Projects in Awesome Lists by WithSecureLabs
A curated list of projects in awesome lists by WithSecureLabs .
https://github.com/withsecurelabs/drozer
The Leading Security Assessment Framework for Android.
android drozer java mobile mobsec mwr pentesting security withsecure
Last synced: 08 May 2025
https://github.com/FSecureLABS/drozer
The Leading Security Assessment Framework for Android.
android drozer java mobile mobsec mwr pentesting security withsecure
Last synced: 02 May 2025
https://github.com/WithSecureLabs/drozer
The Leading Security Assessment Framework for Android.
android drozer java mobile mobsec mwr pentesting security withsecure
Last synced: 01 Apr 2025
https://github.com/withsecurelabs/chainsaw
Rapidly Search and Hunt through Windows Forensic Artefacts
attack blueteam chainsaw countercept detection dfir forensics logs rust security sigma threat-hunting windows
Last synced: 25 Jun 2025
https://github.com/WithSecureLabs/chainsaw
Rapidly Search and Hunt through Windows Forensic Artefacts
attack blueteam chainsaw countercept detection dfir forensics logs rust security sigma threat-hunting windows
Last synced: 27 Mar 2025
https://github.com/withsecurelabs/c3
Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive toolkits.
Last synced: 07 Apr 2025
https://github.com/WithSecureLabs/C3
Custom Command and Control (C3). A framework for rapid prototyping of custom C2 channels, while still providing integration with existing offensive toolkits.
Last synced: 24 Mar 2025
https://github.com/WithSecureLabs/needle
The iOS Security Testing Framework
ios mobile needle pentesting python security
Last synced: 26 Mar 2025
https://github.com/withsecurelabs/needle
The iOS Security Testing Framework
ios mobile needle pentesting python security
Last synced: 08 Apr 2025
https://github.com/withsecurelabs/doublepulsar-detection-script
A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.
countercept doublepulsar script security-scanner security-tools
Last synced: 16 May 2025
https://github.com/WithSecureLabs/doublepulsar-detection-script
A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.
countercept doublepulsar script security-scanner security-tools
Last synced: 15 May 2025
https://github.com/withsecurelabs/python-exe-unpacker
A helper script for unpacking and decompiling EXEs compiled from python code.
Last synced: 04 Oct 2025
https://github.com/WithSecureLabs/awspx
A graph-based tool for visualizing effective access and resource relationships in AWS environments.
aws aws-security graph-theory pentesting
Last synced: 29 Apr 2025
https://github.com/FSecureLABS/leonidas
Automated Attack Simulation in the Cloud, complete with detection use cases.
Last synced: 02 May 2025
https://github.com/withsecurelabs/callstackspoofer
A PoC implementation for spoofing arbitrary call stacks when making sys calls (e.g. grabbing a handle via NtOpenProcess)
Last synced: 25 Jun 2025
https://github.com/WithSecureLabs/leonidas
Automated Attack Simulation in the Cloud, complete with detection use cases.
Last synced: 01 Apr 2025
https://github.com/ReversecLabs/lolcerts
A repository of code signing certificates known to have been leaked or stolen, then abused by threat actors
Last synced: 12 Oct 2025
https://github.com/WithSecureLabs/LinuxCatScale
Incident Response collection and processing scripts with automated reporting scripts
collection countercept incident-response linux triage
Last synced: 12 Jul 2025
https://github.com/WithSecureLabs/doublepulsar-c2-traffic-decryptor
A python2 script for processing a PCAP file to decrypt C2 traffic sent to DOUBLEPULSAR implant
countercept decryptor doublepulsar
Last synced: 11 May 2025
https://github.com/countercept/doublepulsar-c2-traffic-decryptor
A python2 script for processing a PCAP file to decrypt C2 traffic sent to DOUBLEPULSAR implant
countercept decryptor doublepulsar
Last synced: 21 Feb 2025
https://github.com/ReversecLabs/Jamf-Attack-Toolkit
Suite of tools to facilitate attacks against the Jamf macOS management platform.
Last synced: 12 Jul 2025
https://github.com/ReversecLabs/drozer-modules
android drozer java mobile mwr pentesting security
Last synced: 29 Jul 2025
https://github.com/withsecurelabs/ppid-spoofing
Scripts for performing and detecting parent PID spoofing
Last synced: 25 Jun 2025
https://github.com/ReversecLabs/drozer-agent
The Android Agent for the Drozer Security Assessment Framework.
android drozer java mobile mobsec mwr pentesting security withsecure
Last synced: 11 Jul 2025
https://github.com/withsecurelabs/detectree
Data visualization for blue teams
countercept detection svelte visualisation
Last synced: 21 Jun 2025
https://github.com/withsecurelabs/modulestomping
https://blog.f-secure.com/hiding-malicious-code-with-module-stomping/
countercept module-stomping security
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/doublepulsar-usermode-injector
A utility to use the usermode shellcode from the DOUBLEPULSAR payload to reflectively load an arbitrary DLL into another process, for use in testing detection techniques or other security research.
countercept doublepulsar injector
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/garbageman
GarbageMan is a set of tools for analyzing .NET binaries through heap analysis.
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/dotnet-gargoyle
A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/esfang
ESF modular ingestion tool for development and research.
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/tau-engine
A document tagging library
countercept detection-engine rule-engine rust tau yaml
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/macostriagecollectionscript
A triage data collection script for macOS
collection countercept incident-response triage
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/remotepspy
RemotePSpy provides live monitoring of remote PowerShell sessions, which is particularly useful for older (pre-5.0) versions of PowerShell which do not have comprehensive logging facilities built in.
Last synced: 14 Dec 2025
https://github.com/withsecurelabs/mongo-rs
A higher-level wrapper on top of the official bson & mongodb crates.
Last synced: 16 Aug 2025
https://github.com/withsecurelabs/flair
F-Secure Lightweight Acqusition for Incident Response (FLAIR)
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/deject
Memory dump and Sample analysis tool
Last synced: 25 Jun 2025
https://github.com/ReversecLabs/FixerUpper
A Burp extension to enable modification of FIX messages when relayed from MitM_Relay
Last synced: 13 May 2025
https://github.com/withsecurelabs/memory-carving-scripts
Scripts for extracting useful information from infected memory dumps
Last synced: 22 Jun 2025
https://github.com/withsecurelabs/shadowhammer
Tools related to 'shadowhammer' attack, https://securelist.com/operation-shadowhammer/89992
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/snake-scales
snake-scales - the default repository of snake scales
countercept python snake snake-scales
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/usb-ninja-detection-poc
USB Ninja Detection PoC
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/datamate
countercept data-visualization netflow
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/hl7magic
A Burp extension to allow for easy modification of HL7 messages sent to and from medical devices.
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/dreamer
Easier cloud infrastructure with Terraform and Ansible
ansible automation devops python terraform
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/snake-skin
snake-skin - the web ui for snake
Last synced: 30 Jul 2025
https://github.com/withsecurelabs/kanvas
A simple-to-use IR (incident response) case management tool for tracking and documenting investigations.
dfir-tools incident-management incident-response incident-response-tooling
Last synced: 20 Jul 2025
https://github.com/withsecurelabs/snake-charmer
snake-charmer - the regression test suite for snake
Last synced: 25 Jun 2025
https://github.com/withsecurelabs/soccrates_adapters
Helpers for adapting data from Elements Vulnerability Management to be used in Soccrates EU project
Last synced: 25 Jun 2025