aN0mad/analysisTools
Malware analysis tools used alongside "Practical Malware Analysis: The Hands-on Guide to Dissecting Malicious Software" Book by Andrew Honig and Michael Sikorski
Malware analysis tools used alongside "Practical Malware Analysis: The Hands-on Guide to Dissecting Malicious Software" Book by Andrew Honig and Michael Sikorski
Technical Reference to multiple relay techniques
A golang logging library that allows logging to the console, to a channel or both
Automated creation of WSL 2 Development Machine
Automatically run and populate a new instance of BH CE
Junk drawer: A drawer designated for the storage of various miscellaneous, small, occasionally useful items of little value.
toPlextrac is a Go module designed to help teams ingest, validate, and export security findings in formats compatible with platforms like PlexTrac. It supports CSV and JSON input/output, includes validation for common metadata fields, and enables seamless integration into reporting workflows.
A tutorial on how to write a packer for Windows!
Reflective DLL injection Execution
This tool extracts Credit card numbers, NTLM(DCE-RPC, HTTP, SQL, LDAP, etc), Kerberos (AS-REQ Pre-Auth etype 23), HTTP Basic, SNMP, POP, SMTP, FTP, IMAP, etc from a pcap file or from a live interface.
OSINT Tool: Generate username lists for companies on LinkedIn
LKM rootkit for Linux Kernels 2.6.x/3.x/4.x/5.x (x86/x86_64 and ARM64)
A python script used to create fake data.
A shell script to automatically create a reverse tunnel using autossh for portforwarding.
A shell script wrapper around nmap that runs an initial and then a targeted nmap scan.
AutoRecon is a multi-threaded network reconnaissance tool which performs automated enumeration of services.
Adversary Tactics - PowerShell Training
Executes commands built from a config file only inside a configured date range and daily time window
Automatic restic backup of a docker-compose setup. https://hub.docker.com/r/zettaio/restic-compose-backup
Subdomain enumeration via crt.sh
A lightweight Go module to download and parse the [CISA Known Exploited Vulnerabilities (KEV)](https://www.cisa.gov/known-exploited-vulnerabilities-catalog) CSV file.
lumberjack is a log rolling package for Go
easy rotatable zap
YAML support for the Go language.
The Network Execution Tool
A go based project that ingests a list of CIDR blocks and a list of IP addresses and returns a CSV marking a CIDR as alive if an IP address was within the block.
A logger wrapper built on top of charmbracelet/lipgloss and charmbracelet/log.
A go project to handle killing a process by PID
Verify an nmap file against a target range file to determine if the network subnet is online or offline.