Security Engineering Tools that defend at scale. 14 Tools · Recon · AppSec · DFIR · Data Protection · Zero Trust
Open source security tools built for practitioners — covering reconnaissance, web and API testing, forensic triage, threat detection, data protection, and zero trust enforcement. All tools MIT licensed unless stated otherwise.
14 Security Engineering Tools
All tools for authorised security testing and defensive use only. MIT licensed unless stated.
Reconnaissance
Passive and active information gathering tools for authorised assessments
tool-01
AD Enumerator
Active Directory enumeration via LDAP queries — maps directory structure, users, groups, and trust relationships in authorised environments.
Python · MIT
tool-02
Network Scanner
Multi-threaded network scanner using Python sockets — port discovery, service fingerprinting, and structured output for assessment reporting.
Python · MIT
Web & API Testing
Authorised web application and API security assessment tooling
tool-03
HTTP Interceptor
HTTP proxy with request/response parsing and SSL inspection — for authorised web application security assessment in controlled environments.
Python · MIT
tool-04
Credential Auditor
Authentication testing tool with rate-limit-aware async requests — validates authentication security in authorised API and web application assessments.
Python · MIT
tool-11
Vulnerability Scanner
Web and API vulnerability scanner with CVE database integration, version fingerprinting, and structured risk-scored reporting for assessment teams.
Python · MIT
Offensive Tooling
Payload and validation tooling for authorised security programme management
tool-05
Payload Generator
Vulnerability validation toolkit for generating encoded payloads (SQLi, XSS, template injection) to confirm findings in authorised security assessments.
Python · MIT
DFIR & Forensics
Digital forensics and incident response tooling for enterprise security teams
tool-07
DFIR Triage Collector
File system forensic triage — metadata extraction, hash verification, and evidence packaging for incident response. Built in Rust for memory-safe operation.
Rust · MIT
tool-10
Endpoint Agent
Lightweight endpoint monitoring agent — process monitoring, file system watchers, and event hooks for detection and response use cases.
Rust · MIT
Detection & Intelligence
Log analysis, anomaly detection, and threat intelligence correlation
tool-08
Log Anomaly Detector
AI/ML-assisted log parsing and anomaly detection — baseline modelling, pattern recognition, and structured alert output for SOC and security engineering teams.
Python · MIT
tool-09
Threat Intel Correlator
Integrates VirusTotal and MITRE ATT&CK APIs for IOC matching, threat actor correlation, and automated intelligence reporting.
Python · MIT
Data Protection
GDPR/CCPA-aligned data protection and encryption tooling
tool-12
Data Classifier
Pattern-matching data classification engine aligned to GDPR and CCPA taxonomy — identifies PII, financial data, and health data at scale across file systems.
Python · MIT
tool-13
Encryption Vault
AES-256 encryption vault with secure key management built in Rust — memory-safe cryptographic operations for sensitive data at rest.
Rust · MIT
tool-14
Data Destructor
DoD 5220.22-M compliant secure data erasure with audit trail generation — HDD and SSD destruction protocols for government and enterprise procurement.
Rust · MIT
Zero Trust
Policy engine and enforcement tooling for zero trust architecture
tool-15
Zero Trust Enforcer
Policy engine with least-privilege enforcement and identity-aware proxy capabilities — capstone tool tying together identity, access, and network security controls.
Rust · MIT