# TryCatchHCF/DumpsterFire

"Security Incidents In A Box!"   A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events. Easily create custom event chains for Blue- & Red Team drills and sensor / alert mapping. Red Teams can create decoy incidents, distractions, and lures to support and scale their operations. Build event sequences ("narratives") to simulate realistic scenarios and generate corresponding network and filesystem artifacts.

Repository: https://github.com/TryCatchHCF/DumpsterFire
Canonical: https://ross.abutalabs.com/products/dumpsterfire
Language: Python
License: MIT
License Family: permissive
Topics: pentesting, hacking, hacking-tool, pentest-tool, automation, security, security-tools, infosec, pentest, red-team, blue-team, red-teams, blue-teams, pentest-tools, hacking-tools
Last push: 2020-05-27T15:00:56+00:00

## Health v2 (maintenance only)
Score: 23/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 0, release rhythm 8, longevity 100
- inputs: {"age_days": 3254, "days_push": 2289, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1039, forks 150 (observed 2026-08-28T04:03:19.974067+00:00)

## What it is
DumpsterFire is a modular, menu-driven, cross-platform Python toolset for building repeatable, time-delayed, distributed security events. It lets Red and Blue Teams chain event modules into narratives that generate realistic network and filesystem artifacts for drills, distractions, and sensor/alert mapping.

## Use cases
- simulate security incidents for blue team drills
- create decoy incidents to distract incident responders during red team engagements
- map and test SIEM sensors and alerting coverage
- turn tabletop exercises into live-fire security range events
- schedule time-delayed distributed security events across subnets
- test analyst response to Mirai botnet-style activity
- build custom event modules for purple team exercises

## When to choose
- you need repeatable, automated security incident simulations for training or drills
- you want to test sensor and alert coverage with controlled event chains
- you are a red team needing decoy activity to distract defenders
- you want an extensible Python framework for custom security event modules

## When to avoid
- you need a production-grade adversary emulation framework like Caldera or Atomic Red Team
- you require actively maintained tooling - the latest release is from 2020
- you need stealthy, sophisticated attack tooling rather than noisy simulation events
- you want a GUI-driven security testing platform

## Facets
- artifact type: cli-tool
- maturity: maintenance
- function: security, penetration-testing, workflow-automation
- domain: security, penetration-testing, developer-tools
- platform: cross-platform, python, cli
- tags: red-team, blue-team, purple-team, siem-testing, security-drills, decoy-incidents, event-chains, automation

## Member repositories
- TryCatchHCF/DumpsterFire (main) score 23

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:03:19.974067+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T07:03:34.890236+00:00, confidence not recorded.
  - readme: https://github.com/TryCatchHCF/DumpsterFire (fetched 2026-08-28T04:03:19.974067+00:00, sha 33d4229c9a41)
- Data as of 2026-08-30T08:39:29.467469+00:00.
