Lists of independent cybersecurity blogs covering threat intelligence, purple team, red team, threat hunting, and detection engineering. Most are personal blogs maintained by practitioners who publish original research, tradecraft, and tooling.
☆41May 9, 2026Updated 3 months ago
Alternatives and similar repositories for CyberSec-Blogs
Users that are interested in CyberSec-Blogs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A VS Code plugin to execute arbitrary JavaScript code at runtime over a local HTTP endpoint.☆34Feb 10, 2026Updated 6 months ago
- Collection of custom implementations about some WinAPI functions☆38Jul 30, 2026Updated 3 weeks ago
- A production-ready, enterprise-grade MDR framework that transforms chaotic security alerts into structured, actionable intelligence.☆25Feb 14, 2026Updated 6 months ago
- Automated YARA rule generation from the Cert Central compromised certificate database.☆15Updated this week
- ThreatCheck - Select any indicator of compromise on any web page - or highlight an entire paragraph from a threat report - and instantly …☆33May 6, 2026Updated 3 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- PowerShell SharePoint extraction + auditing tool for red/blue/purple teams. Enumerates all SharePoint sites/drives a user can access via …☆167Jan 25, 2026Updated 6 months ago
- DriverSentinel is a security tool developed in Go that detects malicious and vulnerable drivers on Windows systems by comparing them agai…☆36Jul 28, 2026Updated 3 weeks ago
- Helping defenders learn and validate npm supply-chain detections with safe atomic tests.☆34Oct 30, 2025Updated 9 months ago
- A Bloodhound alternative. BloodBash will ingest the same files bloodhound does but no server is required to use this tool. It's great for…☆464Updated this week
- ☆88Apr 8, 2026Updated 4 months ago
- FireEye iSIGHT Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform☆16Oct 12, 2018Updated 7 years ago
- Tool to aid in dumping LSASS process remotely☆43Sep 23, 2025Updated 11 months ago
- Atomic test units for BOF execution☆60Apr 26, 2026Updated 3 months ago
- AWSDoor is a red team automation tool designed to simulate advanced attacker behavior in AWS environments☆36Sep 17, 2025Updated 11 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆15Apr 28, 2026Updated 3 months ago
- PowerShell implementation for AD CS☆160Jul 30, 2026Updated 3 weeks ago
- Tool that gathers a customizable set of ETW telemetry and generates user-defined detections☆55Jan 28, 2026Updated 6 months ago
- Stealthy .NET assembly loading using AssemblyNative::LoadFromBuffer☆57Mar 22, 2026Updated 5 months ago
- Gain insights into COM/DCOM implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By…☆165Nov 23, 2025Updated 9 months ago
- a minimal, position-independent C shellcode framework for Windows x64. compiles entirely on Linux☆65Aug 1, 2026Updated 3 weeks ago
- An MCP to expose process monitoring and ETW tracing functionally to AI agents to assist in security work☆79May 6, 2026Updated 3 months ago
- Automatically deploying Mythic C2 in Azure using Terraform☆25Jul 3, 2026Updated last month
- Command and Control Framework using powershell implants☆36Jun 17, 2025Updated last year
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- ☆64Jul 12, 2026Updated last month
- A small guide on Unknown/Orphaned SIDs and some PowerShell tools to help you get rid of them.☆21Apr 16, 2026Updated 4 months ago
- a list of useful feeds☆99May 15, 2026Updated 3 months ago
- DeepProbe - Memory Forensics Framework☆16May 16, 2026Updated 3 months ago
- Novel Windows process injection: assembles existing open handles (process & thread), natural RWX regions, and special user APC (NtQueueAp…☆73Feb 17, 2026Updated 6 months ago
- Automate All Pivoting System Enumeration with this Bash Script☆13Nov 7, 2022Updated 3 years ago
- An offensive postexploitation tool that will give you complete control over the Outlook desktop application and therefore to the emails c…☆166Oct 9, 2024Updated last year
- Tailscale/Headscale C2 profile and agent for Mythic☆34Mar 14, 2026Updated 5 months ago
- Clean Indirect Syscalls with Hook Evasion & Return Address Spoofing.☆102Apr 30, 2026Updated 3 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- ☆18Apr 15, 2024Updated 2 years ago
- Track C2 servers, tools, and botnets over time by framework and location☆16Aug 17, 2025Updated last year
- ☆101Updated this week
- goLoL is a Windows host scanner with dual support for LOLBAS binaries and LOLDrivers. It lists LOLBAS techniques runnable at your current…☆66Jun 28, 2026Updated last month
- A sysmon configuration designed for monitoring RMM solutions from the LOLRMM framework on the OS Microsoft Windows. 10/11☆33Feb 17, 2026Updated 6 months ago
- A portfolio demonstrating advanced blue and red team skills, including: SSH MFA implementation, Volatility-based memory forensics to dete…☆23Oct 19, 2025Updated 10 months ago
- Interactive PowerShell framework for testing WMI, COM, LOLBAS, and persistence techniques☆131Dec 28, 2025Updated 7 months ago