CyberRamen security tools
Running
AI Security
- AI / LLM VocabularyPlain-language glossary of 100+ AI / LLM terms.In browser
- LLM Pre-flight RedactorScan and redact text before pasting into LLMs.In browser
- LLM Output ScannerCheck an LLM's answer for reproduced PII, credentials and unverified citations.In browser
- LLM Token Cost EstimatorApproximate tokens and cost across LLM providers.In browser
- Context-Window Fit CheckerWill it fit in 128k or 1M? Per-model pass/warn/fail.In browser
- Local-Model VRAM CalculatorGPU memory estimates for local LLMs with quant tweaks.In browser
- LLM System-Prompt LinterLint system prompts for foot-guns and leaks.In browser
- MITRE ATLAS SearchOffline search across MITRE ATLAS for AI/ML attacks.In browser
- OWASP LLM Top 10 CheckerSelf-assess OWASP LLM Top 10 (v1.1).In browser
- Prompt Injection PlaygroundLearn prompt injection via 8 simulated scenarios.In browser
- AI/ML Threat Model BuilderWizard threat model for AI/ML systems (STRIDE+ATLAS+OWASP).In browser
- EU AI Act Readiness CheckerEU AI Act self-assessment (Reg 2024/1689).In browser
- NIST AI RMF CheckerSelf-assess NIST AI RMF (Govern/Map/Measure/Manage).In browser
Workflows
All 144 toolsSecurity noodle bar サイバーラーメン
Free security tools, served fresh in your browser.
144 tools for SOC analysts, pentesters, GRC teams and developers — headers, phishing, CVSS, Sigma, DORA, DNS, hashing and more.
本日のセット Today’s set
Spice of the day 激辛
CVE-2026-104286
Fortinet · FortiMail
EPSS 0.022 · top 18% · CVSS 9.8
Chef’s pick String Case Converter
Most used this month
Recently updated
Web & Domain Security
ラーメンTLS, headers, cookies and domain hardening.
Grade a site's HTTP security headers from A+ to F.
Check a TLS certificate's chain, expiry, protocols and cipher strength.
Compose a Content-Security-Policy header with directive guidance and validation.
Scan a domain's DNS, email, TLS and headers for a posture grade.
Detection & SOC
激辛SIEM, detection engineering and SOC operations.
Search MITRE ATT&CK tactics, techniques and procedures offline in your browser.
Build Sigma detection rules visually and convert to Splunk, Sentinel, QRadar.
Build and test YARA rules against sample files in your browser.
Browse ready-made SIEM queries for Splunk, Sentinel, QRadar and Elastic.
GRC & Compliance
弁当Governance, risk and regulatory readiness.
Assess DORA readiness across ICT risk, incident reporting and resilience testing.
Search GDPR, NIS2, DORA, PCI DSS and ISO 27001 controls together.
Self-assess NIS2 obligations and get a gap list with priorities.
Build an ISO 27001 Statement of Applicability across all Annex A controls.
Dev & Everyday Utilities
サイドFormatters, converters, encoders and generators.
Beautify, minify and validate JSON with syntax highlighting and error hints.
Test regular expressions live with capture groups, flags and match highlighting.
Compare two blocks of text and highlight every added or removed line.
Generate and validate UUID versions 1, 4 and 7 in bulk.
Workflows
定食Chained tools around one shared case.
URL and headers in; DMARC verdict, defanged indicators, STIX out.
Guided ransomware playbook with embedded tools and after-action export.
DNS, email auth, TLS and headers scored in one pass.
Suggest a workflow →Which tools do you chain by hand? Tell us.
Also on the menu
Browse the full menu — 144 tools →
For network administrators
CyberRamen.com is a defensive, blue-team resource — SOC, DFIR, detection-engineering and GRC references plus utilities that run entirely in your browser (nothing you paste or type leaves the page). It is safe to allow cyberramen.com for your security, SOC and GRC teams.
Offensive / red-team tooling lives on a deliberately separate domain, offensiveramen.com, which you can restrict to your pentest team — so you can set policy per site. Questions: hello@cyberramen.com.
Content filters may list this under “Hacking / Computer Security” — that categorises the topic, not the intent; everything here is for defenders.
Tools are provided for educational and authorized use only. You are responsible for compliance with applicable laws.