
Antiphishing
Advanced Phishing Protection: Suricata rulesets open and free

Advanced Phishing Protection: Suricata rulesets open and free

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management

Linux eBPF backdoor over TCP. Spawn reverse shells, RCE, on prior privileged access. Less Honkin, More Tonkin.

HTA encryption tool for RedTeams

A list of useful Powershell scripts with 100% AV bypass (At the time of publication).

Obfuscate specific windows apis with different apis

Wire-level proxy firewall for AI agents that intercepts and gates SQL, Kubernetes, and HTTP traffic using HCL rules, with per-process tunnel…

Phantom Tap (PhanTap) - an ‘invisible’ network tap aimed at red teams

PyMultitor - Python Multi Threaded Tor Proxy

OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at startup

A PowerShell script that attempts to help malware analysts hide their Windows VirtualBox Windows VM's from malware that may be trying to evade…

Dynamically invoke arbitrary unmanaged code

Shellcode Loader with Indirect Dynamic syscall Implementation , shellcode in MAC format, API resolving from PEB, Syscall calll and syscall…

Tool to deploy a post-exploitation prompt at any time

Bypass EDR Hooks by patching NT API stub, and resolving SSNs and syscall instructions at runtime

RedSails is a Python based post-exploitation project aimed at bypassing host based security monitoring and logging. DerbyCon 2017 Talk:…

Obex – Blocking unwanted DLLs in user mode