Skip to content
View rubinatorz's full-sized avatar

Organizations

@rabobank-cdc

Block or report rubinatorz

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A little tool to play with Windows security

C 21,241 4,031 Updated May 11, 2025

Empire is a PowerShell and Python post-exploitation agent.

PowerShell 7,796 2,921 Updated Jan 19, 2020

Automate the creation of a lab environment complete with security tooling and logging best practices

HTML 4,901 1,015 Updated Jul 6, 2024

PowerShell Obfuscator

PowerShell 4,189 811 Updated Aug 10, 2023

Web app that provides basic navigation and annotation of ATT&CK matrices

TypeScript 2,312 674 Updated Feb 2, 2026

Detect Tactics, Techniques & Combat Threats

SCSS 2,263 346 Updated Jan 21, 2026

Cyber Threat Intelligence Repository expressed in STIX 2.0

2,025 464 Updated Dec 19, 2025

Template-Driven AV/EDR Evasion Framework

Assembly 1,773 278 Updated Nov 3, 2023

Re-play Security Events

PowerShell 1,720 254 Updated Mar 20, 2024

Binary analysis and management framework

Python 1,557 346 Updated Jun 7, 2023

Open Source Security Events Metadata (OSSEM)

Python 1,287 213 Updated Feb 27, 2023

A Splunk app mapped to MITRE ATT&CK to guide your threat hunts

1,176 179 Updated Jul 26, 2023

Apache Kafka client for Python; high-level & low-level consumer/producer, with great performance.

Python 1,118 223 Updated Jan 27, 2021

Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK

1,076 205 Updated Nov 28, 2024

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from various disk and file formats, developed by Fox-IT (pa…

1,072 80 Updated Nov 25, 2025

Actionable analytics designed to combat threats

Python 1,006 159 Updated May 25, 2022

Hunting queries and detections

879 110 Updated Oct 30, 2025

PowerShell Remote Download Cradle Generator & Obfuscator

PowerShell 853 164 Updated Mar 23, 2018

A tool to retrieve malware directly from the source for security researchers.

Python 564 180 Updated Jul 27, 2017

TRAM is an open-source platform designed to advance research into automating the mapping of cyber threat intelligence reports to MITRE ATT&CK®.

Jupyter Notebook 545 108 Updated May 6, 2025

STIX data representing MITRE ATT&CK

Python 525 118 Updated Dec 23, 2025

An unofficial nodejs API wrapper for Hyundai bluelink and Kia UVO

TypeScript 451 105 Updated Aug 13, 2025

This content is analysis and research of the data sources currently listed in ATT&CK.

Jupyter Notebook 415 109 Updated Sep 13, 2023

Splunk Boss of the SOC version 2 dataset.

413 80 Updated Nov 1, 2022

🚨ATTENTION🚨 The Security Stack Mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here as an archive.

Python 389 61 Updated Apr 3, 2024

Threat Report ATT&CK™ Mapping (TRAM) is a tool to aid analyst in mapping finished reports to ATT&CK.

JavaScript 356 67 Updated Oct 6, 2021

Steal a primary token and spawn cmd.exe using the stolen token

C++ 258 53 Updated Dec 20, 2020

OSSEM Detection Model

Python 184 43 Updated Oct 11, 2022

Dettectinator - The Python library to your DeTT&CT YAML files.

Python 119 11 Updated Jan 22, 2026

attack2jira automates the process of standing up a Jira environment that can be used to track and measure ATT&CK coverage

Python 115 29 Updated Mar 26, 2023
Next