Tools forged for defenders.
FORGE is a community-first analyst toolkit for quick triage, transformation, and investigation prep. Use it to inspect headers, extract indicators, generate hashes, decode payloads, test patterns, and stay oriented with a compact security watch board.
Security watch board
A clean situational dashboard for defenders: global signal view, rotating attacker feed, and high-priority vulnerability watchlist. It gives the page a living command-center feel while keeping the experience focused and practical.
Analyst workbench
Practical utilities for quick triage and investigation prep. The interface is intentionally large, readable, and built for repeated use on laptop and mobile.
Email Header Analyzer
Extract sender, auth status, real public source IP, hop timeline, and the hop causing the largest delay.
IOC Extractor
Pull IPs, domains, URLs, emails, hashes, and CVEs from pasted text or an uploaded file.
Hash and Decode Lab
Generate common hashes, decode Base64/JWT/hex/URL data, and handle quick analyst transformations.
Email Header Analyzer
Paste full raw headers. FORGE unfolds multiline headers, walks the Received chain chronologically, skips private/loopback IPs, and calls out the largest delivery delay.
IOC Extractor
Extract useful indicators from logs, tickets, alerts, malware notes, or copied incident chat text. File upload is processed locally in the browser.
Hash Lab
Generate MD5 for text and SHA family hashes for text or files. SHA uses the browser WebCrypto API.
Decoder
Decode or encode Base64, URL encoding, hex, and JWT payloads without sending data outside the browser.
Output will appear here.
Subnet Calculator
Quick IPv4 CIDR math for analysts reviewing firewall logs, allowlists, alerts, or cloud network ranges.
Regex Tester
Build and test log patterns quickly. Matches are shown with index, value, and captured groups.
Coming soon
FORGE will keep expanding into a fuller analyst companion. Join the launch list if you want to know when the next intelligence modules go live.
AI Log Explainer
Paste noisy logs and receive a plain-English explanation, likely root cause, and suggested next actions.
IP Reputation
One readable verdict for suspicious IPs, including abuse signals, exposed services, and risk context.
CVE Intelligence
Track high-priority vulnerabilities with severity, exploitability, patch status, and an analyst verdict.
URL Reputation
Check suspicious URLs and domains with clear malware, phishing, and scanner context.
Global Attack Radar
A richer live-style operating picture of active campaigns, scanner activity, and regional signals.
Notify me
Join the FORGE launch list for the next set of security intelligence tools.