CyberRamen security tools
Running
Incident Response & Threat Intel
- IOC DefangerDefang malicious indicators for safe sharing.In browser
- IOC Pivoting ToolClassify an indicator and jump straight to it in VirusTotal, Shodan, AbuseIPDB, URLhaus, crt.sh, NVD and more.In browser
- STIX 2.1 FormatterConvert IOC lists into STIX 2.1 bundles.In browser
- Incident Timeline BuilderBuild incident timelines from logs with annotations.In browser
- Log RedactorAnonymize IPs, emails, tokens in logs before sharing.In browser
- Incident Report GeneratorNIS2 / DORA / GDPR incident report templates with deadlines.In browser
- Tabletop Exercise GeneratorReady-to-run IR tabletop scenarios with injects.In browser
- SecOps Response Templates100+ security email and ticket templates.In browser
- File Signature IdentifierIdentify file formats by magic numbers. 60+ signatures.In browser
- Security Feeds (RSS)Aggregated security news, CVEs, threat intel from 40+ sources.Server
- USB Hygiene HelperAnalyze USB device lists for BadUSB / unknown vendors.In browser
Workflows
All 144 toolsSecurity noodle bar サイバーラーメン
Free security tools, served fresh in your browser.
144 tools for SOC analysts, pentesters, GRC teams and developers — headers, phishing, CVSS, Sigma, DORA, DNS, hashing and more.
本日のセット Today’s set
Spice of the day 激辛
CVE-2026-104286
Fortinet · FortiMail
EPSS 0.022 · top 18% · CVSS 9.8
Chef’s pick String Case Converter
Most used this month
Recently updated
Web & Domain Security
ラーメンTLS, headers, cookies and domain hardening.
Grade a site's HTTP security headers from A+ to F.
Check a TLS certificate's chain, expiry, protocols and cipher strength.
Compose a Content-Security-Policy header with directive guidance and validation.
Scan a domain's DNS, email, TLS and headers for a posture grade.
Detection & SOC
激辛SIEM, detection engineering and SOC operations.
Search MITRE ATT&CK tactics, techniques and procedures offline in your browser.
Build Sigma detection rules visually and convert to Splunk, Sentinel, QRadar.
Build and test YARA rules against sample files in your browser.
Browse ready-made SIEM queries for Splunk, Sentinel, QRadar and Elastic.
GRC & Compliance
弁当Governance, risk and regulatory readiness.
Assess DORA readiness across ICT risk, incident reporting and resilience testing.
Search GDPR, NIS2, DORA, PCI DSS and ISO 27001 controls together.
Self-assess NIS2 obligations and get a gap list with priorities.
Build an ISO 27001 Statement of Applicability across all Annex A controls.
Dev & Everyday Utilities
サイドFormatters, converters, encoders and generators.
Beautify, minify and validate JSON with syntax highlighting and error hints.
Test regular expressions live with capture groups, flags and match highlighting.
Compare two blocks of text and highlight every added or removed line.
Generate and validate UUID versions 1, 4 and 7 in bulk.
Workflows
定食Chained tools around one shared case.
URL and headers in; DMARC verdict, defanged indicators, STIX out.
Guided ransomware playbook with embedded tools and after-action export.
DNS, email auth, TLS and headers scored in one pass.
Suggest a workflow →Which tools do you chain by hand? Tell us.
Also on the menu
Browse the full menu — 144 tools →
For network administrators
CyberRamen.com is a defensive, blue-team resource — SOC, DFIR, detection-engineering and GRC references plus utilities that run entirely in your browser (nothing you paste or type leaves the page). It is safe to allow cyberramen.com for your security, SOC and GRC teams.
Offensive / red-team tooling lives on a deliberately separate domain, offensiveramen.com, which you can restrict to your pentest team — so you can set policy per site. Questions: hello@cyberramen.com.
Content filters may list this under “Hacking / Computer Security” — that categorises the topic, not the intent; everything here is for defenders.
Tools are provided for educational and authorized use only. You are responsible for compliance with applicable laws.