malwarezoo's Stars
jbaggs/anomalous-dns
A set of zeek scripts providing a module for tracking and correlating abnormal DNS behavior.
corelight/top-dns
Top DNS Measurement for Bro
leebaird/discover
Custom bash scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload creation using Metasploit. For use with Kali Linux.
microsoft/LightGBM
A fast, distributed, high performance gradient boosting (GBT, GBDT, GBRT, GBM or MART) framework based on decision tree algorithms, used for ranking, classification and many other machine learning tasks.
devsecboy/DomainRecon
Based on URL and Organization Name, collect the IP Ranges, subdomains using various tools like Amass, subfinder, etc.. And check for uphost and Run Masscan to grap CNAME entries, take the screenshot of all the found subdomains using WebScreeShot and more...
dsheng/dnsovertcp
Transform the dns udp request to tcp request to the specify dns server, thus avoid dns poisoning or hijacking, this converter is also similar to the dns-proxy.
djanatyn/dns_client
c program to send dns requests
radman404/DNSSUB
Exfiltrate files over dns requests using Python and/or Bash
breenmachine/dnsftp
Client/Server scripts to transfer files over DNS. Client scripts are small and only use native tools on the host OS.
jtripper/dns-tcp-socks-proxy
Simple daemon to tunnel DNS requests over SOCKS
Arno0x/DNSExfiltrator
Data exfiltration over DNS request covert channel
iagox86/dnscat2
lukebaggett/dnscat2-powershell
A Powershell client for dnscat2, an encrypted DNS command and control tool.
sin5678/dnsquery
send dns query packet
argp/iBoot64helper
IDAPython loader to help with AArch64 iBoot, iBEC, and SecureROM reverse engineering
decoder-it/psgetsystem
getsystem via parent process using ps1 & embeded c#
spitfire55/MegaDev
Bro IDS + ELK Stack to detect and block data exfiltration
Marten4n6/EvilOSX
An evil RAT (Remote Administration Tool) for macOS / OS X.
sooshie/bro-scripts
Various Bro scripts
HarmJ0y/Malleable-C2-Profiles
Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable C2 profiles that you may use.
capstone-engine/capstone
Capstone disassembly/disassembler framework for ARM, ARM64 (ARMv8), Alpha, BPF, Ethereum VM, HPPA, LoongArch, M68K, M680X, Mips, MOS65XX, PPC, RISC-V(rv32G/rv64G), SH, Sparc, SystemZ, TMS320C64X, TriCore, Webassembly, XCore and X86.
radareorg/radare2
UNIX-like reverse engineering framework and command-line toolset
Yara-Rules/rules
Repository of yara rules
rmusser01/Cheatsheets
Penetration Testing/Security Cheatsheets
decalage2/oletools
oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.
cldrn/macphish
Office for Mac Macro Payload Generator
kai5263499/osx-security-awesome
A collection of OSX and iOS security resources
drduh/macOS-Security-and-Privacy-Guide
Guide to securing and improving privacy on macOS
r00t-3xp10it/trojanizer
Trojanize your payload - WinRAR (SFX) automatization - under Linux distros
rxwx/CVE-2018-0802
PoC Exploit for CVE-2018-0802 (and optionally CVE-2017-11882)