APT & CyberCriminal Campaign Collection
Repositories
sbousseaden repositories
Indicators of compromise (IOCs) collected from public resources and categorized by Qi-AnXin.
Interesting apt report collection and some special ioc express
Searches For Threat Hunting and Security Analytics
Open-Source Remote Administration Tool For Windows C# (RAT)
collateral from http://basicinputoutput.com
CVE-2020-0688_EXP Auto trigger payload & encrypt method
PoC for triggering buffer overflow via CVE-2020-0796
ConventionEngine - A Yara Rulepack for PDB Path Hunting
EDRUnChoker - fileless WMI defense that removes EDRChoker QoS throttling policies
Windows Events Attack Samples
Empire is a PowerShell and Python post-exploitation agent.
Exchange Log Collection Script
ObscurityLabs RedTeam C# Toolkit
The Source Code of HyperDbg Debugger 🐞
Hook system calls, context switches, page faults and more.
Scripted Local Linux Enumeration & Privilege Escalation Checks
Volatility plugin for extracts configuration data of known malware
This repo covers some code execution and AV Evasion methods for Macros in Office documents
Small random scripts for various things I find myself needing to repeat/automate