Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types
☆142Jun 1, 2023Updated 3 years ago
Alternatives and similar repositories for heyserial
Users that are interested in heyserial are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Python's handling of NaN is....interesting?broken?...this project illustrates the issue☆13Dec 28, 2021Updated 4 years ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆69Feb 3, 2022Updated 4 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Sep 14, 2021Updated 4 years ago
- C# alternative to the linux "cat" command... Prints file contents to console. For use with Cobalt Strike's Execute-Assembly☆15Jul 15, 2021Updated 5 years ago
- Rip Raw is a small tool to analyse the memory of compromised Linux systems.☆133Jan 31, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Threat Box Assessment Tool☆20Mar 5, 2026Updated 5 months ago
- Nim-based assembly packer and shellcode loader for opsec & profit☆487Feb 24, 2023Updated 3 years ago
- Pointer was developed for massive hunting and mapping Cobalt Strike servers exposed on the internet.☆68Apr 12, 2022Updated 4 years ago
- 🐚ᴠʟᴀɴɢ ʀ ᴇᴠᴇʀsᴇ sʜᴇʟʟ🐚☆11Apr 28, 2022Updated 4 years ago
- ☆33Feb 26, 2022Updated 4 years ago
- A quick handy script to harvest credentials off of a user during a Red Team and get execution of a file from the user☆254Mar 7, 2022Updated 4 years ago
- Collection of Azure Tools to Pull down for Attacking an Environment + quick tips and other useful information☆79Jul 30, 2026Updated last week
- DInvisibleRegistry☆82Nov 20, 2020Updated 5 years ago
- Manage Shadows Copies via the VSS API using C#, C++, Crystal or Python. Working on Windows 11☆84Jan 26, 2026Updated 6 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆40Jul 29, 2021Updated 5 years ago
- .NET implementation of Cobalt Strike's External C2 Spec☆89Nov 12, 2021Updated 4 years ago
- ☆616Jun 1, 2023Updated 3 years ago
- The Threat Hunting In Rapid Iterations (THIRI) Jupyter notebook is designed as a research aide to let you rapidly prototype threat huntin…☆154Apr 25, 2022Updated 4 years ago
- A Visual Studio Code Extension agent for Mythic C2☆75Nov 5, 2024Updated last year
- Code and yara rules to detect and analyze Cobalt Strike☆274May 5, 2021Updated 5 years ago
- Resolve syscall numbers at runtime for all Windows versions.☆60Nov 21, 2024Updated last year
- WhoAmI by asking the LDAP service on a domain controller.☆67Feb 8, 2022Updated 4 years ago
- PoC to demonstrate how CLR ETW events can be tampered.☆191Mar 26, 2020Updated 6 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆10Oct 25, 2020Updated 5 years ago
- Collection of tools that reflect the network dimension into Bloodhound's data☆452Oct 19, 2022Updated 3 years ago
- Adaptive DLL hijacking / dynamic export forwarding☆819Jul 6, 2020Updated 6 years ago
- Using DInvoke to patch AMSI.dll in order to bypass AMSI detections triggered when loading .NET tradecraft via Assembly.Load().☆216Mar 5, 2020Updated 6 years ago
- D/Invoke port of UrbanBishop☆108Jul 19, 2020Updated 6 years ago
- ADExplorerSnapshot.py is an AD Explorer snapshot parser. It is made as an ingestor for BloodHound via BOFHound, and also supports full-ob…☆1,095Jul 10, 2026Updated last month
- Aims to identify sleeping beacons☆678Jan 25, 2026Updated 6 months ago
- web application pentesting tools for docker☆19Aug 9, 2022Updated 4 years ago
- official repo for the AdHuntTool (part of the old RedTeamCSharpScripts repo)☆234Jun 10, 2022Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A collection of various and sundry code snippets that leverage .NET dynamic tradecraft☆145May 18, 2024Updated 2 years ago
- Ansible playbooks for instrumenting a Red Team environment with RedElk☆52Oct 6, 2020Updated 5 years ago
- Extra cmdlets to help with quering security related information from Azure☆15Jul 28, 2026Updated 2 weeks ago
- Automatically create YARA rules from malicious documents.☆211May 16, 2022Updated 4 years ago
- TeamFiltration is a cross-platform framework for enumerating, spraying, exfiltrating, and backdooring O365 AAD accounts☆1,398Mar 9, 2026Updated 5 months ago
- Harvis is designed to automate your C2 Infrastructure.☆107Jul 10, 2022Updated 4 years ago
- Keep it secret, keep it safe☆77Feb 6, 2025Updated last year