Category: Defense

Cobalt Strike Scanner

melting-cobalt: Cobalt Strike Scanner

melting-cobalt A tool to hunt/mine for Cobalt Strike beacons and “reduce” their beacon configuration for later indexing. Hunts can either be expansive and internet-wide using services like SecurityTrails, Shodan, or ZoomEye or a list...

spam filtering system

rspamd: Rapid spam filtering system

Rspamd Rspamd is an advanced spam filtering system and email processing framework that allows the evaluation of messages by a number of rules including regular expressions, statistical analysis, and custom services such as URL...

risks of HTTP Desync attacks

http-desync-guardian: minimize risks of HTTP Desync attacks

http-desync-guardian Analyze HTTP requests to minimize risks of HTTP Desync attacks (precursor for HTTP request smuggling/splitting). Overview HTTP/1.1 went through a long evolution since 1991 to 2014: HTTP/0.9 – 1991 HTTP/1.0 – 1996 HTTP/1.1 RFC 2068 – 1997...

rpcfirewall

rpcfirewall v2.2 releases: Open Source Ransomware Kill Switch Tool

rpcfirewall: Open Source Ransomware Kill Switch Tool Why should I care? RPC is the underlying mechanism which is used for numerous lateral movement techniques, reconnaissance, relay attacks, or simply to exploit vulnerable RPC services. DCSync attack? over RPC. Remote DCOM?...

ThreatMapper

ThreatMapper: monitor and secure your running applications

Deepfence ThreatMapper Deepfence ThreatMapper helps you to monitor and secure your running applications, in Cloud, Kubernetes, Docker, and Fargate Serverless. Your ‘Shift Left’ initiatives enable you to deliver secure applications; ThreatMapper picks up where...

detect-secrets

detect-secrets v1.4 releases: detecting and preventing secrets in code

detect-secrets detect-secrets is an aptly named module for (surprise, surprise) detecting secrets within a code base. However, unlike other similar packages that solely focus on finding secrets, this package is designed with the enterprise client...

CloudSpec

cloudspec: open source tool for validating your resources

CloudSpec CloudSpec is an open-source tool for validating your resources in your cloud providers using a logical language that everybody can understand. With its reasonably simple syntax, you can validate the configuration of your...