Lists (5)
Sort Name ascending (A-Z)
Starred repositories
Playground (and dump) of stuff I make or modify for the Flipper Zero
logickworkshop / Flipper-IRDB
Forked from Lucaslhm/Flipper-IRDBA collective of different IRs for the Flipper
Public Repository of Open Source Tools for Cyber Threat Intelligence Analysts and Researchers
A tool which is uses to remove Windows Defender in Windows 8.x, Windows 10 (every version) and Windows 11.
A curated list of Awesome Threat Intelligence resources
Best practices for segmentation of the corporate network of any company
An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.
This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.
C++ Staged Shellcode Loader with Evasion capabilities.
Also known by Microsoft as Knifecoat 🌶️
One stop shop for enabling Recall in Windows 11 version 24H2 on unsupported devices
Sample queries and data as part of the Microsoft Press book, The Definitive Guide to KQL
Baseline a Windows System against LOLBAS
Azure Security Resources and Notes
🚀 PSRecon gathers data from a remote Windows host using PowerShell (v2 or later), organizes the data into folders, hashes all extracted data, hashes PowerShell and various system properties, and se…
PowerForensics provides an all in one platform for live disk forensic analysis
Collaborative Incident Response platform
This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can be mitigated or detected.
🔧 Deploy customizable Active Directory labs in Azure - automatically.
A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).
runsc loads 32/64 bit shellcode (depending on how runsc is compiled) in a way that makes it easy to load in a debugger. This code is based on the code from https://github.com/Kdr0x/Kd_Shellcode_Loa…
The FLARE team's open-source tool to identify capabilities in executable files.
BadZure orchestrates the setup of Azure AD tenants, populating them with diverse entities while also introducing common security misconfigurations to create vulnerable tenants with multiple attack …
RedEye is a visual analytic tool supporting Red & Blue Team operations