
BruteRatel-DetectionTools
A collection of Tools and Rules for decoding Brute Ratel C4 badgers

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

C2 redirector base on caddy

RockLoader AKA Bart Malware control panel source

Detection of Manjusaka C2 framework

A Zeek package to detect the Pingback malware ICMP tunnel command and control (C2) network traffic.

A Zeek based AsyncRAT malware detector.

A Zeek based Mitre Caldera detector.

A Zeek based NetSupport detector. NetSupport is often abused by attackers in malware.

A Zeek protocol analyzer for the Facefish rootkit, based on Spicy.

Detection for SUNBURST C2 Stage-1 using Shannon Entropy

Is this IP a C2 server?

This is a quick script installation for resilient redirector using nginx reverse proxy and letsencrypt compatible with some popular Post-Ex Tools…

IOC feed and analysis toolkit for EITest campaigns, featuring C2 data decryption, victim payload decoding, and sinkhole log processing for threat…

Lightweight telnet honeypot for capturing IoT malware samples and identifying active command-and-control infrastructure, designed for educational…

THorse is a RAT (Remote Administrator Trojan) Generator for Windows/Linux systems written in Python 3.

Replicable Blueprint for advanced DDoS Purple Teaming, engineered for the threat landscape. It integrates a Red Elite Teaming offensive…

Educational exploit for CVE-2022-30190 (Follina) demonstrating MSDT remote code execution via malicious Office documents, with detection and…