
RedHunt-OS
Virtual Machine for Adversary Emulation and Threat Hunting

Virtual Machine for Adversary Emulation and Threat Hunting

Centralized data enrichment platform for offensive security assessments that ingests, enriches, and enables collaborative analysis of collected files…

This is a repository of resource about Malware techniques

FATT /fingerprintAllTheThings - a pyshark based script for extracting network metadata and fingerprints from pcap files and live network traffic

Panthera(P.)uncia - Official CLI utility for Subdomain Center & Exploit Observer.

a guard that blocks catastrophic agent actions

Suricata rules for network anomaly detection


macOS persistence mechanism scanner with code signature verification and timeline tracking.

AI 驱动的 SOC 仿真平台


A honeypot for the Log4Shell vulnerability (CVE-2021-44228).

Collects and analyzes AD and Azure AD authentication logs to detect lateral movement attacks using graph-based anomaly detection, visualizing…

goLoL is a Windows host scanner with dual support for LOLBAS binaries and LOLDrivers. It lists LOLBAS techniques runnable at your current privilege…

Sigma detection rules for AI agent security monitoring

EDRUnChoker - fileless WMI defense that removes EDRChoker QoS throttling policies

Open-source AI security benchmarking CLI. Measure how AI models perform offensive security tasks with MITRE ATT&CK analysis and KSM scoring.