Highlights
- Pro
Lists (32)
Sort Name ascending (A-Z)
Adversary Simulation
Adversary simulationsAI-LLM
Promp engineering etc.Attack Simulation and Automation
Attack simulation, detection engineering, purple teaming. etc.Blue Team Tools
Data Science
Data Visualization
Interactive dashboarding etc.DFIR
DFIR and Hunting Tools
Useful tools for threat hunting and DFIRDFIR: Cloud
Graph
Identity and Cloud
Entra ID, Azure related ttack and defenseJupyter and Python
Knowledge Repos
LOLBins, query repos, etc.Lab Environment and Automation
Malware Analysis and YARA
Microsoft Sentinel and Defender
Red Team: Collection
Red Team: Command and Control
RAT tools etc.Red Team: Credential Access
Red Team: Defense Evasion
Red Team: Discovery
Bloodhound, Kubehound, and other stuffRed Team: Execution
Red Team: Exfiltration
Red Team: Initial Access
Phishing, etc.Red Team: Lateral Movement
Red Team: Persistence
Red Team: Privilege Escalation
Red Team: Reconnaissance
Red Team: Resource Development
Red Team Tools
Red team toolsSecurity Data Science
Training
Stars
An extremely fast Python package and project manager, written in Rust.
Extremely fast Query Engine for DataFrames, written in Rust
This is the Rust course used by the Android team at Google. It provides you the material to quickly teach Rust.
Tunnel all your traffic over Websocket or HTTP2 - Bypass firewalls/DPI - Static binary available
Rapidly Search and Hunt through Windows Forensic Artefacts
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.
RustRedOps is a repository for advanced Red Team techniques and offensive malware, focused on Rust 🦀
The fastest and more comprehensive multiprotocol credentials bruteforcer / password sprayer and enumerator. 🥷
Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS
A Fast (and safe) parser for the Windows XML Event Log (EVTX) format
Freeze.rs is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls written in RUST
BYOVD research use cases featuring vulnerable driver discovery and reverse engineering methodology. (CVE-2025-52915, CVE-2025-1055,).
ROP-based sleep obfuscation to evade memory scanners
A Rust implementation of GodPotato — abusing SeImpersonate to gain SYSTEM privileges. Includes a TCP-based reverse shell and indirect NTAPI for various operations.
Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)
A BYOSI (Bring-Your-Own-Script-Interpreter) Rapid Payload Deployment Toolkit
A tool to play with scheduled tasks on Windows, in Rust
Early cascade injection PoC based on Outflanks blog post written in Rust