
CrimsonEDR
Simulate the behavior of AV/EDR for malware development training.

Simulate the behavior of AV/EDR for malware development training.

DNS traffic sniffer and analyzer for monitoring, filtering, and detecting anomalies in DNS queries. Features include PCAP export, DoH support, and a…

A Java helper to identify log4j in the current classpath

A tool to be used in post exploitation phase for blue and red teams to bypass APPLICATIONCONTROL policies

Basic injectable for analyzing the behavior of evasive malware

Network anomaly detector that monitors raw packets to identify port scanning activity in real time, with flexible sniffing duration controls and live…

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

ThreatSentry AI is an intelligent threat hunting dashboard that leverages machine learning to proactively identify and prioritize risks in your…

Anti-keylogger/anti-rat application for Windows

A passive detection tool for identifying potential exposure to CVE-2026-24061 in GNU inetutils telnet installations

Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive and hardening…

A small tool built to find and fix common misconfigurations in Active Directory Certificate Services.

Retrieve AD accounts description and search for password in it

Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool

Weaponizes vulnerable signed drivers to bypass EDR kernel callbacks, object callbacks, ETW TI provider, and userland hooks for LSASS memory dumping…

Security Tool to detect arp poisoning attacks

Analyzes Nginx access logs to detect SQL injection, scanner tools, webshells, and exploitation attempts, aiding system administrators in server…

EDRSandblast-GodFault