Starred repositories
companion to our book of the same name, ISBN: 9781394199884
Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods
A list of interesting open-source security tools, mostly reviewed and commented by me.
OSS implementation of the TCG TPM2 Software Stack (TSS2)
The source repository for the Trusted Platform Module (TPM2.0) tools
A curated list of amazingly awesome Cybersecurity datasets
Open Breach and Attack Simulation Platform
Wiki to collect Red Team infrastructure hardening resources
InlineExecute-Assembly is a proof of concept Beacon Object File (BOF) that allows security professionals to perform in process .NET assembly execution as an alternative to Cobalt Strikes traditiona…
proof-of-concept Windows Driver for injecting DLL into user-mode processes using APC
Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable C2 profiles that you may use. These profiles work with Coba…
Prowler is an Open Cloud Security tool for AWS, Azure, GCP and Kubernetes. It helps for continuos monitoring, security assessments and audits, incident response, compliance, hardening and forensics…
一个攻防知识仓库 Red Teaming and Offensive Security
Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management
A collection of awesome penetration testing resources, tools and other shiny things
Tools and Techniques for Red Team / Penetration Testing
A suite of tools to automate software compliance checks.
The recursive internet scanner for hackers. 🧡
Implementations for ENS core functionality: The registry, registrars, and public resolvers.
🚗 A curated list of resources for learning about vehicle security and car hacking.
A comprehensive roadmap for aspiring Embedded Systems Engineers, featuring a curated list of learning resources.
A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.
Finds unknown classes of injection vulnerabilities