Skip to content
View hulto's full-sized avatar
🐘
Chilling
🐘
Chilling

Highlights

  • Pro

Organizations

@RITRedteam @ritsec

Block or report hulto

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

Detection

19 repositories
Python 380 53 Updated Feb 21, 2026

FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is designed to be used in conjunction with a SIEM or other log ag…

Go 817 56 Updated Feb 17, 2025

A repository of sysmon configuration modules

PowerShell 2,973 640 Updated Aug 21, 2024

Scan strings or files for malware using the Windows Antimalware Scan Interface

C++ 30 4 Updated Mar 24, 2023

XNTSV program for detailed viewing of system structures for Windows.

QMake 468 70 Updated Feb 21, 2026

Scan files or process memory for CobaltStrike beacons and parse their configuration

C# 922 117 Updated Aug 19, 2021

Rapidly Search and Hunt through Windows Forensic Artefacts

Rust 3,450 297 Updated Feb 14, 2026

Elastic Security detection content for Endpoint

YARA 1,377 153 Updated Feb 16, 2026

Counter-Strike: 2 Offset Dumper

Rust 1,767 263 Updated Feb 10, 2026

Extracted Yara rules from Windows Defender mpavbase and mpasbase

YARA 496 77 Updated Dec 22, 2025

Simulate the behavior of AV/EDR for malware development training.

C 561 49 Updated Feb 15, 2024

blint is a Binary Linter that checks the security properties and capabilities of your executables. It can also generate a Software Bill-of-Materials (SBOM) for supported binaries.

Python 432 44 Updated Feb 5, 2026

Collect Windows telemetry for Maldev

C++ 459 53 Updated Jan 30, 2026

Open Source EDR for Windows

Go 1,296 150 Updated Feb 25, 2023

Aims to identify sleeping beacons

C 662 63 Updated Jan 25, 2026

A list of JARM hashes for different ssl implementations used by some C2/red team tools.

144 16 Updated Apr 20, 2023

A secure sandbox environment for malware developers and red teamers to test payloads against detection mechanisms before deployment. Integrates with LLM agents via MCP for enhanced analysis capabil…

YARA 1,311 147 Updated Nov 12, 2025

Monitors ETW for security relevant syscalls maintaining the set called by each unique process

C# 87 11 Updated May 17, 2023