Now available

Security tools
built by practitioners.

AI-powered detection engineering and penetration testing tools designed for the security teams that actually do the work. No fluff. No dashboards for dashboards. Just capability.

log-lens — detection engineering
$ log-lens analyze --ttp "credential dumping"

mapping to MITRE ATT&CK...
T1003.001 — LSASS Memory
T1003.002 — Security Account Manager
T1003.003 — NTDS

required log sources:
Windows Security Event Log (4624, 4648)
Sysmon (Process Create, ProcessAccess)
PowerShell Script Block Logging

3 techniques mapped · 3 log sources identified
$
Products

Purpose-built security tools

Each tool solves a specific problem that security practitioners face every day — and solves it well.

Available now

Log Lens

AI-powered detection engineering assistant. Describe a threat in plain language and get mapped ATT&CK techniques, required log sources, and SIEM-agnostic detection logic.

  • Natural language to ATT&CK mapping
  • Log source identification & gap analysis
  • SIEM-agnostic detection rule generation
  • Coverage heatmap visualization
  • Exportable detection libraries
Learn More →
Coming soon

Fissure

A penetration testing browser built on Electron. MITM proxy, payload libraries, CyberChef, and user-agent spoofing — unified in a single workflow for security assessments.

  • Built-in MITM proxy with request interception
  • 70+ categorized injection payloads
  • Integrated CyberChef data transformation
  • User-agent spoofing with 20+ presets
  • Cross-platform (Windows, macOS, Linux)
Get Notified →
Why Tengu Labs

Built from the trenches

20+ years of enterprise security experience distilled into tools that solve real problems.

🎯

Practitioner-first

Built by someone who runs pen tests, writes detections, and manages vulnerability programs — not a product team guessing at workflows.

🧠

AI-augmented, not AI-dependent

AI accelerates the work. You still make the decisions. Every output is transparent, editable, and exportable.

🔓

Open source core

Core engines are AGPL-3.0 licensed. Inspect the code, contribute, self-host. SaaS tiers add convenience, not lock-in.

No bloat

Each tool does one thing exceptionally well. No feature creep, no dashboard theater, no enterprise-sales-driven roadmap.

🏗️

Enterprise-grade

Designed for teams that operate in regulated industries — insurance, financial services, healthcare. Compliance-aware from day one.

🔄

Continuous evolution

New ATT&CK techniques, log sources, and payload categories added regularly. The threat landscape changes — your tools should too.

Ready to sharpen your edge?

Start with Log Lens free — 10 queries per month, no credit card required.

Start Free → Talk to Us