
wazuh
Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

C2 redirector and red team infrastructure manager with malleable profile validation, multi-protocol listeners, JA3 fingerprint filtering, sandbox…

MCP server for Google search and page fetching using headless Chromium

System-wide anonymity protocol routing all traffic through Tor with Mixnet-like obfuscation, packet shuffling, cover traffic, and anti-forensic…

Cross-platform DNS TXT record backdoor with encrypted command execution, anti-debugging, process cloaking, and payload generation for red team…

Cloud-based Web Application Firewall (WAF) providing L3/L7 protection against SQLi, XSS, DDoS, and bot attacks. Features AI assistant, anti-bot…

Multi-threaded network intrusion detection and prevention system with rule-based detection, protocol-aware inspection, and pcap analysis for…

Nginx Block Bad Bots, Spam Referrer Blocker, Vulnerability Scanners, User-Agents, Malware, Adware, Ransomware, Malicious Sites, with anti-DDOS,…

🇺🇦 Windows driver with usermode interface which can hide processes, file-system and registry objects, protect processes and etc

Collection of Golang offensive security tools for red team operations, featuring process injection, EDR/AV evasion, AMSI/ETW bypass, token…

A filter list that hides website features which use Generative AI & content labeled as AI Generated.

🛡️ Open-source and cloud-native Web Application Firewall (WAF)

High-performance network traffic analysis framework for security monitoring. Provides deep protocol analysis, application-layer state tracking, and…

Successor of Undetected-Chromedriver. Providing a blazing fast framework for web automation, webscraping, bots and any other creative ideas which are…

Cloud-native web deception server that creates realistic fake web applications with AI-generated templates, honeypot paths, and canary tokens to…

Technical documentation and reverse engineering analysis of Google's reCAPTCHA anti-bot system, covering payload structure, obfuscation techniques,…

Framework for bypassing anti-automation security controls including CAPTCHA, email verification, SMS/Phone, and credit card verification.

Generates hardened Caddy reverse-proxy configs for C2 redirectors: parses malleable profiles, adds GEOIP/header/UA filtering, and protects TeamServer…