Lists (1)
Sort Name ascending (A-Z)
Stars
ScanTailor Advanced is the version that merges the features of the ScanTailor Featured and ScanTailor Enhanced versions, brings new ones and fixes.
ScanTailor Advanced is the version that merges the features of the ScanTailor Featured and ScanTailor Enhanced versions, brings new ones and fixes.
GDrive IOC Spider - A GDrive Crawler to search for IOCs inside files
Python code snippets from Discrete Mathematics for Computer Science specialization at Coursera
ShellWasp is a tool to help build shellcode that utilizes Windows syscalls, while overcoming the portability problem associated with Windows syscalls. ShellWasp is built for 32-bit, WoW64. ShellWas…
Two new offensive techniques using Windows Fibers: PoisonFiber (The first remote enumeration & Fiber injection capability POC tool) PhantomThread (An evolved callstack-masking implementation)
A C++ tool for process memory scanning & suspicious telemetry generation that attempts to detect a number of malicious techniques used by threat actors & those which have been incorporated into ope…
An index of Windows binaries, including download links for executables such as exe, dll and sys files
Kestrel threat hunting language: building reusable, composable, and shareable huntflows across different data sources and threat intel.
The Python Risk Identification Tool for generative AI (PyRIT) is an open source framework built to empower security professionals and engineers to proactively identify risks in generative AI systems.
A light-weight first-stage C2 implant written in Nim (and Rust).
Automatically identify and extract potential anti-debugging techniques used by malware.
A Static Dataflow Analysis Framework for iOS Applications.
Win32 and Kernel abusing techniques for pentesters
TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.
Emote Portrait Alive: Generating Expressive Portrait Videos with Audio2Video Diffusion Model under Weak Conditions
Browser extension for reverse image search, available for Chrome, Edge and Safari
ROP ROCKET is an advanced code-reuse attack framework, with extensive ROP chain generation capabilities, including for novel Windows Syscalls attack, a novel Heaven's Gate, and "shellcodeless" ROP.…
Mobile Reconnaissance Framework is a powerful, lightweight and platform-independent offensive mobile security tool designed to help hackers and developers identify and address sensitive information…
Secrets Patterns DB: The largest open-source Database for detecting secrets, API keys, passwords, tokens, and more.
SHAREM is a shellcode analysis framework, capable of emulating more than 20,000 WinAPIs and virutally all Windows syscalls. It also contains its own custom disassembler, with many innovative featur…
A C++ PoC implementation for enumerating Windows Fibers directly from memory
Scripts to run within Ghidra, maintained by the Trellix ARC team