
coraza
Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

attempting to detect smart glasses nearby and warn you

Weaponizes vulnerable signed drivers to bypass EDR kernel callbacks, object callbacks, ETW TI provider, and userland hooks for LSASS memory dumping…

Metlo is an open-source API security platform.

The Hunt for Malicious Strings

Process Herpaderping proof of concept, tool, and technical deep dive. Process Herpaderping bypasses security products by obscuring the intentions of…

Wire-level proxy firewall for AI agents that intercepts and gates SQL, Kubernetes, and HTTP traffic using HCL rules, with per-process tunnel…

Find your device and control it remotely. Works over SMS, instant messengers, or FMD Server's web interface. A secure open source alternative to…

Uses Sharphound, Bloodhound and Neo4j to produce an actionable list of attack paths for targeted remediation.

Android client for Prey: reliable device tracking and security tool

CLI and Go framework for end-to-end testing of threat detection rules. Detonates attack techniques and verifies alerts in security platforms like…

A tool to be used in post exploitation phase for blue and red teams to bypass APPLICATIONCONTROL policies

Public Repo for Atomic Test Harness

A comprehensive ETW (Event Tracing for Windows) event generation tool designed for testing and research purposes.

Modern security products (CrowdStrike, Bitdefender, SentinelOne, etc.) hook the nLoadImage function inside clr.dll to intercept and scan in-memory…

Web Service write in Python for control and protect your android device remotely.

An interactive shell to spoof some LOLBins command line

A "plugin" for Android Java to allow asking the user about SSL certificates