
NetScope
Offline-first network investigation and response platform for Windows. Turns a pcap or live capture into a full forensic verdict — attack story,…

Offline-first network investigation and response platform for Windows. Turns a pcap or live capture into a full forensic verdict — attack story,…


C# version of NTLMRawUnHide

Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later

A DNS spoofer tool written in Python3.

SigCorr is the first open-source tool to detect cross-protocol attack chains spanning SS7/MAP, Diameter S6a, and GTPv2-C through unified subscriber…

Automated man-in-the-middle attack tool.

An automated Wireless RogueAP MITM attack framework.

Downloaded a packet capture (.pcapng) file from malware-traffic-analysis.net which was an example of an attempted attack against a webserver using…


DoSinator is a powerful Denial of Service (DoS) testing tool developed in Python.

Practical black-box adversarial packet generation against encrypted traffic classification with minimal overhead and full packet recoverability.

Flag the cve-2020-35498 attack

DOS (infinite loop) attack via a small value in the IHL field of a packet with IPIP encapsulation

A documented penetration testing lab built on Kali Linux and Metasploitable2, walking through a full attack chain from network traffic analysis and…


KrbRoastParser is a tool for parsing Kerberos packets from pcap files to extract AS-REQ, AS-REP and TGS-REP hashes