Trần Văn Hải's starred repositories

Inline-Execute-PE

Execute unmanaged Windows executables in CobaltStrike Beacons

Language:CLicense:Apache-2.0Stargazers:607Issues:0Issues:0

passivedns

A network sniffer that logs all DNS server replies for use in a passive DNS setup

Language:CStargazers:1653Issues:0Issues:0

docs

documentations, slides decks...

Language:TeXStargazers:767Issues:0Issues:0

RichPE

Metadata hash incorporating the Rich Header for robustness against packing and other malware tricks

Language:PythonLicense:Apache-2.0Stargazers:54Issues:0Issues:0
Language:PythonLicense:GPL-3.0Stargazers:1010Issues:0Issues:0

HackBrowserData

Extract and decrypt browser data, supporting multiple data types, runnable on various operating systems (macOS, Windows, Linux).

Language:GoLicense:MITStargazers:10355Issues:0Issues:0
Language:C++License:GPL-2.0Stargazers:199Issues:0Issues:0

LightsOut

Generate an obfuscated DLL that will disable AMSI & ETW

Language:PythonLicense:GPL-3.0Stargazers:310Issues:0Issues:0

my-infosec-awesome

My curated list of awesome links, resources and tools on infosec related topics

License:MITStargazers:1045Issues:0Issues:0

awesome-csirt

Awesome CSIRT is an curated list of links and resources in security and CSIRT daily activities.

Language:CLicense:GPL-3.0Stargazers:413Issues:0Issues:0

Open-Source-Threat-Intel-Feeds

This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple types such as IP, URL, CVE and Hash.

Language:PythonLicense:BSD-3-ClauseStargazers:521Issues:0Issues:0

jarm

A list of JARM fingerprints from malicious IPs, matched against known C2 fingerprints.

Stargazers:7Issues:0Issues:0

awesome-threat-intelligence

A curated list of Awesome Threat Intelligence resources

License:Apache-2.0Stargazers:7632Issues:0Issues:0

Awesome-CobaltStrike-Defence

Defences against Cobalt Strike

License:MITStargazers:1255Issues:0Issues:0
Language:PythonStargazers:393Issues:0Issues:0

Shinigami

A dynamic unpacking tool

Language:C++License:MITStargazers:122Issues:0Issues:0

sim-ba

(Sim)ulate (Ba)zar Loader

Language:C++Stargazers:28Issues:0Issues:0

HellHall

Performing Indirect Clean Syscalls

Language:CStargazers:430Issues:0Issues:0

maldev

Golang library for malware development

Language:GoLicense:MITStargazers:297Issues:0Issues:0

adversary_emulation_library

An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.

Language:CLicense:Apache-2.0Stargazers:1607Issues:0Issues:0

C2_Automation

C2 Automation using Linode

Language:HCLStargazers:78Issues:0Issues:0

CFG-FindHiddenShellcode

Walks the CFG bitmap to find previously executable but currently hidden shellcode regions

Language:C++Stargazers:91Issues:0Issues:0

One-Lin3r

Gives you one-liners that aids in penetration testing operations, privilege escalation and more

Language:PythonLicense:GPL-3.0Stargazers:1657Issues:0Issues:0

RDI-SRDI

This repo goes with the blog entry at blog.malicious.group entitled "Writing your own RDI / sRDI loader using C and ASM".

Language:CStargazers:74Issues:0Issues:0

C-Cpp-Notes

Notes about modern C++, C++11, C++14 and C++17, Boost Libraries, ABI, foreign function interface and reference cards.

Language:C++Stargazers:706Issues:0Issues:0

EATGuard

Implementation of an export address table protection mitigation, like Export Address Filtering (EAF)

Language:C++Stargazers:91Issues:0Issues:0
Language:C++Stargazers:74Issues:0Issues:0

malware4edu

Malware Samples that could be used for teaching students about malware analysis.

Stargazers:43Issues:0Issues:0

maldev-for-dummies

A workshop about Malware Development

Language:NimLicense:NOASSERTIONStargazers:1477Issues:0Issues:0

awesome-malware-development

Organized list of my malware development resources

Stargazers:1341Issues:0Issues:0