Droogy / Malware-StudyLinks
A collection of notes and rules (Snort/Suricata, Sigma, and YARA) to identify various samples of malware.
☆14Updated 3 years ago
Alternatives and similar repositories for Malware-Study
Users that are interested in Malware-Study are comparing it to the libraries listed below
Sorting:
- Pointer was developed for massive hunting and mapping Cobalt Strike servers exposed on the internet.☆66Updated 3 years ago
- Building ActiveDirectory Lab for practicing various attack vectors used during Red Team engagement.☆37Updated 5 years ago
- Tradecraft Development Fundamentals☆40Updated 3 years ago
- ☆42Updated 3 years ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆69Updated 3 years ago
- Continuous kerberoast monitor☆45Updated last year
- ☆48Updated 5 years ago
- Triaging Windows event logs based on SANS Poster☆39Updated 2 years ago
- Spin up RedTeam infrastructure on AWS via Ansible☆63Updated 4 years ago
- Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable…☆17Updated 4 years ago
- An Ansible role for installing Cobalt Strike.☆78Updated 2 weeks ago
- C# and Impacket implementation (here with Kerberos auth support) of PrintNightmare CVE-2021-1675/CVE-2021-34527☆29Updated 4 years ago
- CyberWarFare Labs hands-on workshop on the topic "Detecting Adversarial Tradecrafts/Tools by leveraging ETW"☆49Updated 3 years ago
- Perform Windows domain enumeration via LDAP☆36Updated 3 years ago
- Carbon Black Response IR tool☆54Updated 4 years ago
- rustyIron is a tool that takes advantage of functionality within Ivanti's MobileIron MDM solution to perform single-factor authentication…☆44Updated 4 years ago
- Tools for playing w/ CobaltStrike config - extractin, detection, processing, etc...☆30Updated 2 years ago
- Scripts to automate standing up apache2 with mod_rewrite in front of C2 servers.☆47Updated 4 years ago
- My Malware Analysis Reports☆20Updated 3 years ago
- A project to replicate the functionality of Noah Powers' ServerSetup script, but with error handling and fixed Namecheap API support.☆34Updated 3 years ago
- Pwnage☆16Updated 2 weeks ago
- Log converter from CS log to Ghostwriter CSV☆30Updated 4 years ago
- ansible roles to download and install empire (BC-Security),deathstar(byt3bl33der) and starkiller (BC-Security)☆24Updated 3 years ago
- Any presentation we've given at FortyNorth Security☆34Updated 3 years ago
- ☆27Updated 4 years ago
- Talk slides and material☆32Updated last year
- Privescker - make life easier by dumping all your common Windows enum, privesc and post exploitation scripts and tools on to the box in o…☆46Updated 3 years ago
- Extracts Azure authentication tokens from PowerShell process minidumps.☆23Updated 2 years ago
- Reproducible and extensible BloodHound playbooks☆44Updated 5 years ago
- Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups☆60Updated 2 years ago