Tools
Every tool on the site, grouped by use case — vulnerability management, web security, OSINT, forensics, threat mapping, and AI.
Toolkit
All Tools
Every tool on the site, grouped by what it helps you do. Want defender-focused workflow guidance? Start at Blue Team. New to security? Try the guided learning paths.
Vulnerability Management
Triage and prioritize vulnerabilities by real-world exploit likelihood.
EPSS Scanner
Look up Exploit Prediction Scoring System (EPSS) scores for any CVE, with 30-day history and CISA KEV cross-reference.
Web Security
Inspect live web applications for missing protections.
Header Analyzer
Inspect HTTP security headers and surface missing protections (CSP, HSTS, X-Frame-Options, Permissions-Policy).
OSINT & Intel
Reputation, attribution, and adversary research from open sources.
IP Reputation
Query IPs against AbuseIPDB, GreyNoise, and other threat-intel sources in one shot.
OSINT Search
Curated OSINT and cybersecurity-focused search engines for threat intelligence research.
MITRE ATT&CK
Globally accessible knowledge base of adversary tactics, techniques, and procedures.
Forensics & Analysis
Identify files, hashes, and indicators of compromise.
Hash Lookup
Check MD5/SHA-1/SHA-256 hashes against CIRCL Hashlookup (NSRL known-good and known-malicious).
Log Analyzer
In devParse common log formats (Apache, Nginx, syslog, JSON-lines) to surface suspicious patterns and IOCs.
Threat Mapping
Real-time threat telemetry and global attack visualization.
Threat Maps
Curated set of live threat maps from major vendors and security feeds.
AI & Prompt Engineering
Prompts and AI tooling for daily security work.
AI Tools & Prompts
Hand-tuned prompts for ChatGPT and Copilot covering policy drafting, log analysis, and incident triage.
Hubs
Themed landing pages that group tools by audience.