
Zeek-Intelligence-Feeds
Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

Aggregated Zeek-format threat intelligence feeds with combined indicators from public and curated sources for continuous IDS and network threat…

A collection of tools for dealing with TrickBot

A tool to transform Chromium browsers into a C2 Implant

Evilginx Phishing Infrastructure Setup Guide - Securing Evilginx and Gophish Infrastructure, Removing IOCs, Phishing TTPs

CVE-2025-33053 Proof Of Concept (PoC)

Educational Proof-of-Concept for the CVE-2022-30190 (Follina) vulnerability.

A practical chain that starts with an innocuous PDF file and ends up in a reverse shell on an AWS EC2 instance

CVE-2019-12949

Resources to learn more about Chinese-language cybercrime actors.


Serverless AITM Simulation Framework for Entra ID and M365

This repository contains a full blue-team malware analysis of a real malicious DOCX exploiting CVE-2017-0199. The lab includes sandbox execution,…

SOC336 - Windows OLE Zero-Click RCE Exploitation Detected (CVE-2025-21298) Walkthrough

Open-source offensive security platform for conducting phishing campaigns that weaponizes iCalendar automatic event processing.

POC exploit for CVE-2025-33053 (external control of file execution path in URL file)

This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.

Modern dynamic phishing toolkit for authorized red team exercises. Clones login pages, captures credentials, cookies, and 2FA codes with a live…