theadminstack.com

SecOps Tools

Free browser-based tools for SOC analysts, detection engineers, and threat hunters — event triage, KQL hunting, and CVE intelligence. No accounts, no tracking, no data sent to servers.

Windows Event ID Lookup
Search 220+ Windows Event IDs across Security, Sysmon, PowerShell, System, and Application logs. Includes MITRE ATT&CK mappings, attack context, detection notes, and Sigma rule stubs.
224 events · Client-side · No data sent Open →
KQL Query Builder
Build valid KQL for Microsoft Sentinel and Defender XDR Advanced Hunting — guided pipeline with the right schema and time column per product, type-aware filters, and 15 MITRE ATT&CK-tagged starter templates.
33 tables · 15 templates · Client-side · No data sent Open →
CVE Lookup
Search the NIST National Vulnerability Database by keyword, vendor, product, severity, and date. CVSS scoring, affected-product breakdowns, and per-CVE detail pages — live data, nothing stored.
NIST NVD · Search · CVSS · Detail Open →