
Credential-Hunting
Read-only post-exploitation credential hunter that surfaces reusable passwords, keys, hashes, and credential files across Windows and Linux hosts…

Read-only post-exploitation credential hunter that surfaces reusable passwords, keys, hashes, and credential files across Windows and Linux hosts…

Windows offline filesystem hacking tool for Linux

Collection of PowerShell utilities for Windows API interaction, process/token enumeration, debug detection, memory dumping, and post-exploitation…

Shell script for automated collection and analysis of macOS forensic artifacts, including persistence enumeration, unified logs, and file system…

Forensic analysis of a TeamCity server compromise via CVE-2024-27198, detailing initial access, webshell persistence, and system enumeration from…

Enumerate various traits from Windows processes as an aid to threat hunting

A portable C# utility for enumerating local and remote windows sessions

TryHackMe CTF writeup — WordPress RCE via CVE-2024-25600, crypto miner forensics, and LockBit ransomware group identification

Tool to find metadata and hidden information in the documents.

This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP,…

Curated indicators of compromise (IOCs) from Amnesty International's technical investigations into targeted threats against human rights defenders,…

Rust-based OSINT framework for digital investigations: manage targets, execute modules, create links, export PDF reports, and extend via custom…

Blockchain Transactions Investigation Tool

Parses network packet captures (pcap, pcapng, etl) to extract NTLMv2 hashes in a crackable format, supporting native Windows binaries like NETSH and…

Linux memory dumper and analyzer that scans process memory for credentials, private keys, and IPs using regex patterns. Supports mass scanning,…

A tool for processing a lot of pcaps using tshark

Centralized repository for malware samples, threat intelligence, IOCs, and security tooling logs to support threat research and incident response…

Pcap analysis toolkit for extracting visited sites, emails, URLs, user-agents, connection details, and detecting web attacks from capture files.