
QCSuper
QCSuper is a tool communicating with Qualcomm-based phones and modems, allowing to capture raw 2G/3G/4G radio frames, among other things.

用于 TCP/TLS/DTLS/UDP 流量的 MITM 代理,支持 STARTTLS、IoT、胖客户端等。

分析 CVE-2024-21413 Outlook Moniker Link 漏洞利用、通过 SMB 泄露 NetNTLMv2 凭据、使用 YARA/Wireshark 进行检测及缓解策略的实验室报告。

USB Army Knife – 渗透测试人员和红队人员的终极近距离接触工具。

网络异常检测器,通过监控原始数据包实时识别端口扫描活动,提供灵活的嗅探持续时间控制,并实时输出端口列表。

KeySweeper is a stealthy Arduino-based device, camouflaged as a functioning USB wall charger, that wirelessly and passively sniffs, decrypts, logs…

My write-ups from CyberDefenders' Blue Team labs, solved using Wireshark. Covers TeamCity RCE (CVE-2024-27198), XSS session hijacking, and…

用于实时流量检测、入侵检测与防御、协议分析以及基于规则的威胁狩猎的开源网络 IDS/IPS/NSM 引擎。

我与 Thomas d'Otreppe 共同为 Aircrack-ng 做出的贡献

从 PCAP 或网络接口中选择性提取协议

BLESuite is a Python package that provides an easier way to test Bluetooth Low Energy (BLE) device

eBPF - extended Berkeley Packet Filter tooling

Phantom Tap (PhanTap) - an ‘invisible’ network tap aimed at red teams

Pcap importer for Burp

Solitude is a privacy analysis tool that enables anyone to conduct their own privacy investigations. Whether a curious novice or a more advanced…

UPnP Pentest Toolkit for Windows

一款无头、可脚本化、基于命令行的 MITM 代理,专为在 Windows 系统上进行网络流量拦截、分析和修改而设计。

F5 `mcp` 协议的一种实现,包括用于在漏洞狩猎时嗅探流量的 MitM 工具。