tigr0w's repositories

stackrox_stackrox

The StackRox Kubernetes Security Platform performs a risk analysis of the container environment, delivers visibility and runtime alerts, and provides recommendations to proactively improve security by hardening the environment.

Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0

espressif_esp-idf

Espressif IoT Development Framework. Official development framework for Espressif SoCs.

Language:CLicense:Apache-2.0Stargazers:0Issues:0Issues:0

daem0nc0re_PrivFu

Kernel mode WinDbg extension and PoCs for token privilege investigation.

Language:C#License:BSD-3-ClauseStargazers:0Issues:0Issues:0

ChiChou_grapefruit

(WIP) Runtime Application Instruments for iOS. Previously Passionfruit

License:MITStargazers:0Issues:0Issues:0

fortra_impacket

Impacket is a collection of Python classes for working with network protocols.

Language:PythonLicense:NOASSERTIONStargazers:0Issues:0Issues:0

BlWasp_rs-shell

A dirty PoC for a reverse shell with cool features in Rust

Language:RustLicense:GPL-3.0Stargazers:0Issues:0Issues:0

memN0ps_illusion-rs

Rusty Hypervisor - Windows UEFI Blue Pill Type-1 Hypervisor in Rust (Codename: Illusion)

Language:RustLicense:MITStargazers:0Issues:0Issues:0

e-m-b-a_emba

EMBA - The firmware security analyzer

Language:ShellLicense:GPL-3.0Stargazers:0Issues:0Issues:0

rapid7_metasploit-framework

Metasploit Framework

Language:RubyLicense:NOASSERTIONStargazers:0Issues:0Issues:0

DataDog_KubeHound

Kubernetes Attack Graph

Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0
Language:C#License:NOASSERTIONStargazers:0Issues:0Issues:0

infosecB_LOOBins

Living Off the Orchard: macOS Binaries (LOOBins) is designed to provide detailed information on various built-in macOS binaries and how they can be used by threat actors for malicious purposes.

Language:PythonLicense:GPL-3.0Stargazers:0Issues:0Issues:0

LloydLabs_delete-self-poc

A way to delete a locked file, or current running executable, on disk.

Language:CLicense:MITStargazers:0Issues:0Issues:0

ExaTrack_Kdrill

Python tool to check rootkits in Windows kernel

Language:PythonLicense:BSD-3-ClauseStargazers:0Issues:0Issues:0

zblurx_dploot

DPAPI looting remotely in Python

Language:PythonLicense:MITStargazers:0Issues:0Issues:0

BishopFox_sliver

Adversary Emulation Framework

Language:GoLicense:GPL-3.0Stargazers:0Issues:0Issues:0

binarly-io_Vulnerability-REsearch

Binarly Vulnerability Research Advisories

Language:PythonLicense:NOASSERTIONStargazers:0Issues:0Issues:0

magicsword-io_LOLDrivers

Living Off The Land Drivers

Language:YARALicense:Apache-2.0Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

gtworek_PSBits

Simple (relatively) things allowing you to dig a bit deeper than usual.

Language:CLicense:UnlicenseStargazers:0Issues:0Issues:0

Yamato-Security_hayabusa

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

Language:RustLicense:GPL-3.0Stargazers:0Issues:0Issues:0

GTFOArgs_GTFOArgs.github.io

GTFOArgs is a curated list of programs and their associated arguments that can be exploited to gain privileged access or execute arbitrary commands, using argument injection.

Language:HTMLLicense:GPL-3.0Stargazers:0Issues:0Issues:0

darkoperator_dnsrecon

DNS Enumeration Script

Language:PythonLicense:GPL-2.0Stargazers:0Issues:0Issues:0

kubescape

kubescape is the first tool for testing if Kubernetes is deployed securely as defined in Kubernetes Hardening Guidance by to NSA and CISA (https://www.nsa.gov/News-Features/Feature-Stories/Article-View/Article/2716980/nsa-cisa-release-kubernetes-hardening-guidance/)

Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0

EgeBalci_deoptimizer

Machine code de-optimizer.

Language:RustLicense:MITStargazers:0Issues:0Issues:0

diversenok_TokenUniverse

An advanced tool for working with access tokens and Windows security policy.

Language:PascalLicense:MITStargazers:0Issues:0Issues:0

Processus-Thief_HEKATOMB

Hekatomb is a python script that connects to LDAP directory to retrieve all computers and users informations. Then it will download all DPAPI blob of all users from all computers and uses Domain backup keys to decrypt them.

Language:PythonLicense:GPL-3.0Stargazers:0Issues:0Issues:0

tiny_tracer

A Pin Tool for tracing API calls etc

Language:C++Stargazers:0Issues:0Issues:0

klezVirus_SilentMoonwalk

PoC Implementation of a fully dynamic call stack spoofer

Language:C++License:BSD-3-ClauseStargazers:0Issues:0Issues:0

cecio_USBvalve

Expose USB activity on the fly

Language:CLicense:MITStargazers:0Issues:0Issues:0