Skip to content
View hxteam's full-sized avatar

Block or report hxteam

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Scapy: the Python-based interactive packet manipulation program & library.

Python 10,903 2,051 Updated Dec 25, 2024

Monitor linux processes without root permissions

Go 5,021 515 Updated Jan 17, 2023

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

Shell 13,591 1,496 Updated Dec 18, 2024

RDP Bitmap Cache parser

Python 486 87 Updated Dec 1, 2023

ngrep is like GNU grep applied to the network layer. It's a PCAP-based tool that allows you to specify an extended regular or hexadecimal expression to match against data payloads of packets. It un…

C 909 102 Updated Dec 9, 2024

TCP/IP packet demultiplexer. Download from:

C++ 1,706 238 Updated Dec 23, 2024

Zeek support for Community ID flow hashing.

Zeek 35 18 Updated Jul 11, 2023

HASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints can be easily stored, searched and shared in the form of a …

Python 533 74 Updated Mar 14, 2024

JA3 is a standard for creating SSL client fingerprints in an easy to produce and shareable way.

Python 2,802 293 Updated Oct 20, 2023

Techniques based on named pipes for pool overflow exploitation targeting the most recent (and oldest) Windows versions demonstrated on CVE-2020-17087 and an off-by-one overflow

C++ 184 49 Updated Sep 1, 2022

An open standard for hashing network flows into identifiers, a.k.a "Community IDs".

Python 174 25 Updated Sep 23, 2024

SS7 tools and scripts

202 80 Updated Jul 6, 2020

Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.

Python 148 23 Updated Dec 25, 2024

ReversingLabs YARA Rules

YARA 778 110 Updated Nov 27, 2024

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

C++ 973 136 Updated Dec 11, 2023

Cybersecurity oriented awesome list

1,543 166 Updated Dec 26, 2024

The Havoc Framework

Go 6,981 981 Updated Dec 21, 2024

Binary coverage tool without binary modification for Windows

Rust 429 43 Updated Aug 12, 2020

MVT (Mobile Verification Toolkit) helps with conducting forensics of mobile devices in order to find signs of a potential compromise.

Python 10,583 1,009 Updated Dec 25, 2024

static analysis of C/C++ code

C++ 5,901 1,467 Updated Dec 25, 2024

Scans a given process. Recognizes and dumps a variety of potentially malicious implants (replaced/injected PEs, shellcodes, hooks, in-memory patches).

C++ 3,163 439 Updated Dec 14, 2024

Evasive shellcode loader for bypassing event-based injection detection (PoC)

C++ 739 122 Updated Aug 23, 2021

A PoC implementation for an evasion technique to terminate the current thread and restore it before resuming execution, while implementing page protection changes during no execution.

Python 501 72 Updated Aug 1, 2022

A PoC implementation for dynamically masking call stacks with timers.

C++ 257 35 Updated Feb 13, 2023

PoC Implementation of a fully dynamic call stack spoofer

C++ 723 97 Updated Jul 20, 2024

A memory scanning evasion technique

C++ 845 113 Updated May 24, 2017

Arkime is an open source, large scale, full packet capturing, indexing, and database system.

JavaScript 6,444 1,045 Updated Dec 23, 2024

This repository includes code and IoCs that are the product of research done in Akamai's various security research teams.

C 477 71 Updated Dec 11, 2024

Public content repository for Windows Server content.

1,399 1,834 Updated Dec 20, 2024

Hunts out CobaltStrike beacons and logs operator command output

C# 894 107 Updated Sep 4, 2024
Next