Skip to content
Change the repository type filter

All

    Repositories list

    • NeoPI

      Public
      Python
      12448332Updated Nov 28, 2025Nov 28, 2025
    • Detection-Engineering-Framework

      Public
      219500Updated Nov 26, 2025Nov 26, 2025
    • 1000Updated Nov 26, 2025Nov 26, 2025
    • A repository of curated datasets from various attacks
      Python
      126000Updated Nov 5, 2025Nov 5, 2025
    • attack-ti

      Public
      Vertical and geographic extracts from MITRE ATT&CK
      Shell
      2000Updated Nov 1, 2025Nov 1, 2025
    • AI bug hunter prompt
      2200Updated Sep 23, 2025Sep 23, 2025
    • Aegis

      Public
      National Cyber Defense Investment Planning and Modeling Tool
      JavaScript
      2000Updated Sep 13, 2025Sep 13, 2025
    • HTML
      2000Updated Sep 2, 2025Sep 2, 2025
    • presentations

      Public
      Presentations from the CX Security Labs team
      103500Updated Jul 24, 2025Jul 24, 2025
    • AI4SecOps

      Public
      2100Updated Jul 24, 2025Jul 24, 2025
    • 0000Updated Jul 11, 2025Jul 11, 2025
    • Cisco CX Security Labs Security Research Governance Toolkit
      2000Updated Jun 21, 2025Jun 21, 2025
    • log4j

      Public archive
      Detection rules to look for Log4J usage and exploitation
      YARA
      21890Updated Jun 21, 2025Jun 21, 2025
    • DCOM-Audit: Enumerate, Audit, and Secure DCOM objects
      PowerShell
      3000Updated Jun 11, 2025Jun 11, 2025
    • Windows Active Directory event (Evtx) collection script for scaled up forensic investigations.
      PowerShell
      3000Updated Jun 5, 2025Jun 5, 2025
    • OSBoxDeploy is a set of Ansible playbooks and associated artefacts to deploy OpenStack compute hosted Docker containers. It is work in progress, so do not expect too much, too soon
      Python
      2100Updated May 10, 2025May 10, 2025
    • IOCs

      Public
      Indicators of Compromise
      Python
      39000Updated May 7, 2025May 7, 2025
    • enum4Linux is a Linux alternative to enum.exe for enumerating data from Windows and Samba hosts
      Perl
      2461.3k41Updated Apr 23, 2025Apr 23, 2025
    • Python
      15000Updated Apr 10, 2025Apr 10, 2025
    • Automatically exported from code.google.com/p/unix-privesc-check
      Shell
      226000Updated Mar 29, 2025Mar 29, 2025
    • Splunk Security Content
      Python
      433100Updated Dec 17, 2024Dec 17, 2024
    • AdversaryShield

      Public
      Mitigate adversial attacks on LLMs via automatic deployment of predefined plugins.
      Python
      2000Updated Oct 10, 2024Oct 10, 2024
    • udp-proto-scanner is a Perl script which discovers UDP services by sending triggers to a list of hosts
      Perl
      2310101Updated Jun 6, 2024Jun 6, 2024
    • Threat hunting scripts for Cisco Meraki installations
      Python
      3000Updated May 10, 2024May 10, 2024
    • rdp-sec-check is a Perl script to enumerate security settings of an RDP Service (AKA Terminal Services)
      Perl
      4823551Updated Mar 29, 2024Mar 29, 2024
    • Talon

      Public
      A password guessing tool that targets the Kerberos and LDAP services within the Windows Active Directory environment.
      Go
      82100Updated Feb 27, 2024Feb 27, 2024
    • create an XDR incident from Attack Detection into apache log
      Python
      0000Updated Jan 6, 2024Jan 6, 2024
    • linikatz

      Public
      linikatz is a tool to attack AD on UNIX
      C
      82586170Updated Oct 19, 2023Oct 19, 2023
    • 1000Updated Oct 9, 2023Oct 9, 2023
    • tcpy_scanner

      Public
      Fast cross-platform TCP Connect Scanner written in Python
      Python
      1500Updated Sep 25, 2023Sep 25, 2023