Highlights
- Pro
Lists (32)
Sort Name ascending (A-Z)
Adversary Simulation
Adversary simulationsAI-LLM
Promp engineering etc.Attack Simulation and Automation
Attack simulation, detection engineering, purple teaming. etc.Blue Team Tools
Data Science
Data Visualization
Interactive dashboarding etc.DFIR
DFIR and Hunting Tools
Useful tools for threat hunting and DFIRDFIR: Cloud
Graph
Identity and Cloud
Entra ID, Azure related ttack and defenseJupyter and Python
Knowledge Repos
LOLBins, query repos, etc.Lab Environment and Automation
Malware Analysis and YARA
Microsoft Sentinel and Defender
Red Team: Collection
Red Team: Command and Control
RAT tools etc.Red Team: Credential Access
Red Team: Defense Evasion
Red Team: Discovery
Bloodhound, Kubehound, and other stuffRed Team: Execution
Red Team: Exfiltration
Red Team: Initial Access
Phishing, etc.Red Team: Lateral Movement
Red Team: Persistence
Red Team: Privilege Escalation
Red Team: Reconnaissance
Red Team: Resource Development
Red Team Tools
Red team toolsSecurity Data Science
Training
Stars
This repo includes ChatGPT prompt curation to use ChatGPT and other LLM tools better.
Fabric is an open-source framework for augmenting humans using AI. It provides a modular system for solving specific problems using a crowdsourced set of AI prompts that can be used anywhere.
AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security weaknesses
π§ββοΈ Node.js Command & Control for Script-Jacking Vulnerable Electron Applications
Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders
Data exfiltration over DNS request covert channel
Digital Forensics Investigation Platform
A tool to transform Chromium browsers into a C2 Implant
GCPGoat : A Damn Vulnerable GCP Infrastructure
Awesome Panel supports Panel and its users. We want to show how awesome the framework is and help push it forward. β€οΈππ
CA Optics - Azure AD Conditional Access Gap Analyzer
Collection of macOS persistence methods and miscellaneous tools in JXA
PAYGoat is a banking application built for educational purposes, focused on exploring and understanding common business logic flaws in financial platforms.
A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you come from where did you go) in Security Incidents and Threat Hunts
βοΈ HTML Smuggling generator&obfuscator for your Red Team operations
Proof of concept: using a Cloudflare worker for AITM attacks
Easy to use, open-source infrastructure management platform, crafted specifically for red team engagements.
Microsoft Entra ID App Audit Solution (AADAppAudit)
Azure AiTM Function PoC to phish Entra ID Credentials