Highlights
Stars
Note during self-study OSEP course from the Internet.
TextAttack ๐ is a Python framework for adversarial attacks, data augmentation, and model training in NLP https://textattack.readthedocs.io/en/master/
Adversarial Robustness Toolbox (ART) - Python Library for Machine Learning Security - Evasion, Poisoning, Extraction, Inference - Red and Blue Teams
OllaDeck is a purple technology stack for Generative AI (text modality) cybersecurity. It provides a comprehensive set of tools for both blue team and red team operations in the context of text-basโฆ
A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-183b7df7a2f4
A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.
PowerShell tools to help defenders hunt smarter, hunt harder.
A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID
Doc page listing all public aka.ms links for Microsoft admin portals
Cloud-native SIEM for intelligent security analytics for your entire enterprise.
This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned code.
A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.
This is a simulation of attack by Fancy Bear group (APT28) targeting high-ranking government officials Western Asia and Eastern Europe
Initial Access and Post-Exploitation Tool for AAD and O365 with a browser-based GUI
VECTR is a tool that facilitates tracking of your red and blue team testing activities to measure detection and prevention capabilities across different attack scenarios
A lib that allows using mhyprot2 driver for enum process modules, r/w process memory and kill process.
M365/Azure adversary simulation tool that generates realistic attack telemetry to help blue teams improve their detection and response capabilities.
๐ Awesome list of all things related to Microsoft Entra
Minimal and free Kubernetes distribution with Terraform
Reverse Tunneling made easy for pentesters, by pentesters https://sysdream.com/
Public script from SANS FOR509 Enterprise Cloud Incident Response
This repo aims to help you decipher the UAL from a Digital Forensics & Incident Response (DFIR) perspective. The UAL is the Microsoft 365 Unified Audit Log.