trustedsec / RisingSun
RisingSun: Decoding SUNBURST C2 to identify infected hosts without network telemetry.
☆10Updated 4 years ago
Alternatives and similar repositories for RisingSun:
Users that are interested in RisingSun are comparing it to the libraries listed below
- Gives context to a system. Uses EQGRP shadow broker leaked list to give some descriptions to processes.☆15Updated 7 years ago
- Exchange your privileges for Domain Admin privs by abusing Exchange☆16Updated 5 years ago
- A PowerShell Module Dedicated to Reverse Engineering☆14Updated 5 years ago
- Light System Examination Toolkit (LISET) - logs & activity & configuration gathering utility that comes handy in fast Windows incident re…☆29Updated 8 years ago
- LyncSniper: A tool for penetration testing Skype for Business and Lync deployments☆9Updated 8 years ago
- A powershell script that prints a lot of IP and connection info to the screen☆31Updated 8 years ago
- A Threat hunter's playbook to aid the development of techniques and hypothesis for hunting campaigns by leveraging Windows Events and Sys…☆12Updated 8 years ago
- Active Directory information dumper via LDAP☆12Updated 5 years ago
- Egressbuster is a method to check egress filtering and identify if ports are allowed. If they are, you can automatically spawn a shell.☆12Updated 7 years ago
- Generates anti-sandbox analysis HTA files without payloads☆15Updated 8 years ago
- Repo for hosting various scripts for creating users for password spraying and other password attacks.☆11Updated 4 years ago
- Collection of scripts and tools that I created to aid in my testing.☆14Updated 3 years ago
- Script to parse multiple Nmap .gnmap exports into various plain-text formats for easy analysis.☆24Updated 11 years ago
- LetMeOutOfYour.net Resources☆20Updated 4 years ago
- A single repository for any security tools, scripts, documentation, etc. that I add☆12Updated 8 years ago
- Collaborative web dashboard for RedTeam pentesters☆21Updated 5 years ago
- Various Python scripts that have come in handy but aren't important enough to get their own repository☆22Updated 4 years ago
- Automated install process for Phishing Frenzy☆24Updated 10 years ago
- Miscellaneous for various things☆20Updated 5 months ago
- Automatically spin up infra for phishing☆64Updated 5 years ago
- A parser to extract information from .nessus file format☆23Updated 4 years ago
- Gunslinger is used to hunt for Magecart sites using URLScan's API☆31Updated 3 years ago
- Tool to download, install, and run macOS capable command & control servers (i.e., C2s with macOS payloads/clients) as docker containers f…☆19Updated 4 years ago
- Random code snippets☆10Updated last year
- A tool for checking a hash:pass pot file for hashes from a user:hash file☆12Updated 8 years ago
- ☆33Updated 3 months ago
- A multi-threaded class C network scanner. Loosely based on propecia.c by Bind.☆12Updated 10 years ago
- Extracts Azure authentication tokens from PowerShell process minidumps.☆23Updated last year
- Red Team Tool Kit☆16Updated 6 years ago
- The project is called GreatSCT (Great Scott). GreatSCT is an open source project to generate application white list bypasses. This tool i…☆30Updated 7 years ago