
slack-watchman
Slack enumeration and exposed secrets detection tool

Slack enumeration and exposed secrets detection tool

A scanner for CVE-2026-55040 and CVE-2026-63520, designed to determine whether the server is affected by these two CVEs.

Automate the creation of a lab environment complete with security tooling and logging best practices

This script was created to automate addressing the vulnerability described in CVE-2021-26414…

PowerShell-based security toolkit for small-to-medium enterprises, providing automated alerts, Active Directory hardening, Windows Event Forwarding,…

Prevent SSRF attacks on AWS EC2 via automated upgrades to the more secure Instance Metadata Service v2 (IMDSv2).

Tools, tips, tricks, and more for exploring ICS Security.

VBScript & VBA source-to-source deobfuscator with partial-evaluation

PowerShell script that enumerates running processes, loaded DLLs, services, registry, and drivers to detect the presence of AV, EDR, and logging…

USB HID driver emulation with PID/VID (0x3bca/0x27bb) of Plenom A/S Busylight Alpha, that is supported by Mimikatz. When mimikatz is executed, a…

MDE relies on some of the Audit settings to be enabled

Audix is a PowerShell tool to quickly configure the Windows Event Audit Policies for security monitoring

These are the source codes of the Python scripts to apply the temporary protection against the CVE-2022-30190 vulnerability (Follina)

Yet another shellcode runner consists of different techniques for evaluating detection capabilities of endpoint security solutions

First iteration of ML based Feedback WAF

Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detections and…

dawg the hallway monitor - monitor operating system changes and analyze introduced attack surface when installing software

Asymmetric defense against adversarial AI agents. VeilGate evaluates each incoming request, redirects suspected agents into a per-IP-consistent…