
PcapViz
Visualize network topologies and collect graph statistics based on pcap files

Visualize network topologies and collect graph statistics based on pcap files

Wireless mouse/keyboard attack with replay/transmit poc

Grab NetNTLMv2 hashes using ETW with administrative rights on Windows 8.1 / Windows Server 2016 and later

A swiss-knife MCP server for analysing PCAP files

Practical black-box adversarial packet generation against encrypted traffic classification with minimal overhead and full packet recoverability.

MITM proxy for TCP/TLS/DTLS/UDP traffic, with STARTTLS, IoT, Thick Client and more.

Lab write-up analyzing CVE-2024-21413 Outlook Moniker Link exploitation, NetNTLMv2 credential leakage via SMB, detection with YARA/Wireshark, and…

Lightweight Python-based IDS that monitors network traffic in real-time using Scapy, detecting DoS/DDoS attacks via per-IP request rate analysis with…

Isolated educational lab simulating CVE-2025-4679 OAuth credential exposure. Learn offensive and defensive security through hands-on exercises,…

Proof-of-concept for Log4Shell (CVE-2021-44228) demonstrating remote code execution via JNDI injection, including vulnerable server setup, exploit…

Melody is a transparent internet sensor built for threat intelligence. Supports custom tagging rules and vulnerable application simulation.

Framework for Man-In-The-Middle attacks

Nethunter kernel for the POCO X3 Pro (vayu) based on crDroid's kernel.

A fun activity using a packet capture file from the log4j exploit (CVE-2021-44228)

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

The C-based Firmware Patching Framework for Broadcom/Cypress WiFi Chips that enables Monitor Mode, Frame Injection and much more

This is a mini-firewall that completely isolates a target device from the local network.

BinProxy is a proxy for arbitrary TCP connections. You can define custom message formats using the BinData gem.