Open source & live tools

Projects

Open-source tooling, methodology, and research released through Red Spectrum.

The tools and references below are released publicly to support the broader security community. Several are used in Red Spectrum engagements; others exist because the gap they fill wasn’t being filled elsewhere.

Live Tools

WPS Calls for Service

● Live

Day-by-day view of Winnipeg Police Service calls for service — volume, call type, hour, and neighbourhood, with every day measured against a seasonal baseline of the same weekday. Built from the WPS public dashboard, with a JSON endpoint for each day.

livedatavisualizationopen-data

WFPS Incident Map

● Live

Real-time map of active Winnipeg Fire Paramedic Service incidents — fire rescue, medical, and other dispatches — refreshed every minute from the City of Winnipeg Open Data portal.

livedatavisualizationopen-data

TSCM-TAFL

● Live

Spectrum lookup across Canadian and US licensing data: ISED TAFL terrestrial and satellite records, 6 GHz AFC stations, cell sites, and amateur operators alongside FCC ASR, ULS, IBFS, and LMS. Radius search from any point, monthly registration diffs, and a TSCM mode that models received level inside a structure to rank nearby emitters.

livetscmrfsignalsspectrum

GitHub

PowerHuntShares-dotnet

C#

.NET port of PowerHuntShares for discovering, analyzing, and reporting excessive privileges on SMB shares in Active Directory environments.

active-directorysmbrecon

SMBAudit

Python

Checks SMB share read/write access across many hosts via Impacket and exports a CSV flagging every share reachable with READ or WRITE permission.

smbauditblue-team-input

WFPSIncidents

Java

Collector behind the live WFPS incident map — pulls and plots City of Winnipeg fire and paramedic calls from the open data feed.

open-datavisualization

Jir-Thief

Python

Jira credential and data extraction tooling for red team engagements where Atlassian ecosystems are in scope.

red-teamatlassianpost-ex

OWASP-API-Checklist

Markdown

Practical checklist mapped to the OWASP API Security Top 10 for use during web/API penetration tests and design reviews.

apiowaspmethodology

TSCMTAFL

● Private

Python

Technical Surveillance Countermeasures — Threat Actor Frequency Library. Reference data and tooling supporting RF-side TSCM operations.

tscmrfsignals