#1Tools for blue team, defensive security, and threat protection.
Kitploit recommended

Tool to identify the best mechanisms for privately disclosing a security vulnerability for a package/project.

A spigot plugin to fix CVE-2021-44228 Log4j remote code execution vulnerability, to protect Minecraft clients.

Provides PowerShell and batch scripts to back up, restore, and adjust Access Control Lists (ACLs) mitigating PrintNightmare Print Spooler…

Password Strength Evaluator is a tool to evaluate the strength of passwords and provide recommendations to improve their security.

Threat-Informed Detection & Mitigation Package for MOVEit Transfer Vulnerability

A small powershell script to disable print spooler service using desired state configuration

CVE-2025-0411 7-Zip Mark-of-the-Web Bypass

CarbonBlack hunting queries to detect PrintNightmare (CVE-2021-1675) exploitation via file, module load, and process events, based on Sigma rules.

https://addons.mozilla.org/addon/redactkit/ A Firefox extension that redacts sensitive words (e.g., names, emails, phone no.) in real-time across…

Official guidance and workarounds for CVE-2022-30190, a remote code execution vulnerability in the Microsoft Support Diagnostic Tool (MSDT)…

Detects CVE-2020-16898: "Bad Neighbor"

Fix for PrintNightmare CVE-2021-34527

PowerShell script to mitigate CVE-2022-30190 by updating a registry DWORD key, designed for deployment via RMM tools like ConnectWise Automate.

Exploit script for CVE-2017-0290 targeting Windows Defender on Windows 8.1/10, designed to disable or bypass the built-in antivirus protection.

PowerShell Script for initial mitigation of vulnerability

PowerShell scripts to apply and restore Microsoft's registry-based workaround for CVE-2022-30190 (Follina) vulnerability, deployable via InTune for…

This repository has both an attack detection tool and a Proof-of-Concept (PoC) Python script for the WinRAR CVE-2023-38831 vulnerability.

Checks Netdata ndsudo SUID PATH privilege escalation exposure for CVE-2024-32019 and validates patches without weaponized exploitation.