Stars
InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assembly execution as an alternative to Cobalt Strikes traditiona…
Directory Services Internals (DSInternals) PowerShell Module and Framework
Sophos-originated indicators-of-compromise from published reports
This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.
Small and highly portable detection tests based on MITRE's ATT&CK.
The FLARE team's open-source tool to identify capabilities in executable files.
Collection of Event ID ressources useful for Digital Forensics and Incident Response
Lambda function that streamlines containment of an AWS account compromise
A list of RMMs designed to be used in automation to build alerts
PowerShell script helping Incident Responders discover potential adversary persistence mechanisms.
Win10XPE is a Complete Project Based on Win10, Win11 Recovery Environment With Many Windows Features Added...
The great impacket example scripts compiled for Windows
一款lcx.exe在golang下的实现, 可用于内网穿透, 建立TCP反弹隧道用以绕过防火墙入站限制等, This tool is used to establish reverse tunnel in NAT network environment, it can bypass firewall inbound restriction, support all functions of …
Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysis and hunting designed for intel and malware analysts as wel…
Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security perspectives.
Impacket is a collection of Python classes for working with network protocols.
A tool to recover from ESXiArgs ransomware
BC-SECURITY / Empire
Forked from EmpireProject/EmpireEmpire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.
HardeningKitty - Checks and hardens your Windows configuration
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)