
BruteRatel-DetectionTools
A collection of Tools and Rules for decoding Brute Ratel C4 badgers

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

Tools and Techniques for Blue Team / Incident Response

Automated, Collection, and Enrichment Platform

An advanced memory forensics framework

Collection of forensic tools

A centralized and enhanced memory analysis platform


A curated collection of DFIR skills and workflows for InfoSec practitioners.

Collection of IoCs available and related to attacks on ESXi infrastructures that occurred as of Friday February 3, 2023.

Collection of Detection, Fix, and exploit for CVE-2024-3094

Searches For Threat Hunting and Security Analytics

Incident Response collection and processing scripts with automated reporting scripts

SQL powered operating system instrumentation, monitoring, and analytics.

A repository of sysmon configuration modules

Advanced framework for extracting digital artifacts from volatile memory (RAM) samples, enabling deep forensic analysis of system runtime state…

Read-only developer endpoint scanner for on-disk package, extension, and developer-tool metadata, built to check exposure to known software…

Aggregate, filter, and track CVEs from multiple sources with team collaboration, custom dashboards, alerts, and AI-powered analysis for vulnerability…

Scans all running processes. Recognizes and dumps a variety of potentially malicious implants (replaced/implanted PEs, shellcodes, hooks, in-memory…