
CrimsonEDR
Simulate the behavior of AV/EDR for malware development training.

Simulate the behavior of AV/EDR for malware development training.

Active deception tool that transparently migrates attackers from real targets to honeypots during exploitation and post-exploitation, supporting…

A collection of tools to enumerate and analyse Windows DACLs

Defensive PowerShell tool for static inspection of RAR archives and detection of CVE-2025-8088 path traversal anomalies.

RansomLord is a proof-of-concept Anti-Ransomware exploitation tool that automates the creation of PE files, used to compromise ransomware…

An Active Defense and EDR software to empower Blue Teams

Real-time guardrails for Claude Code tool calls.

Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool

CVE-2025-55182-scanner with 2 different method

Mangle is a tool that manipulates aspects of compiled executables (.exe or DLL) to avoid detection from EDRs

Weaponizes vulnerable signed drivers to bypass EDR kernel callbacks, object callbacks, ETW TI provider, and userland hooks for LSASS memory dumping…

An agent to hotpatch the log4j RCE from CVE-2021-44228.

A real-time traffic monitoring tool that detects and displays network traffic volume per IP address to identify potential DDoS attacks.

EDRSandblast-GodFault

"Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events.…

Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to…

C# tool that enumerates running processes, loaded DLLs, installed services, and drivers to detect the presence of AV, EDR, and logging products,…