
Block-Spring4Shell
POC firewall with rules designed to detect and block Spring4Shell vulnerability (CVE-2022-22965) exploit

POC firewall with rules designed to detect and block Spring4Shell vulnerability (CVE-2022-22965) exploit

Open-source IDS/IPS and WAF engine that analyzes logs and HTTP requests to detect and block malicious IPs, leveraging a crowdsourced community…

Ability to detect suspicious activity such as (WEP/WPA/WPS) attack by sniffing the air for wireless packets.

ESP32DIV is a multi-purpose wireless offensive and defensive toolkit powered by an ESP32

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.

Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable C2 profiles…

Pingtunnel is a tool that send TCP/UDP traffic over ICMP

Chimera is a PowerShell obfuscation script designed to bypass AMSI and commercial antivirus solutions.

Tunna is a set of tools which will wrap and tunnel any TCP communication over HTTP. It can be used to bypass network restrictions in fully firewalled…

This program is designed to demonstrate various process injection techniques

Killer is a super simple tool designed to bypass AV/EDR security tools using various evasive techniques and used by Patchwork group.

EDR-Freeze is a tool that puts a process of EDR, AntiMalware into a coma state.

HWSyscalls is a new method to execute indirect syscalls using HWBP, HalosGate and a synthetic trampoline on kernel32 with HWBP.

THorse is a RAT (Remote Administrator Trojan) Generator for Windows/Linux systems written in Python 3.

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…

Venom is a library that meant to perform evasive communication using stolen browser socket

RedSails is a Python based post-exploitation project aimed at bypassing host based security monitoring and logging. DerbyCon 2017 Talk:…