dfirence's repositories

ma-insights-xe

User Feedback Space of #MitreAssistant

ma-sets

Powered By #MitreAssistant For Samples of MITRE ATT&CK Adversaries, Weapons & Tools

Language:ShellStargazers:3Issues:0Issues:0

pe-compass-samples

PE Samples To Test

License:MITStargazers:3Issues:1Issues:0

Forensia

Anti Forensics Tool For Red Teamers, Used For Erasing Footprints In The Post Exploitation Phase.

Language:C++License:GPL-3.0Stargazers:1Issues:2Issues:0

Mindmap

This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structure to give brief details about them

Stargazers:1Issues:0Issues:0

safiro-demo

A Web Based Demo of Safiro Telemetry

License:BSD-3-ClauseStargazers:0Issues:0Issues:0

aod-public

Community Outreach Resource For AOD

Stargazers:0Issues:2Issues:0

Content-Library-CIM2

Clone from EXABEAM

Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

FlavorTown

Various ways to execute shellcode

Language:C#License:BSD-3-ClauseStargazers:0Issues:1Issues:0

GC2-sheet

GC2 is a Command and Control application that allows an attacker to execute commands on the target machine using Google Sheet and exfiltrate data using Google Drive.

Language:GoLicense:GPL-3.0Stargazers:0Issues:1Issues:0

Hunting-Queries-Detection-Rules

KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.

Stargazers:0Issues:1Issues:0

Hypervisor-101-in-Rust

The materials of "Hypervisor 101 in Rust", a one-day long course, to quickly learn hardware-assisted virtualization technology and its application for high-performance fuzzing on Intel/AMD processors.

License:MITStargazers:0Issues:0Issues:0

json-rule-editor-cloned

Json rule editor

License:GPL-3.0Stargazers:0Issues:0Issues:0
Language:TypeScriptStargazers:0Issues:2Issues:0

ntdlll-unhooking-collection

different ntdll unhooking techniques : unhooking ntdll from disk, from KnownDlls, from suspended process, from remote server (fileless)

Language:C++Stargazers:0Issues:1Issues:0

panoptes_lcostantino

A simple ETW watcher that output JSON and provides a JS engine to manipulate the events.

Stargazers:0Issues:0Issues:0

PersistenceSniper_DFIR

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines.

License:CC0-1.0Stargazers:0Issues:0Issues:0

ptscan

A pointer scanner for Windows written in Rust

License:Apache-2.0Stargazers:0Issues:0Issues:0

public-strike-paths

Outreach Location About Strike-Paths Utility

Stargazers:0Issues:0Issues:0

RedTeaming-Tactics-and-Techniques

Red Teaming Tactics and Techniques

Language:PowerShellStargazers:0Issues:1Issues:0

rplearn

My Reactive Programming Exercises

Language:JavaScriptStargazers:0Issues:0Issues:0

RustAlgo

All Algorithms implemented in Rust

Language:RustLicense:MITStargazers:0Issues:1Issues:0

sandbox-attacksurface-analysis-tools

Set of tools to analyze Windows sandboxes for exposed attack surface.

Language:C#License:Apache-2.0Stargazers:0Issues:1Issues:0

Shellcode-Hide

This repo contains : simple shellcode Loader , Encoders (base64 - custom - UUID - IPv4 - MAC), Encryptors (AES), Fileless Loader (Winhttp, socket)

Stargazers:0Issues:0Issues:0

SoftEtherVPN

Cross-platform multi-protocol VPN software. Pull requests are welcome. The stable version is available at https://github.com/SoftEtherVPN/SoftEtherVPN_Stable.

License:Apache-2.0Stargazers:0Issues:0Issues:0

SysmonCommunityGuide

TrustedSec Sysinternals Sysmon Community Guide

Stargazers:0Issues:0Issues:0

TangledWinExec

PoCs and tools for investigation of Windows process execution techniques

License:BSD-3-ClauseStargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0