
openvas-scanner
This repository contains the scanner component for Greenbone Community Edition.

This repository contains the scanner component for Greenbone Community Edition.

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

This project aims to compare and evaluate the telemetry of various EDR products.

This application gives Mac users in enterprise environments control over the administration of their machines by elevating their access level to…

This repo contains some Amsi Bypass methods i found on different Blog Posts.

A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.

The OWASP Java Encoder is a Java 1.5+ simple-to-use drop-in high-performance encoder class with no dependencies and little baggage. This project will…

This is a mini-firewall that completely isolates a target device from the local network.

This repository contains a list of new remediation scripts.

SilentButDeadly is a network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using…

Modern security products (CrowdStrike, Bitdefender, SentinelOne, etc.) hook the nLoadImage function inside clr.dll to intercept and scan in-memory…

👁🗨 This script will simulate fake processes of analysis sandbox/VM software that some malware will try to avoid.

WebLogic Honeypot is a low interaction honeypot to detect CVE-2017-10271 in the Oracle WebLogic Server component of Oracle Fusion Middleware. This is…

This repository contains all lab instructions for the following content: Info Sec Core Skills, SOC Core Skills, ADCD Labs, SOC Analyst Labs, & BnB…

Is this IP a C2 server?

MICROS Honeypot is a low interaction honeypot to detect CVE-2018-2636 in the Oracle Hospitality Simphony component of Oracle Hospitality Applications…

This is a "insmod" blocking tool module for Linux Kernel, protecting the user from the loading of malicious code in Linux Kernel - rootkits, for…

Outdated Ghost CMS websites that have fallen become compromised from CVE-2026-26980 can suffer from spam code injection to pages. Use this to mass…