Lists of independent cybersecurity blogs covering threat intelligence, purple team, red team, threat hunting, and detection engineering. Most are personal blogs maintained by practitioners who publish original research, tradecraft, and tooling.
☆42Aug 26, 2026Updated 2 weeks ago
Alternatives and similar repositories for CyberSec-Blogs
Users that are interested in CyberSec-Blogs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A VS Code plugin to execute arbitrary JavaScript code at runtime over a local HTTP endpoint.☆34Feb 10, 2026Updated 7 months ago
- Collection of custom implementations about some WinAPI functions☆38Jul 30, 2026Updated last month
- A production-ready, enterprise-grade MDR framework that transforms chaotic security alerts into structured, actionable intelligence.☆26Feb 14, 2026Updated 6 months ago
- Automated YARA rule generation from the Cert Central compromised certificate database.☆15Updated this week
- ThreatCheck - Select any indicator of compromise on any web page - or highlight an entire paragraph from a threat report - and instantly …☆34May 6, 2026Updated 4 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- PowerShell SharePoint extraction + auditing tool for red/blue/purple teams. Enumerates all SharePoint sites/drives a user can access via …☆167Jan 25, 2026Updated 7 months ago
- DriverSentinel is a security tool developed in Go that detects malicious and vulnerable drivers on Windows systems by comparing them agai…☆36Jul 28, 2026Updated last month
- Helping defenders learn and validate npm supply-chain detections with safe atomic tests.☆35Oct 30, 2025Updated 10 months ago
- A Bloodhound alternative. BloodBash will ingest the same files bloodhound does but no server is required to use this tool. It's great for…☆491Aug 19, 2026Updated 3 weeks ago
- ☆89Sep 3, 2026Updated last week
- FireEye iSIGHT Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform☆16Oct 12, 2018Updated 7 years ago
- Tool to aid in dumping LSASS process remotely☆43Sep 23, 2025Updated 11 months ago
- Atomic test units for BOF execution☆61Apr 26, 2026Updated 4 months ago
- AWSDoor is a red team automation tool designed to simulate advanced attacker behavior in AWS environments☆36Sep 17, 2025Updated 11 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- PowerShell implementation for AD CS☆162Jul 30, 2026Updated last month
- Tool that gathers a customizable set of ETW telemetry and generates user-defined detections☆56Jan 28, 2026Updated 7 months ago
- Stealthy .NET assembly loading using AssemblyNative::LoadFromBuffer☆58Mar 22, 2026Updated 5 months ago
- Gain insights into COM/DCOM implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By…☆166Nov 23, 2025Updated 9 months ago
- a minimal, position-independent C shellcode framework for Windows x64. compiles entirely on Linux☆68Aug 1, 2026Updated last month
- An MCP to expose process monitoring and ETW tracing functionally to AI agents to assist in security work☆80May 6, 2026Updated 4 months ago
- Automatically deploying Mythic C2 in Azure using Terraform☆25Jul 3, 2026Updated 2 months ago
- Command and Control Framework using powershell implants☆36Jun 17, 2025Updated last year
- ☆68Jul 12, 2026Updated 2 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A small guide on Unknown/Orphaned SIDs and some PowerShell tools to help you get rid of them.☆21Apr 16, 2026Updated 4 months ago
- a list of useful feeds☆99May 15, 2026Updated 3 months ago
- DeepProbe - Memory Forensics Framework☆16May 16, 2026Updated 3 months ago
- Novel Windows process injection: assembles existing open handles (process & thread), natural RWX regions, and special user APC (NtQueueAp…☆75Feb 17, 2026Updated 6 months ago
- Automate All Pivoting System Enumeration with this Bash Script☆13Nov 7, 2022Updated 3 years ago
- An offensive postexploitation tool that will give you complete control over the Outlook desktop application and therefore to the emails c…☆166Oct 9, 2024Updated last year
- Tailscale/Headscale C2 profile and agent for Mythic☆34Mar 14, 2026Updated 5 months ago
- Clean Indirect Syscalls with Hook Evasion & Return Address Spoofing.☆102Apr 30, 2026Updated 4 months ago
- ☆18Apr 15, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Track C2 servers, tools, and botnets over time by framework and location☆16Aug 17, 2025Updated last year
- Technical Reference to multiple relay techniques☆194May 21, 2026Updated 3 months ago
- ☆104Aug 27, 2026Updated 2 weeks ago
- goLoL is a Windows host scanner with dual support for LOLBAS binaries and LOLDrivers. It lists LOLBAS techniques runnable at your current…☆69Jun 28, 2026Updated 2 months ago
- This is a collection of the best resources on Move security for the Sui/Aptos ecosystems.☆19Dec 2, 2025Updated 9 months ago
- A portfolio demonstrating advanced blue and red team skills, including: SSH MFA implementation, Volatility-based memory forensics to dete…☆23Oct 19, 2025Updated 10 months ago
- Interactive PowerShell framework for testing WMI, COM, LOLBAS, and persistence techniques☆131Dec 28, 2025Updated 8 months ago