
PurpleLlama
Set of tools to assess and improve LLM security.

Set of tools to assess and improve LLM security.

Set of tools to analyze Windows sandboxes for exposed attack surface.

Tool that gathers a customizable set of ETW telemetry and generates user-defined detections

Best Practice Auditd Configuration

Tools and technical write-ups describing attacking techniques that rely on concealing code execution on Windows

Blue Team detection lab created with Terraform and Ansible in Azure.

A tool uses the QoS Policy (Pacer.sys) to throttle Endpoint Detection and Response (EDR) agents from connecting to the server.

Windows tool to list, get, set, protect, and unprotect process protection levels (PP/L) for debugging, inspection, and privilege escalation.

TAXII server implementation in Python from EclecticIQ

A repository of sysmon configuration modules

PacketFence is a fully supported, trusted, Free and Open Source network access control (NAC) solution. Boasting an impressive feature set including a…

This application gives Mac users in enterprise environments control over the administration of their machines by elevating their access level to…

MDE relies on some of the Audit settings to be enabled

Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…