A curated list of Ransomware resources
☆40May 11, 2026Updated 2 months ago
Alternatives and similar repositories for Awesome-Ransomware
Users that are interested in Awesome-Ransomware are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Track C2 servers, tools, and botnets over time by framework and location☆16Aug 17, 2025Updated 11 months ago
- An Ansible role to install cobalt-strike☆16Aug 24, 2020Updated 5 years ago
- A schema-aware dataset and Claude AI skill for Microsoft Defender XDR Advanced Hunting.☆36May 6, 2026Updated 2 months ago
- Demonstrate how a signed driver can bypass defenses to deploy ransomware on Windows 11 with advanced AV and UAC evasion techniques.☆32Jul 27, 2026Updated last week
- Open-source unified security operations & threat intelligence platform for OT/ICS environments with ontology-driven dashboards☆45May 27, 2026Updated 2 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- A bunch of shenanigans using functions, VEH and more☆37Jun 8, 2025Updated last year
- A collection of methods to learn who the owner of an IP address is.☆238Sep 29, 2025Updated 10 months ago
- Just a nice little shellcode loader using unconventional methods to avoid using signatured APIs☆23Jul 11, 2025Updated last year
- A GUI tool used to parse Sysmon log and display as process tree☆18Mar 21, 2026Updated 4 months ago
- A collection of CVEs weaponized by ransomware operators☆149Jun 28, 2026Updated last month
- Jupyter Tools for AI Agents☆22Mar 10, 2026Updated 4 months ago
- AzDevRecon is a powerful web-based enumeration tool for offensive security professionals, red teamers, and pentesters targeting Azure Dev…☆31Oct 13, 2025Updated 9 months ago
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆121Oct 29, 2024Updated last year
- ☆73Mar 8, 2026Updated 4 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Next Generation of DripLoader with Indirect Syscalls and .node Side-loading☆32Nov 17, 2025Updated 8 months ago
- A BOF designed to inspect processes memory and addresses☆40Apr 19, 2026Updated 3 months ago
- Vectored Exception Handling Squared☆30Dec 27, 2025Updated 7 months ago
- Helping defenders learn and validate npm supply-chain detections with safe atomic tests.☆34Oct 30, 2025Updated 9 months ago
- 🦞 Carapace - The hard shell that protects your OpenClaw from prompt injection☆23Feb 2, 2026Updated 6 months ago
- In-memory BOF implementation of Silent Process Exit LSASS dump via RtlReportSilentProcessExit☆19Apr 14, 2026Updated 3 months ago
- Data related to the SANS Internet Storm Center☆13Sep 12, 2025Updated 10 months ago
- Tailscale/Headscale C2 profile and agent for Mythic☆25Mar 14, 2026Updated 4 months ago
- Unauthenticated Python PoC for CVE-2025-20281 RCE against ISE ERS API☆21Jul 28, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Object file loader implemented as a post-ex DLL for asynchronous BOF execution.☆29Jul 23, 2026Updated last week
- Awesome List of Enterprise Security Tools' Community Edition☆16Updated this week
- A package to create HTML MISP reports, including volume of trending events and attributes, evens received from key organisations and targ…☆12Aug 14, 2025Updated 11 months ago
- CFW for DMA research☆21Jan 24, 2025Updated last year
- ☆52Jun 6, 2025Updated last year
- A curated collection of YARA rules and structured JSON reports designed to identify and analyze various malware builder variants, for edu…☆17Sep 1, 2025Updated 11 months ago
- Forensic Browser History Analyzer - Cross-platform browser history extractor (Chrome, Firefox, IE/Edge, Brave, Opera, Vivaldi)☆36Apr 11, 2026Updated 3 months ago
- This operational dashboard correlates data from Microsoft Defender for Endpoint/Server (MDE) and Azure Monitor Agent (AMA) to identify co…☆17May 13, 2026Updated 2 months ago
- A curated list of Awesome Threat Intelligence Blogs☆555Jun 12, 2026Updated last month
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A collection of companies that disclose adversary TTPs after they have been breached☆305Jun 7, 2026Updated last month
- A Telegram bot interface for the Adaptix C2 Teamserver. Manage agents, execute commands, handle credentials, view tasks, and download fil…☆21Mar 9, 2026Updated 4 months ago
- executing shellcode directly from a python variable☆30Dec 20, 2025Updated 7 months ago
- ☆85Mar 28, 2026Updated 4 months ago
- A curated collection of DFIR skills and workflows for InfoSec practitioners.☆319May 14, 2026Updated 2 months ago
- A PoC Cobalt Strike UDRL written in Rust☆33Jun 20, 2026Updated last month
- GhostHound is a BloodHound OpenGraph extension that surfaces Active Directory tombstone reanimation as a first-class attack path, enumera…☆40Jul 23, 2026Updated last week