
GoPurple
Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

Offensive & defensive Linux kernel security research focused on rootkit behavior, observable artifacts and detection.

Linux namespaces and seccomp-bpf sandbox

Rust tool to detect cell site simulators on an orbic mobile hotspot

Seatbelt is a C# project that performs a number of security oriented host-survey "safety checks" relevant from both offensive and defensive security…

A browser extension that encrypts your communications with many websites that offer HTTPS but still allow unencrypted connections.

OWASP ModSecurity Core Rule Set (CRS) Project (Official Repository)

DEPRECATED - MozDef: Mozilla Enterprise Defense Platform

This project aims to compare and evaluate the telemetry of various EDR products.

HardeningKitty - Checks and hardens your Windows configuration

An information security preparedness tool to do adversarial simulation.

A MITM (monster-in-the-middle) detection tool. Used to build MALCOLM:

Callstack scanner that identifies IOCs of unpacked or injected C2 agents by analyzing thread idle behavior, unbacked memory, module stomping, APCs,…

A PowerShell script that automates the security assessment of Microsoft 365 environments.

Simulate the behavior of AV/EDR for malware development training.

The OWASP Java Encoder is a Java 1.5+ simple-to-use drop-in high-performance encoder class with no dependencies and little baggage. This project will…

DARKSURGEON is a Windows packer project to empower incident response, digital forensics, malware analysis, and network defense.