
threatest
CLI and Go framework for end-to-end testing of threat detection rules. Detonates attack techniques and verifies alerts in security platforms like…

CLI and Go framework for end-to-end testing of threat detection rules. Detonates attack techniques and verifies alerts in security platforms like…

A framework and taxonomy for identifying, classifying, and reasoning about detection logic bugs in SIEM, EDR, and XDR rules, with concrete examples…

Purple Team Exercise Framework

DropEngine provides a malleable framework for creating shellcode runners, allowing operators to choose from a selection of components and combine…

Open-source framework for embedding realistic decoy routes and honey fields into APIs to detect attackers probing business logic, converting…

An Open-Source Pre and Post Callback-Based Framework for macOS Kernel Monitoring.

A fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.

DejaVU - Open Source Deception Framework


Berry Sentinel v5.0 — Advanced behavioral C2 and reverse shell detector for Linux/Windows/Unix systems. Features real-time connection analysis,…

Cmd.exe Command Obfuscation Generator & Detection Test Harness

camjacking templates

BOF combination of KillDefender and Backstab

Proof-of-concept exploit for CVE-2021-4034 (PwnKit) demonstrating local privilege escalation in Polkit's pkexec, including patching instructions.