-
msInvader Public
M365/Azure adversary simulation tool that generates realistic attack telemetry to help blue teams improve their detection and response capabilities.
-
BadZure Public
BadZure orchestrates the setup of Azure AD tenants, populating them with diverse entities while also introducing common security misconfigurations to create vulnerable tenants with multiple attack …
-
Talks-Presentations Public
Resource links (video, slides & code) for my conference talks | presentations | workshops
-
Blacksmith Public
Forked from OTRF/BlacksmithBuilding environments to replicate small networks and deploy applications
PowerShell GNU General Public License v3.0 UpdatedDec 19, 2024 -
PurpleSharp Public
PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows environments
-
SharpShareFinder Public
SharpShareFinder is a minimalistic network share discovery POC designed to enumerate shares in Windows Active Directory networks leveraging .NET parallelism.
-
-
PurpleTeamPlaybook Public
Active Directory Purple Team Playbook
-
attack2jira Public
attack2jira automates the process of standing up a Jira environment that can be used to track and measure ATT&CK coverage
-
Simplant Public
Command & Control Implant Simulator
-
defcon27_csharp_workshop Public
Writing custom backdoor payloads with C# - Defcon 27 Workshop
-
Oriana Public
Oriana is a threat hunting tool that leverages a subset of Windows events to build relationships, calculate totals and run analytics. The results are presented in a Web layer to help defenders iden…
-
Invoke-SMBLogin Public
Validates username & password combination(s) across a host or group of hosts using the SMB protocol.
-
PurpleSpray Public
PurpleSpray is an adversary simulation tool that executes password spray behavior under different scenarios and conditions with the purpose of generating attack telemetry in properly monitored Wind…