APTSimulator
DumpsterFire
APTSimulator | DumpsterFire | |
---|---|---|
7 | 3 | |
2,395 | 970 | |
1.0% | - | |
0.0 | 0.0 | |
12 months ago | about 4 years ago | |
Batchfile | Python | |
MIT License | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
APTSimulator
-
Lack of Detections
APTSim is also a common choice (https://github.com/NextronSystems/APTSimulator)
-
EDR Attack Simulation
https://github.com/NextronSystems/APTSimulator is another common choice for this.
- how worthless is windows defender after all?
-
If you could name 5 tools/software worth learning for a cybersecurity analyst to become more employable, what would they be?
https://github.com/NextronSystems/APTSimulator APT Simulator is a Windows Batch script that uses a set of tools and output files to make a system look as if it was compromised. In contrast to other adversary simulation tools, APT Simulator is designed to make the application as simple as possible. You don't need to run a web server, database or any agents on set of virtual machines. Just download the prepared archive, extract and run the contained Batch file as Administrator. Running APT Simulator takes less than a minute of your time.
- Bulk Extractor showing Explicit Websites
- How to keep a SOC on their toes
-
APTSimulator 0.9.0 featuring Cobalt Strike beacon activity simulation
Here’s the direct link: https://github.com/NextronSystems/APTSimulator
DumpsterFire
-
If you could name 5 tools/software worth learning for a cybersecurity analyst to become more employable, what would they be?
https://github.com/TryCatchHCF/DumpsterFire The DumpsterFire Toolset is a modular, menu-driven, cross-platform tool for building repeatable, time-delayed, distributed security events. Easily create custom event chains for Blue Team drills and sensor / alert mapping. Red Teams can create decoy incidents, distractions, and lures to support and scale their operations. Turn paper tabletop exercises into controlled "live fire" range events. Build event sequences ("narratives") to simulate realistic scenarios and generate corresponding network and filesystem artifacts.
- How to keep a SOC on their toes
- How do you improve your blue team skills?
What are some alternatives?
atomic-red-team - Small and highly portable detection tests based on MITRE's ATT&CK.
hacktricks - Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
monkey - Infection Monkey - An open-source adversary emulation platform
CVE-2022-0337-PoC-Google-Chrome-Microsoft-Edge-Opera - 🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera - vulnerability reported by Maciej Pulikowski - System environment variables leak - CVE-2022-0337
EDR-Telemetry - This project aims to compare and evaluate the telemetry of various EDR products.
evillimiter-windows - Tool that limits bandwidth of devices on the same network without access.
invoke-atomicredteam - Invoke-AtomicRedTeam is a PowerShell module to execute tests as defined in the [atomics folder](https://github.com/redcanaryco/atomic-red-team/tree/master/atomics) of Red Canary's Atomic Red Team project.
reconmap - Vulnerability assessment and penetration testing automation and reporting platform for teams.
Notes
Kali-Linux-Tools-Interface - Graphical Web interface developed to facilitate the use of security information tools.
ransomware-simulator - Ransomware simulator written in Golang
AlanFramework - A C2 post-exploitation framework