
threatest
CLI and Go framework for end-to-end testing of threat detection rules. Detonates attack techniques and verifies alerts in security platforms like…

CLI and Go framework for end-to-end testing of threat detection rules. Detonates attack techniques and verifies alerts in security platforms like…

Gentoo overlay for security tools as well as the heart of the Pentoo Livecd

PowerShell tool that extracts Active Directory artifacts via LDAP or ADWS and generates Excel reports for auditing, DFIR, and penetration testing.

Automatic security alert response framework by AWS Serverless Application Model

A secure low code deception runtime framework, leveraging AI for System Virtualization.

OWASP Honeypot, Automated Deception Framework.

Open-source framework for embedding realistic decoy routes and honey fields into APIs to detect attackers probing business logic, converting…

A Software as a Service (SaaS) log collection framework.

Automated System Hardening Framework

DejaVU - Open Source Deception Framework

YAML-configurable low-interactive honeypot framework for deploying HTTP/HTTPS-based deception servers with built-in honeytraps and Datadog log…

The NoSQL Honeypot Framework

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

Modular framework for Windows UAC bypass attacks and mitigation, featuring DLL hijacking, fileless execution, and real-time monitoring to detect and…

A framework for creating COM-based bypasses utilizing vulnerabilities in Microsoft's WDAPT sensors.

Cmd.exe Command Obfuscation Generator & Detection Test Harness

一个针对防御 log4j2 CVE-2021-44228 漏洞的 RASP 工具。 A Runtime Application Self-Protection module specifically designed for log4j2 RCE (CVE-2021-44228) defense.

BOF combination of KillDefender and Backstab