
sliver
Adversary Emulation Framework

Adversary Emulation Framework

Framework for auditing machine learning algorithms against adversarial attacks and biases, providing educational tools and an academic paper to…

Web-based adversary emulation platform that orchestrates Atomic Red Team tests across Windows endpoints via Go agents, with MITRE ATT&CK mapping, APT…

Hardware Breakpoint (DR0-DR7) based patch-less user-mode hooking & telemetry instrumentation engine (AMSI, WLDP & ETW PoC).

Build guide for Red Teaming home lab. GOAD lab setup in Proxmox and pfSense, Operator/C2 and Redirectors.

A toolset to make a system look as if it was the victim of an APT attack

Scripted framework for simulating over 50 MITRE ATT&CK techniques to test blue team detection capabilities. Includes Python scripts and a compiled…

An information security preparedness tool to do adversarial simulation.

A Streamlined FTP-Driven Command and Control Conduit for Interconnecting Remote Systems.

Purple-team telemetry & simulation toolkit.

Compares Windows archiver support for Mark of the Web propagation, helping teams assess which tools preserve MOTW and mitigate macro-based malware…

PoCs and tools for investigation of Windows process execution techniques

Crystal port of GodPotato to abuse SeImpersonatePrivilege with indirect syscalls, dynamic API resolution and compile-time string obfuscation. Run…

Adversary simulation and Red teaming platform with AI

Windows 10 DLL Injector via Driver utilizing VAD and hiding the loaded driver

C2 profile for Mythic tunneling encrypted peer-to-peer agent traffic through IEEE 802.1AB LLDP Organizationally Specific TLVs for covert Layer 2…

Local white-box gradient attacks for open-weight LLMs: GCG/PEZ suffix search, layer saliency, weight snapshots, and rank-1 suffix-to-delta fitting…

Load your driver like win32k.sys