-
detection-rules Public
Forked from elastic/detection-rulesRules for Elastic Security's detection engine
Python Other UpdatedFeb 20, 2024 -
YaraHunts Public
Random hunting ordiented yara rules
-
Slides Public
Misc Threat Hunting Resources
-
EVTX-ATTACK-SAMPLES Public
Windows Events Attack Samples
-
protections-artifacts Public
Forked from elastic/protections-artifactsElastic Security detection content for Endpoint
YARA Other UpdatedAug 3, 2022 -
OffensiveVBA Public
Forked from S3cur3Th1sSh1t/OffensiveVBAThis repo covers some code execution and AV Evasion methods for Macros in Office documents
-
macOS-ATTACK-DATASET Public
JSON DataSet for macOS mapped to MITRE ATT&CK Tactics.
-
PCAP-ATTACK Public
PCAP Samples for Different Post Exploitation Techniques
-
HyperDbg Public
Forked from HyperDbg/HyperDbgThe Source Code of HyperDbg Debugger 🐞
-
Windows-classic-samples Public
Forked from microsoft/Windows-classic-samplesThis repo contains samples that demonstrate the API used in Windows classic desktop applications.
-
PythonForWindows Public
Forked from hakril/PythonForWindowsA codebase aimed to make interaction with Windows and native execution easier
-
shad0w Public
Forked from bats3c/shad0wA post exploitation framework designed to operate covertly on heavily monitored enviroments
-
-
CVE-2020-0796-PoC Public
Forked from eerykitty/CVE-2020-0796-PoCPoC for triggering buffer overflow via CVE-2020-0796
Python MIT License UpdatedMar 14, 2020 -
WindowsProtocolTestSuites Public
Forked from microsoft/WindowsProtocolTestSuitesWindows Protocol Test Suites provide interoperability testing against an implementation of the Windows open specifications.
C# Other UpdatedMar 12, 2020 -
CVE-2020-0688_EXP Public
Forked from Yt1g3r/CVE-2020-0688_EXPCVE-2020-0688_EXP Auto trigger payload & encrypt method
-
ysoserial.net Public
Forked from pwntester/ysoserial.netDeserialization payload generator for a variety of .NET formatters
C# MIT License UpdatedFeb 27, 2020 -
webshell Public
Forked from tennc/webshellThis is a webshell open source project
-
sigma Public
Forked from SigmaHQ/sigmaGeneric Signature Format for SIEM Systems
-
ioc-scanner-CVE-2019-19781 Public
Forked from mandiant/ioc-scanner-CVE-2019-19781Indicator of Compromise Scanner for CVE-2019-19781
-
Revoke-Obfuscation Public
Forked from danielbohannon/Revoke-ObfuscationPowerShell Obfuscation Detection Framework
-
Adama Public
Forked from randomuserid/AdamaSearches For Threat Hunting and Security Analytics
-
malware-ioc Public
Forked from eset/malware-iocIndicators of Compromises (IOC) of our various investigations
-
mbc-markdown Public
Forked from MBCProject/mbc-markdownMBC content in markdown
UpdatedJan 28, 2020 -
injectAllTheThings Public
Forked from DanielRTeixeira/injectAllTheThingsSeven different DLL injection techniques in one single project.
-
APT_Digital_Weapon Public
Forked from RedDrip7/APT_Digital_WeaponIndicators of compromise (IOCs) collected from public resources and categorized by Qi-AnXin.
-
fastir_artifacts Public
Forked from OWNsecurity/fastir_artifactsLive forensic artifacts collector
Python GNU General Public License v3.0 UpdatedJan 7, 2020 -
LinEnum Public
Forked from rebootuser/LinEnumScripted Local Linux Enumeration & Privilege Escalation Checks
-
Windows-Kernel-Explorer Public
Forked from AxtMueller/Windows-Kernel-ExplorerA free but powerful Windows kernel research tool.
-
ExchangeLogCollector Public
Forked from dmi3mis/ExchangeLogCollectorExchange Log Collection Script