation.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/05/11/"/>
    <summary>1 awesome projects updated on May 11, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/04/23/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Apr 23, 2020</title>
    <updated>2020-04-23T20:54:09.000Z</updated>
    <published>2020-04-23T20:54:09.000Z</published>
    <content type="html"><![CDATA[<h3><p>Windows-based defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://www.sandboxie.com/" rel="noopener noreferrer">Sandboxie</a> - Free and open source general purpose Windows application sandboxing utility.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/04/23/"/>
    <summary>1 awesome projects updated on Apr 23, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/04/19/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Apr 19, 2020</title>
    <updated>2020-04-19T21:56:10.000Z</updated>
    <published>2020-04-19T18:52:11.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://www.defectdojo.org/" rel="noopener noreferrer">DefectDojo</a> - Application vulnerability management tool built for DevOps and continuous security integration.</li>
</ul>
<h3><p>DevSecOps / Fuzzing</p>
</h3>
<ul>
<li><a href="https://google.github.io/fuzzbench/" rel="noopener noreferrer">FuzzBench</a> - Free service that evaluates fuzzers on a wide variety of real-world benchmarks, at Google scale.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/04/19/"/>
    <summary>2 awesome projects updated on Apr 19, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/04/15/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Apr 15, 2020</title>
    <updated>2020-04-15T21:23:47.000Z</updated>
    <published>2020-04-15T21:23:47.000Z</published>
    <content type="html"><![CDATA[<h3><p>Threat intelligence / Threat hunting</p>
</h3>
<ul>
<li><a href="https://attackerkb.com/" rel="noopener noreferrer">AttackerKB</a> - Free and public crowdsourced vulnerability assessment platform to help prioritize high-risk patch application and combat vulnerability fatigue.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/04/15/"/>
    <summary>1 awesome projects updated on Apr 15, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/04/06/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Apr 06, 2020</title>
    <updated>2020-04-06T20:13:16.000Z</updated>
    <published>2020-04-06T20:13:16.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://securitylab.github.com/tools/codeql" rel="noopener noreferrer">CodeQL</a> - Discover vulnerabilities across a codebase by performing queries against code as though it were data.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/04/06/"/>
    <summary>1 awesome projects updated on Apr 06, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/04/02/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Apr 02, 2020</title>
    <updated>2020-04-02T21:21:14.000Z</updated>
    <published>2020-04-02T21:16:39.000Z</published>
    <content type="html"><![CDATA[<h3><p>Security monitoring / Network Security Monitoring (NSM)</p>
</h3>
<ul>
<li><a href="https://github.com/tenzir/vast" rel="noopener noreferrer">VAST (⭐622)</a> - Free and open-source network telemetry engine for data-driven security investigations.</li>
</ul>

<ul>
<li><a href="https://zeek.org/" rel="noopener noreferrer">Zeek</a> - Powerful network analysis framework focused on security monitoring, formerly known as Bro.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/04/02/"/>
    <summary>2 awesome projects updated on Apr 02, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/03/26/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 26, 2020</title>
    <updated>2020-03-26T19:16:42.000Z</updated>
    <published>2020-03-26T19:16:42.000Z</published>
    <content type="html"><![CDATA[<h3><p>Host-based tools / Tarpits</p>
</h3>
<ul>
<li><a href="https://www.crowdstrike.com/resources/community-tools/crowdinspect-tool/" rel="noopener noreferrer">Crowd Inspect</a> - Free tool for Windows systems aimed to alert you to the presence of malware that may be communicating over the network.</li>
</ul>
<h3><p>Security monitoring / Endpoint Detection and Response (EDR)</p>
</h3>
<ul>
<li><a href="https://wazuh.com/" rel="noopener noreferrer">Wazuh</a> - Open source, multiplatform agent-based security monitoring based on a fork of OSSEC HIDS.</li>
</ul>
<h3><p>Security monitoring / Network Security Monitoring (NSM)</p>
</h3>
<ul>
<li><a href="https://github.com/MITRECND/chopshop" rel="noopener noreferrer">ChopShop (⭐487)</a> - Framework to aid analysts in the creation and execution of pynids-based decoders and detectors of APT tradecraft.</li>
</ul>

<ul>
<li><a href="https://github.com/stamparm/maltrail" rel="noopener noreferrer">Maltrail (⭐5.9k)</a> - Malicious network traffic detection system.</li>
</ul>

<ul>
<li><a href="https://www.owlh.net/" rel="noopener noreferrer">OwlH</a> - Helps manage network IDS at scale by visualizing Suricata, Zeek, and Moloch life cycles.</li>
</ul>

<ul>
<li><a href="https://snort.org/" rel="noopener noreferrer">Snort</a> - Widely-deployed, Free Software IPS capable of real-time packet analysis, traffic logging, and custom rule-based triggers.</li>
</ul>

<ul>
<li><a href="https://github.com/NetSPI/SpoofSpotter" rel="noopener noreferrer">SpoofSpotter (⭐48)</a> - Catch spoofed NetBIOS Name Service (NBNS) responses and alert to an email or log file.</li>
</ul>

<ul>
<li><a href="https://suricata-ids.org/" rel="noopener noreferrer">Suricata</a> - Free, cross-platform, IDS/IPS with on- and off-line analysis modes and deep packet inspection capabilities that is also scriptable with Lua.</li>
</ul>

<ul>
<li><a href="https://www.wireshark.org" rel="noopener noreferrer">Wireshark</a> - Free and open-source packet analyzer useful for network troubleshooting or forensic netflow analysis.</li>
</ul>

<ul>
<li><a href="http://netsniff-ng.org/" rel="noopener noreferrer">netsniff-ng</a> -  Free and fast GNU/Linux networking toolkit with numerous utilities such as a connection tracking tool (<code>flowtop</code>), traffic generator (<code>trafgen</code>), and autonomous system (AS) trace route utility (<code>astraceroute</code>).</li>
</ul>
<h3><p>Security monitoring / Threat hunting</p>
</h3>
<ul>
<li><a href="https://github.com/PowerShellMafia/CimSweep" rel="noopener noreferrer">CimSweep (⭐636)</a> - Suite of CIM/WMI-based tools enabling remote incident response and hunting operations across all versions of Windows.</li>
</ul>

<ul>
<li><a href="https://github.com/sans-blue-team/DeepBlueCLI" rel="noopener noreferrer">DeepBlueCLI (⭐2.1k)</a> - PowerShell module for hunt teaming via Windows Event logs.</li>
</ul>

<ul>
<li><a href="https://github.com/google/grr" rel="noopener noreferrer">GRR Rapid Response (⭐4.7k)</a> - Incident response framework focused on remote live forensics consisting of a Python agent installed on assets and Python-based server infrastructure enabling analysts to quickly triage attacks and perform analysis remotely.</li>
</ul>

<ul>
<li><a href="https://github.com/Cyb3rWard0g/HELK" rel="noopener noreferrer">Hunting ELK (HELK) (⭐3.7k)</a> - All-in-one Free Software threat hunting stack based on Elasticsearch, Logstash, Kafka, and Kibana with various built-in integrations for analytics including Jupyter Notebook.</li>
</ul>

<ul>
<li><a href="https://github.com/mozilla/MozDef" rel="noopener noreferrer">MozDef (⭐2.2k)</a> - Automate the security incident handling process and facilitate the real-time activities of incident handlers.</li>
</ul>

<ul>
<li><a href="https://github.com/Infocyte/PSHunt" rel="noopener noreferrer">PSHunt (⭐276)</a> - PowerShell module designed to scan remote endpoints for indicators of compromise or survey them for more comprehensive information related to state of those systems.</li>
</ul>

<ul>
<li><a href="https://github.com/gfoss/PSRecon" rel="noopener noreferrer">PSRecon (⭐474)</a> - PSHunt-like tool for analyzing remote Windows systems that also produces a self-contained HTML report of its findings.</li>
</ul>

<ul>
<li><a href="https://github.com/Invoke-IR/PowerForensics" rel="noopener noreferrer">PowerForensics (⭐1.4k)</a> - All in one PowerShell-based platform to perform live hard disk forensic analysis.</li>
</ul>

<ul>
<li><a href="https://www.fireeye.com/services/freeware/redline.html" rel="noopener noreferrer">Redline</a> - Freeware endpoint auditing and analysis tool that provides host-based investigative capabilities, offered by FireEye, Inc.</li>
</ul>

<ul>
<li><a href="https://github.com/rastrea2r/rastrea2r" rel="noopener noreferrer">rastrea2r (⭐235)</a> - Multi-platform tool for triaging suspected IOCs on many endpoints simultaneously and that integrates with antivirus consoles.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/03/26/"/>
    <summary>20 awesome projects updated on Mar 26, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/03/16/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 16, 2020</title>
    <updated>2020-03-16T19:05:52.000Z</updated>
    <published>2020-03-16T19:05:52.000Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention</p>
</h3>
<ul>
<li><a href="https://github.com/latchset/clevis" rel="noopener noreferrer">Clevis (⭐836)</a> - Plugable framework for automated decryption, often used as a Tang client.</li>
</ul>
<h3><p>DevSecOps / Policy enforcement</p>
</h3>
<ul>
<li><a href="https://github.com/latchset/tang" rel="noopener noreferrer">Tang (⭐474)</a> - Server for binding data to network presence; provides data to clients only when they are on a certain (secured) network.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/03/16/"/>
    <summary>2 awesome projects updated on Mar 16, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/02/26/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Feb 26, 2020</title>
    <updated>2020-02-26T21:33:54.000Z</updated>
    <published>2020-02-26T21:33:54.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://snyk.io/" rel="noopener noreferrer">Snyk</a> - Finds and fixes vulnerabilities and license violations in open source dependencies and container images.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/02/26/"/>
    <summary>1 awesome projects updated on Feb 26, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/02/18/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Feb 18, 2020</title>
    <updated>2020-02-18T20:22:46.000Z</updated>
    <published>2020-02-18T20:22:46.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Application or Binary Hardening</p>
</h3>
<ul>
<li><a href="https://egalito.org/" rel="noopener noreferrer">Egalito</a> - Binary recompiler and instrumentation framework that can fully disassemble, transform, and regenerate ordinary Linux binaries designed for binary hardening and security research.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/02/18/"/>
    <summary>1 awesome projects updated on Feb 18, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2020/02/10/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Feb 10, 2020</title>
    <updated>2020-02-10T20:45:35.000Z</updated>
    <published>2020-02-10T20:45:35.000Z</published>
    <content type="html"><![CDATA[<h3><p>Network perimeter defenses / Evidence collection</p>
</h3>
<ul>
<li><a href="https://github.com/jtesta/ssh-audit" rel="noopener noreferrer">ssh-audit (⭐3.2k)</a> - Simple tool that makes quick recommendations for improving an SSH server's security posture.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2020/02/10/"/>
    <summary>1 awesome projects updated on Feb 10, 2020</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/11/21/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Nov 21, 2019</title>
    <updated>2019-11-21T18:59:51.000Z</updated>
    <published>2019-11-21T18:59:51.000Z</published>
    <content type="html"><![CDATA[<h3><p>Honeypots / Supply chain security</p>
</h3>
<ul>
<li><a href="https://kushtaka.org" rel="noopener noreferrer">Kushtaka</a> - Sustainable all-in-one honeypot and honeytoken orchestrator for under-resourced blue teams.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/11/21/"/>
    <summary>1 awesome projects updated on Nov 21, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/11/06/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Nov 06, 2019</title>
    <updated>2019-11-06T20:23:06.000Z</updated>
    <published>2019-11-06T20:23:06.000Z</published>
    <content type="html"><![CDATA[<h3><p>Phishing awareness and reporting / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://github.com/serain/mailspoof" rel="noopener noreferrer">mailspoof (⭐113)</a> - Scans SPF and DMARC records for issues that could allow email spoofing.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/11/06/"/>
    <summary>1 awesome projects updated on Nov 06, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/11/05/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Nov 05, 2019</title>
    <updated>2019-11-05T21:59:25.000Z</updated>
    <published>2019-11-05T16:00:35.000Z</published>
    <content type="html"><![CDATA[<h3><p>Cloud platform security / Security Orchestration, Automation, and Response (SOAR)</p>
</h3>
<ul>
<li><a href="https://github.com/toniblyx/prowler" rel="noopener noreferrer">Prowler (⭐10k)</a> - Tool based on AWS-CLI commands for Amazon Web Services account security assessment and hardening.</li>
</ul>

<ul>
<li><a href="https://github.com/nccgroup/ScoutSuite" rel="noopener noreferrer">Scout Suite (⭐6.3k)</a> - Open source multi-cloud security-auditing tool, which enables security posture assessment of cloud environments.</li>
</ul>
<h3><p>Phishing awareness and reporting / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://github.com/SSLMate/certspotter" rel="noopener noreferrer">CertSpotter (⭐943)</a> - Certificate Transparency log monitor from SSLMate that alerts you when a SSL/TLS certificate is issued for one of your domains.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/11/05/"/>
    <summary>3 awesome projects updated on Nov 05, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/11/04/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Nov 04, 2019</title>
    <updated>2019-11-04T05:00:47.000Z</updated>
    <published>2019-11-04T05:00:47.000Z</published>
    <content type="html"><![CDATA[<h3><p>Phishing awareness and reporting / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://github.com/x0rz/phishing_catcher" rel="noopener noreferrer">phishing_catcher (⭐1.7k)</a> - Configurable script to watch for issuances of suspicious TLS certificates by domain name in the Certificate Transparency Log (CTL) using the <a href="https://certstream.calidog.io/" rel="noopener noreferrer">CertStream</a> service.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/11/04/"/>
    <summary>1 awesome projects updated on Nov 04, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/09/24/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Sep 24, 2019</title>
    <updated>2019-09-24T19:42:44.000Z</updated>
    <published>2019-09-24T19:42:44.000Z</published>
    <content type="html"><![CDATA[<h3><p>Phishing awareness and reporting / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://github.com/LogRhythm-Labs/PIE" rel="noopener noreferrer">Phishing Intelligence Engine (PIE) (⭐179)</a> - Framework that will assist with the detection and response to phishing attacks.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/09/24/"/>
    <summary>1 awesome projects updated on Sep 24, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/08/06/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 06, 2019</title>
    <updated>2019-08-06T20:30:52.000Z</updated>
    <published>2019-08-06T20:30:52.000Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention</p>
</h3>
<ul>
<li><a href="https://ansiblelockdown.io/" rel="noopener noreferrer">Ansible Lockdown</a> - Curated collection of information security themed Ansible roles that are both vetted and actively maintained.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/08/06/"/>
    <summary>1 awesome projects updated on Aug 06, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/08/05/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 05, 2019</title>
    <updated>2019-08-05T18:24:17.000Z</updated>
    <published>2019-08-05T18:21:08.000Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention / Code libraries and bindings</p>
</h3>
<ul>
<li><a href="https://github.com/mitre/multiscanner" rel="noopener noreferrer">MultiScanner (⭐615)</a> - File analysis framework written in Python that assists in evaluating a set of files by automatically running a suite of tools against them and aggregating the output.</li>
</ul>

<ul>
<li><a href="https://github.com/pellegre/libcrafter" rel="noopener noreferrer">libcrafter (⭐296)</a> - High level C++ network packet sniffing and crafting library.</li>
</ul>
<h3><p>Security monitoring / Service and performance monitoring</p>
</h3>
<ul>
<li><a href="https://locust.io/" rel="noopener noreferrer">Locust</a> - Open source load testing tool in which you can define user behaviour with Python code and swarm your system with millions of simultaneous users.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/08/05/"/>
    <summary>3 awesome projects updated on Aug 05, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/07/29/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 29, 2019</title>
    <updated>2019-07-29T15:57:36.000Z</updated>
    <published>2019-07-29T15:57:36.000Z</published>
    <content type="html"><![CDATA[<h3><p>macOS-based defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://objective-see.com/products/lulu.html" rel="noopener noreferrer">LuLu</a> - Free macOS firewall.</li>
</ul>

<ul>
<li><a href="https://github.com/alichtman/stronghold" rel="noopener noreferrer">Stronghold (⭐1.1k)</a> - Easily configure macOS security settings from the terminal.</li>
</ul>

<ul>
<li><a href="https://github.com/essandess/macOS-Fortress" rel="noopener noreferrer">macOS Fortress (⭐407)</a> - Automated configuration of kernel-level, OS-level, and client-level security features including privatizing proxying and anti-virus scanning for macOS.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/07/29/"/>
    <summary>3 awesome projects updated on Jul 29, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/07/27/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 27, 2019</title>
    <updated>2019-07-27T15:43:41.000Z</updated>
    <published>2019-07-27T15:43:41.000Z</published>
    <content type="html"><![CDATA[<h3><p>Phishing awareness and reporting / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://getgophish.com/" rel="noopener noreferrer">Gophish</a> - Powerful, open-source phishing framework that makes it easy to test your organization's exposure to phishing.</li>
</ul>

<ul>
<li><a href="https://github.com/securestate/king-phisher" rel="noopener noreferrer">King Phisher (⭐2.2k)</a> - Tool for testing and promoting user awareness by simulating real world phishing attacks.</li>
</ul>

<ul>
<li><a href="https://github.com/certsocietegenerale/NotifySecurity" rel="noopener noreferrer">NotifySecurity (⭐127)</a> - Outlook add-in used to help your users to report suspicious e-mails to security teams.</li>
</ul>

<ul>
<li><a href="https://github.com/certsocietegenerale/swordphish-awareness" rel="noopener noreferrer">Swordphish (⭐216)</a> - Platform allowing to create and manage (fake) phishing campaigns intended to train people in identifying suspicious mails.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/07/27/"/>
    <summary>4 awesome projects updated on Jul 27, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/07/13/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 13, 2019</title>
    <updated>2019-07-13T00:04:52.000Z</updated>
    <published>2019-07-13T00:04:52.000Z</published>
    <content type="html"><![CDATA[<h3><p>Incident Response tools / IR management consoles</p>
</h3>
<ul>
<li><a href="http://www.rekall-forensic.com/" rel="noopener noreferrer">Rekall</a> - Advanced forensic and incident response framework.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/07/13/"/>
    <summary>1 awesome projects updated on Jul 13, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/07/11/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 11, 2019</title>
    <updated>2019-07-11T22:48:01.000Z</updated>
    <published>2019-07-11T22:48:01.000Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention</p>
</h3>
<ul>
<li><a href="https://github.com/USArmyResearchLab/Dshell" rel="noopener noreferrer">DShell (⭐5.4k)</a> - Extensible network forensic analysis framework written in Python that enables rapid development of plugins to support the dissection of network packet captures.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/07/11/"/>
    <summary>1 awesome projects updated on Jul 11, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/06/13/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jun 13, 2019</title>
    <updated>2019-06-13T23:50:51.000Z</updated>
    <published>2019-06-13T23:47:21.000Z</published>
    <content type="html"><![CDATA[<h3><p>Host-based tools / Tarpits</p>
</h3>
<ul>
<li><a href="http://chkrootkit.org/" rel="noopener noreferrer">chkrootkit</a> - Locally checks for signs of a rootkit on GNU/Linux systems.</li>
</ul>
<h3><p>Host-based tools / Sandboxes</p>
</h3>
<ul>
<li><a href="https://firejail.wordpress.com/" rel="noopener noreferrer">Firejail</a> - SUID program that reduces the risk of security breaches by restricting the running environment of untrusted applications using Linux namespaces and seccomp-bpf.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/06/13/"/>
    <summary>2 awesome projects updated on Jun 13, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/06/06/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jun 06, 2019</title>
    <updated>2019-06-06T16:34:38.000Z</updated>
    <published>2019-06-06T16:34:38.000Z</published>
    <content type="html"><![CDATA[<h3><p>Incident Response tools / Evidence collection</p>
</h3>
<ul>
<li><a href="https://github.com/CrowdStrike/automactc" rel="noopener noreferrer">AutoMacTC (⭐515)</a> - Modular, automated forensic triage collection framework designed to access various forensic artifacts on macOS, parse them, and present them in formats viable for analysis.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/06/06/"/>
    <summary>1 awesome projects updated on Jun 06, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/05/05/</id>
    <title>Awesome Cybersecurity Blueteam Updates on May 05, 2019</title>
    <updated>2019-05-05T19:53:09.000Z</updated>
    <published>2019-05-05T19:53:09.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://cilium.io/" rel="noopener noreferrer">Cilium</a> - Open source software for transparently securing the network connectivity between application services deployed using Linux container management platforms like Docker and Kubernetes.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/05/05/"/>
    <summary>1 awesome projects updated on May 05, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/03/31/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 31, 2019</title>
    <updated>2019-03-31T15:36:41.000Z</updated>
    <published>2019-03-31T15:36:41.000Z</published>
    <content type="html"><![CDATA[<h3><p>Honeypots / Tarpits</p>
</h3>
<ul>
<li><a href="https://github.com/skeeto/endlessh" rel="noopener noreferrer">Endlessh (⭐7k)</a> - SSH tarpit that slowly sends an endless banner.</li>
</ul>

<ul>
<li><a href="http://labrea.sourceforge.net/labrea-info.html" rel="noopener noreferrer">LaBrea</a> - Program that answers ARP requests for unused IP space, creating the appearance of fake machines that answer further requests very slowly in order to slow down scanners, worms, etcetera.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/03/31/"/>
    <summary>2 awesome projects updated on Mar 31, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/03/19/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 19, 2019</title>
    <updated>2019-03-19T04:25:20.000Z</updated>
    <published>2019-03-19T04:25:20.000Z</published>
    <content type="html"><![CDATA[<h3><p>Transport-layer defenses / Threat signature packages and collections</p>
</h3>
<ul>
<li><a href="https://github.com/cloudflare/mitmengine" rel="noopener noreferrer">MITMEngine (⭐799)</a> - Golang library for server-side detection of TLS interception events.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/03/19/"/>
    <summary>1 awesome projects updated on Mar 19, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/03/16/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 16, 2019</title>
    <updated>2019-03-16T22:05:42.000Z</updated>
    <published>2019-03-16T22:05:42.000Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention / Code libraries and bindings</p>
</h3>
<ul>
<li><a href="https://github.com/censys/censys-python" rel="noopener noreferrer">censys-python (⭐380)</a> - Python wrapper to the Censys REST API.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/03/16/"/>
    <summary>1 awesome projects updated on Mar 16, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/03/11/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 11, 2019</title>
    <updated>2019-03-11T18:23:58.000Z</updated>
    <published>2019-03-11T18:23:58.000Z</published>
    <content type="html"><![CDATA[<h3><p>Windows-based defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://docs.microsoft.com/en-us/sysinternals/downloads/sigcheck" rel="noopener noreferrer">Sigcheck</a> - Audit a Windows host's root certificate store against Microsoft's <a href="https://docs.microsoft.com/en-us/windows/desktop/SecCrypto/certificate-trust-list-overview" rel="noopener noreferrer">Certificate Trust List (CTL)</a>.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/03/11/"/>
    <summary>1 awesome projects updated on Mar 11, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/03/08/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Mar 08, 2019</title>
    <updated>2019-03-08T04:58:38.000Z</updated>
    <published>2019-03-08T04:58:38.000Z</published>
    <content type="html"><![CDATA[<h3><p>Communications security (COMSEC) / Service meshes</p>
</h3>
<ul>
<li><a href="https://github.com/firstlookmedia/gpgsync" rel="noopener noreferrer">GPG Sync (⭐344)</a> - Centralize and automate OpenPGP public key distribution, revocation, and updates amongst all members of an organization or team.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/03/08/"/>
    <summary>1 awesome projects updated on Mar 08, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/02/26/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Feb 26, 2019</title>
    <updated>2019-02-26T06:21:44.000Z</updated>
    <published>2019-02-26T06:21:44.000Z</published>
    <content type="html"><![CDATA[<h3><p>Host-based tools / Tarpits</p>
</h3>
<ul>
<li><a href="http://rkhunter.sourceforge.net/" rel="noopener noreferrer">Rootkit Hunter (rkhunter)</a> - POSIX-compliant Bash script that scans a host for various signs of malware.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/02/26/"/>
    <summary>1 awesome projects updated on Feb 26, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2019/01/01/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jan 01, 2019</title>
    <updated>2019-01-01T21:59:52.000Z</updated>
    <published>2019-01-01T21:19:06.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://github.com/coreos/clair" rel="noopener noreferrer">Clair (⭐10k)</a> - Static analysis tool to probe for vulnerabilities introduced via application container (e.g., Docker) images.</li>
</ul>

<ul>
<li><a href="http://gauntlt.org/" rel="noopener noreferrer">Gauntlt</a> - Pentest applications during routine continuous integration build pipelines.</li>
</ul>

<ul>
<li><a href="https://sonarqube.org" rel="noopener noreferrer">SonarQube</a> - Continuous inspection tool that provides detailed reports during automated testing and alerts on newly introduced security vulnerabilities.</li>
</ul>
<h3><p>Transport-layer defenses / Threat signature packages and collections</p>
</h3>
<ul>
<li><a href="https://torproject.org/" rel="noopener noreferrer">Tor</a> - Censorship circumvention and anonymizing overlay network providing distributed, cryptographically verified name services (<code>.onion</code> domains) to enhance publisher privacy and service availability.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2019/01/01/"/>
    <summary>4 awesome projects updated on Jan 01, 2019</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/11/16/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Nov 16, 2018</title>
    <updated>2018-11-16T03:15:20.000Z</updated>
    <published>2018-11-16T03:15:20.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://github.com/StackExchange/blackbox" rel="noopener noreferrer">BlackBox (⭐6.6k)</a> - Safely store secrets in Git/Mercurial/Subversion by encrypting them "at rest" using GnuPG.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/11/16/"/>
    <summary>1 awesome projects updated on Nov 16, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/08/29/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 29, 2018</title>
    <updated>2018-08-29T16:54:21.000Z</updated>
    <published>2018-08-29T02:31:15.000Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention / Code libraries and bindings</p>
</h3>
<ul>
<li><a href="https://github.com/rshipp/python-dshield" rel="noopener noreferrer">python-dshield (⭐24)</a> - Pythonic interface to the Internet Storm Center/DShield API.</li>
</ul>

<ul>
<li><a href="https://github.com/InQuest/python-sandboxapi" rel="noopener noreferrer">python-sandboxapi (⭐132)</a> - Minimal, consistent Python API for building integrations with malware sandboxes.</li>
</ul>

<ul>
<li><a href="https://github.com/oasis-open/cti-python-stix2" rel="noopener noreferrer">python-stix2 (⭐356)</a> - Python APIs for serializing and de-serializing Structured Threat Information eXpression (STIX) JSON content, plus higher-level APIs for common tasks.</li>
</ul>
<h3><p>Threat intelligence / Threat hunting</p>
</h3>
<ul>
<li><a href="https://github.com/InQuest/ThreatIngestor" rel="noopener noreferrer">ThreatIngestor (⭐801)</a> - Extendable tool to extract and aggregate IOCs from threat feeds including Twitter, RSS feeds, or other sources.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/08/29/"/>
    <summary>4 awesome projects updated on Aug 29, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/08/22/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 22, 2018</title>
    <updated>2018-08-22T17:55:28.000Z</updated>
    <published>2018-08-22T17:55:28.000Z</published>
    <content type="html"><![CDATA[<h3><p>Incident Response tools / Sandboxes</p>
</h3>
<ul>
<li><a href="https://github.com/ThreatResponse/aws_ir" rel="noopener noreferrer">aws_ir (⭐339)</a> - Automates your incident response with zero security preparedness assumptions.</li>
</ul>
<h3><p>Incident Response tools / Evidence collection</p>
</h3>
<ul>
<li><a href="https://github.com/ThreatResponse/margaritashotgun" rel="noopener noreferrer">Margarita Shotgun (⭐236)</a> - Command line utility (that works with or without Amazon EC2 instances) to parallelize remote memory acquisition.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/08/22/"/>
    <summary>2 awesome projects updated on Aug 22, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/08/21/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 21, 2018</title>
    <updated>2018-08-21T18:32:59.000Z</updated>
    <published>2018-08-21T18:32:59.000Z</published>
    <content type="html"><![CDATA[<h3><p>DevSecOps / Service meshes</p>
</h3>
<ul>
<li><a href="https://github.com/awslabs/git-secrets" rel="noopener noreferrer">Git Secrets (⭐12k)</a> - Prevents you from committing passwords and other sensitive information to a git repository.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/08/21/"/>
    <summary>1 awesome projects updated on Aug 21, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/08/10/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 10, 2018</title>
    <updated>2018-08-10T18:30:53.000Z</updated>
    <published>2018-08-10T18:30:53.000Z</published>
    <content type="html"><![CDATA[<h3><p>Host-based tools / Tarpits</p>
</h3>
<ul>
<li><a href="https://www.ossec.net/" rel="noopener noreferrer">Open Source HIDS SECurity (OSSEC)</a> - Fully open source and free, feature-rich, Host-based Instrusion Detection System (HIDS).</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/08/10/"/>
    <summary>1 awesome projects updated on Aug 10, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/08/06/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 06, 2018</title>
    <updated>2018-08-06T20:50:08.000Z</updated>
    <published>2018-08-06T17:24:57.000Z</published>
    <content type="html"><![CDATA[<h3><p>Host-based tools / Tarpits</p>
</h3>
<ul>
<li><a href="https://www.fail2ban.org/" rel="noopener noreferrer">Fail2ban</a> - Intrusion prevention software framework that protects computer servers from brute-force attacks.</li>
</ul>
<h3><p>Incident Response tools / IR management consoles</p>
</h3>
<ul>
<li><a href="https://github.com/certsocietegenerale/FIR" rel="noopener noreferrer">Fast Incident Response (FIR) (⭐1.7k)</a> - Cybersecurity incident management platform allowing for easy creation, tracking, and reporting of cybersecurity incidents.</li>
</ul>

<ul>
<li><a href="https://thehive-project.org/" rel="noopener noreferrer">TheHive</a> - Scalable, free Security Incident Response Platform designed to make life easier for SOCs, CSIRTs, and CERTs, featuring tight integration with MISP.</li>
</ul>

<ul>
<li><a href="https://github.com/defpoint/threat_note" rel="noopener noreferrer">threat_note (⭐422)</a> - Web application built by Defense Point Security to allow security researchers the ability to add and retrieve indicators related to their research.</li>
</ul>
<h3><p>Incident Response tools / Evidence collection</p>
</h3>
<ul>
<li><a href="https://github.com/jipegit/OSXAuditor" rel="noopener noreferrer">OSXAuditor (⭐3.1k)</a> - Free macOS computer forensics tool.</li>
</ul>

<ul>
<li><a href="https://github.com/Yelp/osxcollector" rel="noopener noreferrer">OSXCollector (⭐1.9k)</a> - Forensic evidence collection &amp; analysis toolkit for macOS.</li>
</ul>

<ul>
<li><a href="https://github.com/diogo-fernan/ir-rescue" rel="noopener noreferrer">ir-rescue (⭐456)</a> - Windows Batch script and a Unix Bash script to comprehensively collect host forensic data during incident response.</li>
</ul>
<h3><p>Operating System distributions / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://caine-live.net/" rel="noopener noreferrer">Computer Aided Investigative Environment (CAINE)</a> - Italian GNU/Linux live distribution that pre-packages numerous digital forensics and evidence collection tools.</li>
</ul>
<h3><p>Preparedness training and wargaming / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://github.com/NextronSystems/APTSimulator" rel="noopener noreferrer">APTSimulator (⭐2.4k)</a> - Toolset to make a system look as if it was the victim of an APT attack.</li>
</ul>

<ul>
<li><a href="https://atomicredteam.io/" rel="noopener noreferrer">Atomic Red Team</a> - Library of simple, automatable tests to execute for testing security controls.</li>
</ul>

<ul>
<li><a href="https://github.com/uber-common/metta" rel="noopener noreferrer">Metta (⭐1.1k)</a> - Automated information security preparedness tool to do adversarial simulation.</li>
</ul>

<ul>
<li><a href="https://github.com/alphasoc/flightsim" rel="noopener noreferrer">Network Flight Simulator (<code>flightsim</code>) (⭐1.2k)</a> - Utility to generate malicious network traffic and help security teams evaluate security controls and audit their network visibility.</li>
</ul>

<ul>
<li><a href="https://github.com/redhuntlabs/RedHunt-OS" rel="noopener noreferrer">RedHunt OS (⭐1.2k)</a> - Ubuntu-based Open Virtual Appliance (<code>.ova</code>) preconfigured with several threat emulation tools as well as a defender's toolkit.</li>
</ul>
<h3><p>Threat intelligence / Threat hunting</p>
</h3>
<ul>
<li><a href="https://github.com/mlsecproject/combine" rel="noopener noreferrer">MLSec Combine (⭐650)</a> - Gather and combine multiple threat intelligence feed sources into one customizable, standardized CSV-based format.</li>
</ul>
<h3><p>Transport-layer defenses / Threat signature packages and collections</p>
</h3>
<ul>
<li><a href="https://certbot.eff.org/" rel="noopener noreferrer">Certbot</a> - Free tool to automate the issuance and renewal of TLS certificates from the <a href="https://letsencrypt.org/" rel="noopener noreferrer">LetsEncrypt Root CA</a> with plugins that configure various Web and e-mail server software.</li>
</ul>
<h3><p>Windows-based defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://github.com/linuz/Sticky-Keys-Slayer" rel="noopener noreferrer">Sticky Keys Slayer (⭐324)</a> - Establishes a Windows RDP session from a list of hostnames and scans for accessibility tools backdoors, alerting if one is discovered.</li>
</ul>

<ul>
<li><a href="https://github.com/nsacyber/Windows-Secure-Host-Baseline" rel="noopener noreferrer">Windows Secure Host Baseline (⭐1.5k)</a> - Group Policy objects, compliance checks, and configuration tools that provide an automated and flexible approach for securely deploying and maintaining the latest releases of Windows 10.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/08/06/"/>
    <summary>17 awesome projects updated on Aug 06, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/08/05/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Aug 05, 2018</title>
    <updated>2018-08-05T21:35:00.000Z</updated>
    <published>2018-08-05T21:13:46.000Z</published>
    <content type="html"><![CDATA[<h3><p>Automation and Convention / Code libraries and bindings</p>
</h3>
<ul>
<li><a href="https://github.com/darkoperator/Posh-VirusTotal" rel="noopener noreferrer">Posh-VirusTotal (⭐113)</a> - PowerShell interface to VirusTotal.com APIs.</li>
</ul>
<h3><p>Incident Response tools / IR management consoles</p>
</h3>
<ul>
<li><a href="https://github.com/opensourcesec/CIRTKit" rel="noopener noreferrer">CIRTKit (⭐141)</a> - Scriptable Digital Forensics and Incident Response (DFIR) toolkit built on Viper.</li>
</ul>
<h3><p>Security monitoring / Service and performance monitoring</p>
</h3>
<ul>
<li><a href="https://github.com/facebook/osquery" rel="noopener noreferrer">osquery (⭐22k)</a> - Operating system instrumentation framework for macOS, Windows, and Linux, exposing the OS as a high-performance relational database that can be queried with a SQL-like syntax.</li>
</ul>
<h3><p>Threat intelligence / Threat hunting</p>
</h3>
<ul>
<li><a href="https://github.com/opensourcesec/Forager" rel="noopener noreferrer">Forager (⭐167)</a> - Multi-threaded threat intelligence gathering built with Python3 featuring simple text-based configuration and data storage for ease of use and data portability.</li>
</ul>

<ul>
<li><a href="https://misp-project.org/" rel="noopener noreferrer">Malware Information Sharing Platform and Threat Sharing (MISP)</a> - Open source software solution for collecting, storing, distributing and sharing cyber security indicators.</li>
</ul>

<ul>
<li><a href="https://github.com/viper-framework/viper" rel="noopener noreferrer">Viper (⭐1.5k)</a> - Binary analysis and management framework enabling easy organization of malware and exploit samples.</li>
</ul>
<h3><p>Windows-based defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://github.com/securitywithoutborders/hardentools" rel="noopener noreferrer">HardenTools (⭐2.9k)</a> - Utility that disables a number of risky Windows features.</li>
</ul>

<ul>
<li><a href="https://github.com/realparisi/WMI_Monitor" rel="noopener noreferrer">WMI Monitor (⭐122)</a> - Log newly created WMI consumers and processes to the Windows Application event log.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/08/05/"/>
    <summary>8 awesome projects updated on Aug 05, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/07/31/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 31, 2018</title>
    <updated>2018-07-31T21:12:06.000Z</updated>
    <published>2018-07-31T15:48:26.000Z</published>
    <content type="html"><![CDATA[<h3><p>Honeypots / Supply chain security</p>
</h3>
<ul>
<li><a href="https://github.com/thinkst/canarytokens" rel="noopener noreferrer">CanaryTokens (⭐1.7k)</a> - Self-hostable honeytoken generator and reporting dashboard; demo version available at <a href="https://canarytokens.org/" rel="noopener noreferrer">CanaryTokens.org</a>.</li>
</ul>
<h3><p>Host-based tools / Tarpits</p>
</h3>
<ul>
<li><a href="https://github.com/BinaryDefense/artillery" rel="noopener noreferrer">Artillery (⭐991)</a> - Combination honeypot, filesystem monitor, and alerting system designed to protect Linux and Windows operating systems.</li>
</ul>
<h3><p>Preparedness training and wargaming / Firewall appliances or distributions</p>
</h3>
<ul>
<li><a href="https://github.com/TryCatchHCF/DumpsterFire" rel="noopener noreferrer">DumpsterFire (⭐976)</a> - Modular, menu-driven, cross-platform tool for building repeatable, time-delayed, distributed security events for Blue Team drills and sensor/alert mapping.</li>
</ul>
<h3><p>Tor Onion service defenses / Threat signature packages and collections</p>
</h3>
<ul>
<li><a href="https://onionbalance.readthedocs.io/" rel="noopener noreferrer">OnionBalance</a> - Provides load-balancing while also making Onion services more resilient and reliable by eliminating single points-of-failure.</li>
</ul>

<ul>
<li><a href="https://github.com/mikeperry-tor/vanguards" rel="noopener noreferrer">Vanguards (⭐197)</a> - Version 3 Onion service guard discovery attack mitigation script (intended for eventual inclusion in Tor core).</li>
</ul>
<h3><p>Windows-based defenses / Overlay and Virtual Private Networks (VPNs)</p>
</h3>
<ul>
<li><a href="https://github.com/sensepost/notruler" rel="noopener noreferrer">NotRuler (⭐91)</a> - Detect both client-side rules and VBScript enabled forms used by the <a href="https://github.com/sensepost/ruler" rel="noopener noreferrer">Ruler (⭐2.1k)</a> attack tool when attempting to compromise a Microsoft Exchange server.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/07/31/"/>
    <summary>6 awesome projects updated on Jul 31, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/07/27/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 27, 2018</title>
    <updated>2018-07-27T02:59:28.000Z</updated>
    <published>2018-07-27T02:59:28.000Z</published>
    <content type="html"><![CDATA[<h3><p>Threat intelligence / Threat hunting</p>
</h3>
<ul>
<li><a href="https://nsacyber.github.io/unfetter/" rel="noopener noreferrer">Unfetter</a> - Identifies defensive gaps in security posture by leveraging Mitre's ATT&amp;CK framework.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/07/27/"/>
    <summary>1 awesome projects updated on Jul 27, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/07/26/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 26, 2018</title>
    <updated>2018-07-26T14:53:16.000Z</updated>
    <published>2018-07-26T14:53:16.000Z</published>
    <content type="html"><![CDATA[<h3><p>Threat intelligence / Threat hunting</p>
</h3>
<ul>
<li><a href="https://github.com/nsacyber/GRASSMARLIN" rel="noopener noreferrer">GRASSMARLIN (⭐911)</a> - Provides IP network situational awareness of industrial control systems (ICS) and Supervisory Control and Data Acquisition (SCADA) by passively mapping, accounting for, and reporting on your ICS/SCADA network topology and endpoints.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/07/26/"/>
    <summary>1 awesome projects updated on Jul 26, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/07/25/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 25, 2018</title>
    <updated>2018-07-25T15:26:08.000Z</updated>
    <published>2018-07-25T15:26:08.000Z</published>
    <content type="html"><![CDATA[<h3><p>Security monitoring / Service and performance monitoring</p>
</h3>
<ul>
<li><a href="https://icinga.com/" rel="noopener noreferrer">Icinga</a> - Modular redesign of Nagios with pluggable user interfaces and an expanded set of data connectors, collectors, and reporting tools.</li>
</ul>

<ul>
<li><a href="https://nagios.org" rel="noopener noreferrer">Nagios</a> - Popular network and service monitoring solution and reporting platform.</li>
</ul>

<ul>
<li><a href="https://opennms.org/" rel="noopener noreferrer">OpenNMS</a> - Free and feature-rich networking monitoring system supporting multiple configurations, a variety of alerting mechanisms (email, XMPP, SMS), and numerous data collection methods (SNMP, HTTP, JDBC, etc).</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/07/25/"/>
    <summary>3 awesome projects updated on Jul 25, 2018</summary>
  </entry>
  <entry>
    <id>https://www.trackawesomelist.com/2018/07/23/</id>
    <title>Awesome Cybersecurity Blueteam Updates on Jul 23, 2018</title>
    <updated>2018-07-23T19:14:42.000Z</updated>
    <published>2018-07-23T19:14:42.000Z</published>
    <content type="html"><![CDATA[<h3><p>Network perimeter defenses / Evidence collection</p>
</h3>
<ul>
<li><a href="https://www.cipherdyne.org/fwknop/" rel="noopener noreferrer">fwknop</a> - Protects ports via Single Packet Authorization in your firewall.</li>
</ul>
<h3><p>Security monitoring / Security Information and Event Management (SIEM)</p>
</h3>
<ul>
<li><a href="https://www.alienvault.com/open-threat-exchange/projects" rel="noopener noreferrer">AlienVault OSSIM</a> - Single-server open source SIEM platform featuring asset discovery, asset inventorying, behavioral monitoring, and event correlation, driven by AlienVault Open Threat Exchange (OTX).</li>
</ul>

<ul>
<li><a href="https://www.prelude-siem.org/" rel="noopener noreferrer">Prelude SIEM OSS</a> - Open source, agentless SIEM with a long history and several commercial variants featuring security event collection, normalization, and alerting from arbitrary log input and numerous popular monitoring tools.</li>
</ul>
]]></content>
    <link rel="alternate" href="https://www.trackawesomelist.com/2018/07/23/"/>
    <summary>3 awesome projects updated on Jul 23, 2018</summary>
  </entry>
</feed>