
APT-GUID
Compilação de materiais na área de APT, envolvendo, mas não se limitando aos seguintes aspectos:
Ferramentas de ataque APT
Relatórios de análise APT
Técnicas de ataque APT
Cobalt Strike https://cobaltstrike.com/
Metasploit Framework https://github.com/rapid7/metasploit-framework
SILENTTRINITY https://github.com/byt3bl33d3r/SILENTTRINITY
Covenant https://github.com/cobbr/Covenant
FactionC2 https://github.com/FactionC2/
EvilOSX
Rapid Attack Infrastructure (RAI) conjunto de ferramentas de infraestrutura para red team https://github.com/obscuritylabs/RAI
Red Baron https://github.com/byt3bl33d3r/Red-Baron
EvilURL gera domínios Unicode maliciosos para ataques de homógrafos IDN e os detecta. https://github.com/UndeadSec/EvilURL
Domain Hunter verifica domínios expirados, classificação do Bluecoat e histórico do Archive.org para determinar as melhores opções de domínios para phishing e C2. https://github.com/threatexpress/domainhunter
Chameleon ferramenta para evadir a classificação de proxies. https://github.com/mdsecactivebreach/Chameleon
CatMyFish https://github.com/Mr-Un1k0d3r/CatMyFish
Malleable C2 Perfis C2 https://github.com/rsmudge/Malleable-C2-Profiles
Malleable-C2-Randomizer https://github.com/bluscreenofjeff/Malleable-C2-Randomizer
FindFrontableDomains procura domínios frontáveis em potencial. https://github.com/rvrsh3ll/FindFrontableDomains
Postfix-Server-Setup configura rapidamente um servidor de phishing https://github.com/n0pe-sled/Postfix-Server-Setup
DomainFrontingLists lista de domínios de fronting de CDN disponíveis https://github.com/vysec/DomainFrontingLists
Apache2-Mod-Rewrite-Setup redirecionamento de C2 https://github.com/n0pe-sled/Apache2-Mod-Rewrite-Setup
mod_rewrite rule evasão de sandbox https://gist.github.com/curi0usJack/971385e8334e189d93a6cb4671238b10
external_c2 framework External C2 escrito em Python. https://github.com/Und3rf10w/external_c2_framework
Malleable-C2-Profiles https://www.cobaltstrike.com/. https://github.com/xx0hcd/Malleable-C2-Profiles
ExternalC2 https://github.com/ryhanson/ExternalC2
cs2modrewrite https://github.com/threatexpress/cs2modrewrite
e2modrewrite https://github.com/infosecn1nja/e2modrewrite
redi configura redirecionamento do CobaltStrike https://github.com/taherio/redi
cat-sites biblioteca de sites para categorização. https://github.com/audrummer15/cat-sites
ycsm configura rapidamente proxy reverso nginx https://github.com/infosecn1nja/ycsm
Domain Fronting Google App Engine. https://github.com/redteam-cyberark/Google-Domain-fronting
DomainFrontDiscover https://github.com/peewpw/DomainFrontDiscover
Automated Empire Infrastructure https://github.com/bneg/RedTeam-Automation
Serving Random Payloads com NGINX. https://gist.github.com/jivoi/a33ace2e25515a31aa2ffbae246d98c9
CobaltStrike-ToolKit scripts do CS https://github.com/killswitch-GUI/CobaltStrike-ToolKit
mkhtaccess_red gera automaticamente .htaccess para entrega de payloads — extrai automaticamente IPs/redes etc. de empresas/origens já vistas em sandbox e os redireciona para payloads benignos. https://github.com/violentlydave/mkhtaccess_red
RedFile serviço de payloads https://github.com/outflanknl/RedFile
keyserver https://github.com/leoloobeek/keyserver