Lists (1)
Sort Name ascending (A-Z)
Stars
Scan vulnerable drivers on Windows with loldrivers.io
A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data into Splunk
SharpSuccessor is a .NET Proof of Concept (POC) for fully weaponizing Yuval Gordon’s (@YuG0rd) BadSuccessor attack from Akamai.
A binary and file access authorization system for macOS.
Share, discover, and collect prompts from the community. Free and open source — self-host for your organization with complete privacy.
Writing custom backdoor payloads with C# - Defcon 27 Workshop
mthcht / Splunk4DFIR
Forked from mf1d3l/Splunk4DFIRharness the power of Splunk for your investigations
A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you come from where did you go) in Security Incidents and Threat Hunts
A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs
Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.
Checks expired domains for categorization/reputation and Archive.org history to determine good candidates for phishing and C2 domain names
Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-time alerting, helping small to medium-sized organizations se…
CLI platform to experiment with codegen. Precursor to: https://lovable.dev
An opensource sigma conversion tool built using pysigma
Interact with your documents using the power of GPT, 100% privately, no data leaks
AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK framework. The tool generates tailored incident resp…
Tenzir is the data pipeline engine for security teams.
The Threat Actor Profile Guide for CTI Analysts
Terminate AV/EDR Processes using kernel driver
Kubernetes WithOut Kubelet - Simulates thousands of Nodes and Clusters.
Event Tracing For Windows (ETW) Resources
This project aims to compare and evaluate the telemetry of various EDR products.