Stars
Open Cyber Threat Intelligence Platform
MISP (core software) - Open Source Threat Intelligence and Sharing Platform
A framework for orchestrating forensic collection, processing and data export
Small and highly portable detection tests based on MITRE's ATT&CK.
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the …
Impacket is a collection of Python classes for working with network protocols.
Directory Services Internals (DSInternals) PowerShell Module and Framework
A toolset to make a system look as if it was the victim of an APT attack
A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.
This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structure to give brief details about them
A little tool to play with Windows security
đź§ The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system
Client API to query any Passive DNS implementation following the Passive DNS - Common Output Format.
Forensic Artifact Collection Tool Matrix
APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover su…
A utility to safely generate malicious network traffic patterns and evaluate controls.
Cloudflare, Sucuri, Incapsula real IP tracker.
Python module for viewing Portable Executable (PE) files in a tree-view using pefile and PyQt5. Can also be used with IDA Pro and Rekall to dump in-memory PE files and reconstruct imports.
Process Spawn Control is a Powershell tool which aims to help in the behavioral (process) analysis of malware. PsC suspends newly launched processes, and gives the analyst the option to either keep…
"Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events. Easily create custom event chains for Blue- & Red Team…