E-mails, subdomains and names Harvester - OSINT
-
Updated
Jul 9, 2020 - Python
E-mails, subdomains and names Harvester - OSINT
An Information Security Reference That Doesn't Suck
Curated list of Unix binaries that can be exploited to bypass system security restrictions
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
Investigate malicious Windows logon by visualizing and analyzing Windows event log
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
Slack Enumeration and Extraction Tool - extract sensitive information from a Slack Workspace
Scan your code for security misconfiguration, search for passwords and secrets.
个人维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
This repository contains full code examples from the book Gray Hat C#
Bloodhound for Blue and Purple Teams
Test Blue Team detections without running any attack.
This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to extract juicy information such as LAPS passwords or any sensitive information on the screen. Blue Team member can reconstruct PNG files to see what an attacker did on a compromised host. It is extremely useful for a forensics team to extract timestamps after an attack on a host to collect evidences and perform further analysis.
Monitoring your Slack workspaces for sensitive information
A Solution For Cross-Platform Obfuscated Commands Detection 动静态Bash/CMD/PowerShell命令混淆检测框架
Automated, extensible toolset that runs cypher queries against Bloodhound's Neo4j backend and saves output to spreadsheets.
A collection of scripts I've written to help red and blue teams with malware persistence techniques.
A PowerShell module to deploy active directory decoy objects.
ThreatHunt is a PowerShell repository that allows you to train your threat hunting skills.
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. It will automatically generate a userlist from the domain which excludes accounts that are expired, disabled locked out, or within 1 lockout attempt.
This repository is created only for infosec professionals whom work day to day basis to equip ourself with uptodate skillset, We can daily contribute daily one hour for day to day tasks and work on problem statements daily, Please contribute by providing problem statements and solutions
Windows Hardening settings and configurations
Search for Unix binaries that can be exploited to bypass system security restrictions.
openSquat is an opensource Intelligence (OSINT) R&D project to identify cyber squatting threats to specific companies or domains, such as domain squatting, typo squatting, IDN homograph attacks, phishing and scams.
Add a description, image, and links to the blueteam topic page so that developers can more easily learn about it.
To associate your repository with the blueteam topic, visit your repo's landing page and select "manage topics."