Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so on
☆81Apr 27, 2024Updated 2 years ago
Alternatives and similar repositories for CTI
Users that are interested in CTI are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- CarbonBlack EDR detection rules and response actions☆73Sep 10, 2024Updated last year
- FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is de…☆826Apr 18, 2026Updated 4 months ago
- ☆170Aug 17, 2026Updated last week
- ☆139Apr 20, 2023Updated 3 years ago
- Slides and Codes used for the workshop Red Team Infrastructure Automation☆192Apr 14, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Active C&C Detector☆156Oct 5, 2023Updated 2 years ago
- Create a cool process tree like https://twitter.com/ACEResponder.☆35Mar 1, 2023Updated 3 years ago
- This python script performs a number of sqlite queries (mainly password metadata) against sqlite databases (Created by ROADtools) to prov…☆22Jul 3, 2024Updated 2 years ago
- Automatically deploying Mythic C2 in Azure using Terraform☆25Jul 3, 2026Updated last month
- Click Once + App Domain☆69Feb 23, 2026Updated 6 months ago
- Purple Team Resources for Enterprise Purple Teaming: An Exploratory Qualitative Study by Xena Olsen.☆678Jun 14, 2023Updated 3 years ago
- PurpleLab is an efficient and readily deployable lab solution, providing a swift setup for cybersecurity professionals to test detection…☆746Aug 22, 2026Updated last week
- Registry to JSON. This Project is for learning purposes and is not maintained.☆12Dec 28, 2021Updated 4 years ago
- Manage attack surface data on Elasticsearch☆27Nov 20, 2023Updated 2 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Repository documenting how Threat Intelligence and / or a Threat Intelligence Platform can prove its value to an organisation.☆54Oct 23, 2024Updated last year
- What's the Red Team doing to my Linux Box? - BSides Vienna 2024☆16Nov 23, 2024Updated last year
- M365/Azure adversary simulation tool that generates realistic attack telemetry to help blue teams improve their detection and response ca…☆330Updated this week
- AAD related enumeration in Nim☆132Sep 7, 2023Updated 2 years ago
- AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE…☆1,239Aug 22, 2026Updated last week
- Enumerate information from NTLM authentication enabled web endpoints 🔎☆33Aug 16, 2023Updated 3 years ago
- Reflective DLL to privesc from NT Service to SYSTEM using SeImpersonateToken privilege☆227Nov 23, 2023Updated 2 years ago
- A proof-of-concept C2 channel through DuckDuckGo's image proxy service☆77Nov 12, 2023Updated 2 years ago
- ☆61Jun 24, 2023Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- F-Secure Lightweight Acqusition for Incident Response (FLAIR)☆16Jul 5, 2021Updated 5 years ago
- ☆16Jan 9, 2025Updated last year
- A repository of curated lists with elements such as IoCs to use for threat hunting & detection queries.☆35Jul 23, 2024Updated 2 years ago
- KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunt…☆1,732Jul 23, 2026Updated last month
- Small Python tool to do DLL Sideloading (and consequently, other DLL attacks).☆57Oct 10, 2022Updated 3 years ago
- An open-source self-hosted purple team management web application.☆314Jul 6, 2026Updated last month
- Can you pay the ransom in your country?☆14Dec 18, 2023Updated 2 years ago
- Scripts and a short guide for using them to tier an Active Directory. Made for BSides Copenhagen 2024☆41Oct 20, 2025Updated 10 months ago
- A Azure Exploitation Toolkit for Red Team & Pentesters☆168May 6, 2023Updated 3 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ☆33Aug 19, 2026Updated last week
- PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monit…☆847Feb 23, 2026Updated 6 months ago
- Enables an LLM to remotely & securely control a jumphost using synchronous or asynchronous GET requests.☆12Mar 14, 2025Updated last year
- Automatic detection engineering technical state compliance☆55Jul 7, 2024Updated 2 years ago
- Local & remote Windows DLL Proxying☆171Jun 17, 2024Updated 2 years ago
- A tool employs direct registry manipulation to create scheduled tasks without triggering the usual event logs.☆638Jan 2, 2025Updated last year
- This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple…☆869Updated this week