boodera's Stars
google/oss-fuzz
OSS-Fuzz - continuous fuzzing for open source software.
helmetjs/helmet
Help secure Express apps with various HTTP headers
SigmaHQ/sigma
Main Sigma Rule Repository
EmpireProject/Empire
Empire is a PowerShell and Python post-exploitation agent.
secfigo/Awesome-Fuzzing
A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on ) for learning Fuzzing and initial phases of Exploit Development like root cause analysis.
google/grr
GRR Rapid Response: remote live forensics for incident response
s3tools/s3cmd
Official s3cmd repo -- Command line tool for managing S3 compatible storage services (including Amazon S3 and CloudFront).
OTRF/ThreatHunter-Playbook
A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.
0x4D31/awesome-threat-detection
✨ A curated list of awesome threat detection and hunting resources 🕵️♂️
facebookarchive/scribe
Scribe is a server for aggregating log data streamed in real time from a large number of servers.
disposable-email-domains/disposable-email-domains
a list of disposable and temporary email address domains
Neo23x0/signature-base
YARA signature and IOC database for my scanners and tools
netbiosX/Checklists
Red Teaming & Pentesting checklists for various engagements
MHaggis/sysmon-dfir
Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.
palantir/osquery-configuration
A repository for using osquery for incident detection and response
mikesplain/openvas-docker
A Docker container for Openvas
sin5678/gh0st
a open source remote administrator tool
MicrosoftDocs/sysinternals
Content for sysinternals.com
cylance/CyBot
Open Source Threat Intelligence Chat Bot
GreyNoise-Intelligence/api.greynoise.io
Code + documentation for the public GreyNoise API
p0w3rsh3ll/AutoRuns
🚀AutoRuns is a PowerShell module that will help do live incident response and enumerate autoruns artifacts that may be used by legitimate programs as well as malware to achieve persistence.
jakshi/devops-interview-questions
Repository with DevOps interview questions.
IFGHou/wapiti
A web-application vulnerability scanner
sixdub/DomainTrustExplorer
Python script for analyis of the "Trust.csv" file generated by Veil PowerView. Provides graph based analysis and output.
PortSwigger/command-injection-attacker
SHELLING - a comprehensive OS command injection payload generator
Project-Prismatica/Prismatica
Responsive Command and Control System
splunk/splunk-reskit-powershell
Splunk Resource Kit for Powershell
sin5678/A-Protect
A-Protect Anti Rootkit Tool
sin5678/icmp_shell
shell over icmp
sin5678/dnsquery
send dns query packet