This is a simulation of attack by Fancy Bear group (APT28) targeting high-ranking government officials Western Asia and Eastern Europe
☆38Jun 12, 2024Updated 2 years ago
Alternatives and similar repositories for APT28-Adversary-Simulation
Users that are interested in APT28-Adversary-Simulation are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- This is a simulation of attack by the Cozy Bear group (APT-29) targeting diplomatic missions☆49Jun 12, 2024Updated 2 years ago
- An improvement and a different approach to Mockingjay Self-Injection.☆35May 21, 2024Updated 2 years ago
- Mythic C2 wrapper for NimSyscallPacker☆26Mar 12, 2025Updated last year
- Extra cmdlets to help with quering security related information from Azure☆15Jul 28, 2026Updated last month
- Payload Generation Workflow☆41Jul 18, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆15Sep 26, 2023Updated 2 years ago
- This operational dashboard correlates data from Microsoft Defender for Endpoint/Server (MDE) and Azure Monitor Agent (AMA) to identify co…☆18Sep 4, 2026Updated last week
- Creating a Bind Shell in C☆20Aug 21, 2023Updated 3 years ago
- PS-TrustedDocuments: PowerShell script to handle information on trusted documents for Microsoft Office☆37Mar 15, 2023Updated 3 years ago
- Direct syscalls Injection to bypass AV/EDR☆10May 18, 2024Updated 2 years ago
- This is a simulation of attack by (Voodoo Bear) APT group targeting entities in Eastern Europe the attack campaign was active as early as…☆12Jun 19, 2024Updated 2 years ago
- ☆44Oct 11, 2023Updated 2 years ago
- BEAR-C2 is an adversary simulation and emulation framework built around real-world TTPs inspired by Russian, Chinese, North Korean, and I…☆613Updated this week
- A class validation and transformation library, to ensure secure data structures in Python.☆10May 16, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆24Nov 7, 2023Updated 2 years ago
- This repo contains useful scripts that AI created for me which I would have been too lazy for☆105Jun 30, 2026Updated 2 months ago
- Evtx Log (xml) Browser☆60Mar 12, 2023Updated 3 years ago
- This is the combination of multiple evasion techniques to evade defenses. (Dirty Vanity)☆50May 8, 2024Updated 2 years ago
- Man-In-The-Service tool to turn servers against their admins☆39Nov 12, 2025Updated 10 months ago
- "D3MPSEC" is a memory dumping tool designed to extract memory dump from Lsass process using various techniques, including direct system c…☆29Sep 18, 2024Updated last year
- This is a simple process injection made in C for Linux systems☆29Sep 23, 2023Updated 2 years ago
- Modules designed to be used with the Conquest framework.☆22Sep 3, 2026Updated last week
- Various AD tools needed for penetration testing in one place.☆25Jul 13, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- nTask is a distributed task management program that allows you to distribute tasks across multiple computers using API communication and …☆17Apr 29, 2026Updated 4 months ago
- ☆19Dec 25, 2025Updated 8 months ago
- ☆21Jul 29, 2025Updated last year
- Dump/disassemble python PYC files☆10Mar 16, 2015Updated 11 years ago
- ☆12Oct 9, 2022Updated 3 years ago
- PoC for CVE-2026-48907 - Joomla! JCE extension < 2.9.99.5 unauthenticated RCE☆16Jun 11, 2026Updated 3 months ago
- This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom …☆1,130Aug 31, 2026Updated last week
- Detect userland hooks placed by AV/EDR☆28Sep 4, 2023Updated 3 years ago
- This repository contains the analysis reports, technical details or any tools created for helping in malware analysis. Additionally, the …☆26Aug 12, 2026Updated last month
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Real-time websocket stream of GPS events on a fancy SVG world map☆19Jan 5, 2022Updated 4 years ago
- Matryoshka loader is a tool that red team operators can leverage to generate shellcode for Microsoft Office document phishing payloads.☆44May 24, 2021Updated 5 years ago
- Currently proof-of-concept☆17Dec 17, 2021Updated 4 years ago
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆57Oct 10, 2022Updated 3 years ago
- A Python framework that uses machine learning algorithms to implement the metadata recovery attack against obfuscated programs.☆11Jul 25, 2016Updated 10 years ago
- A suite of tools to disrupt campaigns using the Sliver C2 framework.☆286Aug 5, 2023Updated 3 years ago
- SQL Injection without the pain of syringes.☆25Apr 20, 2017Updated 9 years ago