Skip to content
#

blue-teaming-tools

Here are 10 public repositories matching this topic...

Language: All
Filter by language
ghostiam

Deploy decoy AWS IAM identities and catch attacker reconnaissance in seconds. Honeytoken framework with a live dashboard, MITRE ATT&CK journey mapping, and multi-platform mesh (AWS + GitHub + Okta).

  • Updated Aug 9, 2026
  • Go
SysPeek

SysPeek is a blue-team recon and threat-detection toolkit for Windows. It analyzes processes and DLLs with real signature verification, hunts for LOLBin abuse, LSASS dumping, ransomware precursors, and persistence mechanisms, then correlates everything into a single MITRE ATT&CK-mapped Threat Score with JSON/CSV/HTML export.

  • Updated Aug 7, 2026
  • Go

Self-hosted honeytoken system, plant decoy AWS keys, .env secrets, and bait files, then get alerted the moment they're touched or reused.

  • Updated Aug 16, 2026
  • Python

Add this topic to your repo

To associate your repository with the blue-teaming-tools topic, visit your repo's landing page and select "manage topics."

Learn more