
bluemonday
bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

Open-source Windows kernel-level EDR lab for understanding and testing detection methods against process injection, credential dumping, and other…

LoadLibrary for offensive operations

Sec-Gemini is a cutting-edge AI model designed to enhance cybersecurity capabilities and empower defenders in the ongoing battle against cyber…

A PowerShell script that automates the security assessment of Microsoft 365 environments.

Lightweight Agent Detection & Response (ADR) layer for AI agents — guards commands, files, and web requests. Part of Gen Agent Trust Hub.


Modern security products (CrowdStrike, Bitdefender, SentinelOne, etc.) hook the nLoadImage function inside clr.dll to intercept and scan in-memory…

A Software as a Service (SaaS) log collection framework.

Open-source Windows forensics engine that acquires, parses, and correlates artifacts (MFT, USN, Registry, etc.) to reconstruct timelines with…

Emulate and Dissect MSF and *other* attacks

amavis is a high-performance email content filter framework written in Perl.

一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-44228) defense.

Repository hosting a hypothetical EDR Spoofer, as discovered originally by Nightmare-Eclipse

A powerful and flexible tool to apply active attacks for disrupting stegomalware

Make an Linux Kernel rootkit visible again.

a highly customizable PHP script to sanitize / make (X)HTML secure against XSS attacks, so users can edit HTML without risk of your site getting…