The Largest Hub of Cybersecurity Tools
Explore 2750 curated tools and resources
Join Mandos Brief
Get weekly cybersecurity updates, straight in your inbox.
LATEST ADDITIONS
A tool that safely installs packages with npm/yarn by auditing them as part of your install process.
The Node.js Bug Bounty Program is a program aimed at identifying and fixing security vulnerabilities in the Node.js ecosystem.
Free training sessions on Reverse Engineering, Malware Analysis, and Exploit Development.
Android security virtual machine with updated tools and frameworks for reverse engineering and malware analysis.
steg86 is a format-agnostic steganographic tool for x86 and AMD64 binaries.
Malscan is a tool to scan process memory for YARA matches and execute Python scripts.
Tool to inform about potential risks in project dependencies list.
Community-driven collection of open source tools being archived with limited support.
Automate the process of writing YARA rules based on executable code within malware.
The CVE Program catalogs publicly disclosed cybersecurity vulnerabilities.
An informational repo about hunting for adversaries in your IT environment.
A COM Command & Control framework using JScript for stealthy and flexible command and control capabilities on Windows systems.
A tool that showcases the attack surface of a given Android device, highlighting potential vulnerabilities and security risks.
PINNED
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.