
zeek-quasarrat-detector
Zeek detector for QuasarRat

Zeek detector for QuasarRat

A Zeek based AsyncRAT malware detector.

Shell Simulation over Net-SNMP with extend functionality

Python library for low-level network protocol manipulation, featuring SMB, MSRPC, Kerberos, and WMI implementations with tools for authentication…

A complete Go port of Impacket - 63 CLI tools and 24 libraries for Windows & Active Directory protocol attacks, compiled to a single dependency-free…

Exploits Windows IPv6 default configuration to spoof DNS via DHCPv6, redirecting victim traffic for credential relaying and man-in-the-middle attacks…

Live monitoring tool for remote PowerShell sessions using ETW to capture and decode WinRM/PSRP protocol, providing command execution traces and…

A Zeek package to detect the Pingback malware ICMP tunnel command and control (C2) network traffic.

Testing TLS/SSL encryption anywhere on any port

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

IP CIDRs (presumably as input, maybe command line or file) and checks ports 2083 and 2087 for openness

Imaginary C2 is a python tool which aims to help in the behavioral (network) analysis of malware. Imaginary C2 hosts a HTTP server which captures…

Audits Active Directory SMB shares to inventory, analyze, and report excessive privileges. Discovers accessible systems, enumerates share ACLs,…

One-tap Linux OPSEC hardening & anonymity toolkit

ASUS Router infosvr UDP Broadcast root Command Execution

OSCP-focused toolkit for read-only network, SMB, AD, DNS, web, and database enumeration; privesc scanning, hash identification, and…

Generates detection artifacts for CVE-2026-21902 on Juniper Junos Evolved, enabling verification of unauthenticated remote code execution via command…

Command-line DNS-over-HTTPS client and proxy for encrypted, tamper-resistant DNS resolution; works with any DoH provider and supports split-horizon…