
bluemonday
bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS
Tools for blue team, defensive security, and threat protection.

bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

Single Packet Authorization > Port Knocking

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

PacketFence is a fully supported, trusted, Free and Open Source network access control (NAC) solution. Boasting an impressive feature set including a…

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

Software sandbox for storage of sensitive information in memory.

Best Practice Auditd Configuration

Curated collection of EDR bypass resources including PoCs, tools, workshops, presentations, and blogs for ethical hacking and red team operations.

🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc


iptables-based stateful firewall with human-friendly configuration and optional QoS (FireQOS) for bandwidth management.

SigFlip is a tool for patching authenticode signed PE files (exe, dll, sys ..etc) without invalidating or breaking the existing signature.

An information security preparedness tool to do adversarial simulation.

Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of…

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

Whoami provides enhanced privacy, anonymity for Debian and Arch based linux distributions

Open-source Windows kernel-level EDR lab for understanding and testing detection methods against process injection, credential dumping, and other…

Hide your Powershell script in plain sight. Bypass all Powershell security features