
APTs-Adversary-Simulation
This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom tools, C2…

This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom tools, C2…

Adversary Emulation Framework

CobaltWhispers is an aggressor script that utilizes a collection of Beacon Object Files (BOF) for Cobalt Strike to perform process injection,…

Resolves Windows APIs at runtime using vectored exception handlers and hashed lookups to hide imports and slow reverse engineering of offensive…

Payload for DLL sideloading of the OneDriveUpdater.exe, based on the PaloAltoNetwork Unit42's blog post

Red Team K8S Adversary Emulation Based on kubectl

Lifetime AMSI bypass

PoC-Malware-TTPs

Detection rule validation

PoC MSI payload based on ASEC/AhnLab's blog post

C2 redirector base on caddy

C2 profile for Mythic tunneling encrypted peer-to-peer agent traffic through IEEE 802.1AB LLDP Organizationally Specific TLVs for covert Layer 2…

Empire is a post-exploitation and adversary emulation framework that is used to aid Red Teams and Penetration Testers.

Linux post-exploitation agent that uses io_uring to stealthily bypass EDR detection by avoiding traditional syscalls.

A Streamlined FTP-Driven Command and Control Conduit for Interconnecting Remote Systems.

Automated Adversary Emulation Platform

Open-source framework for red-teaming generative AI systems: automate attack prompts, score model responses, and audit behavior to identify security…

Infection Monkey - An open-source adversary emulation platform