DECeption with Evaluative Integrated Validation Engine (DECEIVE): Let an LLM do all the hard honeypot work!
☆284Jun 4, 2026Updated this week
Alternatives and similar repositories for DECEIVE
Users that are interested in DECEIVE are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Galah: An LLM-powered web honeypot.☆649Jul 24, 2025Updated 10 months ago
- TIM is a Kusto investigation platform that enables a user to quickly pivot between data sources; annotate their findings; and promotes co…☆23Aug 7, 2024Updated last year
- Interactive, dynamic, and realistic LLM honeypots☆76Feb 18, 2025Updated last year
- Sandbox samples and monitor them with kunai☆29Mar 3, 2026Updated 3 months ago
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters …☆316Updated this week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆20Apr 10, 2025Updated last year
- Scripts for importing threat feeds and CTI articles, blogs, and reports into MISP.☆18Jun 16, 2025Updated 11 months ago
- An Aggressor Script that utilizes NtCreateUserProcess to run binaries☆31Jan 30, 2025Updated last year
- This project aims to compare and evaluate the telemetry of various EDR products.☆1,965May 17, 2026Updated 3 weeks ago
- gpoParser is a tool designed to extract and analyze configurations applied through Group Policy Objects (GPOs) in an Active Directory env…☆358Apr 28, 2026Updated last month
- An offensive postexploitation tool that will give you complete control over the Outlook desktop application and therefore to the emails c…☆166Oct 9, 2024Updated last year
- Repo with supporting material for the talk titled "Cracking the Beacon: Automating the extraction of implant configurations"☆11Feb 6, 2025Updated last year
- A New Exploitation Technique for Visual Studio Projects☆13Nov 5, 2023Updated 2 years ago
- Framework for Monitoring File Ingestion Source for Yara Matches☆52Mar 10, 2025Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆784May 7, 2025Updated last year
- Turn any blog into structured threat intelligence.☆58Updated this week
- Cloak, Honey, Trap: Proactive Defenses Against LLM Agents☆25Jul 9, 2025Updated 11 months ago
- ☆34Apr 29, 2026Updated last month
- A Large Action Model designed to operate on MacOS or Windows which interacts with common C2 interfaces such as Cobalt Strike, Havoc, or B…☆26Feb 29, 2024Updated 2 years ago
- A not so awesome list of adversary emulation gems for aspiring red/blue/purple teamers☆16Jul 19, 2022Updated 3 years ago
- NoDelete is a tool that assists in malware analysis by locking a folder where malware drops files before deleting them.☆50Nov 17, 2025Updated 6 months ago
- A python script for smart lightbulbs to show how badly you're losing money☆38Apr 28, 2025Updated last year
- Threat-hunting tool for Linux☆1,070Updated this week
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- BOF to decrypt Signal Desktop chat logs☆70Feb 20, 2025Updated last year
- CyberShield 2025 Intro to EDR Evasion Class☆18Jun 3, 2025Updated last year
- An ADCS honeypot to catch attackers in your internal network.☆328Jun 27, 2024Updated last year
- TokenSmith generates Entra ID access & refresh tokens on offensive engagements. It is suitable for both covert adversary simulations and …☆406Jan 23, 2025Updated last year
- Hundred Days of Yara Challenge☆12Jun 21, 2022Updated 3 years ago
- A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID☆630Updated this week
- Windows Defender Manager is a tool that helps stop Windows Defender. It works with the Antimalware Service Executable of all versions of …☆45Jan 18, 2025Updated last year
- Quick ESXi Log Parser☆31Oct 20, 2025Updated 7 months ago
- Backend development stack for agents☆29Jul 30, 2025Updated 10 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Repo for experimenting and testing MCP server builds for CTI-related research.☆27May 13, 2025Updated last year
- Active C&C Detector☆156Oct 5, 2023Updated 2 years ago
- MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs☆758Feb 1, 2026Updated 4 months ago
- Respotter is a Responder honeypot. Detect Responder in your environment as soon as it's spun up.☆200Nov 5, 2025Updated 7 months ago
- CVE-2025-1974☆90Apr 2, 2025Updated last year
- Finding ClickFix and FakeCAPTCHA like it's 1999☆139Updated this week
- ☆59Dec 10, 2025Updated 5 months ago