me009's Stars
maxDcb/C2TeamServer
TeamServer and Client of Exploration Command and Control Framework
WithSecureLabs/cloud-security-vm
Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments
triw0lf/HEARTH
Hunting Exchange And Research Threat Hub
Offensive-Panda/ShadowDumper
Shadow Dumper is a powerful tool used to dump LSASS memory, often needed in penetration testing and red teaming. It uses multiple advanced techniques to dump memory, allowing to access sensitive data in LSASS memory.
AirbusProtect/AD-Canaries
The purpose of this project is to publish and maintain the deployment PowerShell script that automates deployments for Active Directory Canary objects.
palantir/alerting-detection-strategy-framework
A framework for developing alerting and detection strategies for incident response.
D4RK-4RMY/DARKARMY
DARKARMY Hacking Tools Pack - A Penetration Testing Framework .
Galeax/CVE2CAPEC
Generate a MITRE ATT&CK Navigator based on a list of CVEs. Database with CVE, CWE, CAPEC, and MITRE ATT&CK Techniques data is updated daily.
CyberSecurityUP/Red-Team-Exercises
TheCloudScout/m365defender-adx
pmaillot/X32-Behringer
This GIT repo (C language) holds applications and utilities for the Behringer X32 and M32 mixing consoles. Additional details, documentation, implementation examples and apps can be found in my website:
An0nUD4Y/AV-EDR-Lab-Environment-Setup
AV/EDR Lab environment setup references to help in Malware development
TheCloudScout/expertsliveEU
crocodyli/ThreatActors-TTPs
Repository created to share information about tactics, techniques and procedures used by threat actors. Initially with ransomware groups and evolving to other types of threats.
lkarlslund/nifo
Nuke It From Orbit - remove AV/EDR with physical access
wolfcod/lsassdump
lsassdump via RtlCreateProcessReflection and NanoDump
tsale/EDR-Telemetry-Website
cpu0x00/Ghost
Evasive shellcode loader
TaurusOmar/psobf
PowerShell Obfuscator
SlimKQL/Hunting-Queries-Detection-Rules
KQL Queries. Microsoft Defender, Microsoft Sentinel
tvfischer/ps-srum-hunting
PowerShell Script to facilitate the processing of SRUM data for on-the-fly forensics and if needed threat hunting
nianticlabs/venator
A flexible threat detection platform that simplifies rule management and deployment using K8s CronJob and Helm, but can also run standalone or with other job schedulers like Nomad.
SamErde/PowerShell
PowerShell for Active Directory, Defender XDR, Entra ID, Exchange Server, Microsoft 365, Windows, and more! ✌️
WithSecureLabs/C3
Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive toolkits.
t-tani/defender2yara
Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules
PaloAltoNetworks/cobra-tool
Cloud Offensive Breach and Risk Assessment (COBRA) Tool
Pennyw0rth/NetExec-Lab
Lab used for workshop and CTF
techBrandon/DC32-GOAD
SafeBreach-Labs/WindowsDowndate
A tool that takes over Windows Updates to craft custom downgrades and expose past fixed vulnerabilities
microsoft/EventLogExpert