Grow your team on GitHub
GitHub is home to over 50 million developers working together. Join them to grow your own development teams, manage permissions, and collaborate on projects.
Sign upRepositories
-
ModSecurity
ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx that is developed by Trustwave's SpiderLabs. It has a robust event-based programming language which provides protection from a range of attacks against web applications and allows for HTTP traffic monitoring, logging and real-time analys…
-
ModSecurity-nginx
ModSecurity v3 Nginx Connector
-
cve_server
Simple REST-style web service for the CVE searching
-
microphisher Archived
µphisher spear phishing tool (reference implementation)
-
owasp-modsecurity-crs Archived
OWASP ModSecurity Core Rule Set (CRS) Project (Official Repository)
-
Responder
Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.
-
OWASP-CRS-Documentation
Documentation for the OWASP CRS project
-
IOCs-IDPS
This repository will hold PCAP IOC data related with known malware samples (owner: Bryant Smith)
-
-
Misc
A repository for miscellaneous files shared by SpiderLabs
-
HostHunter
HostHunter a recon tool for discovering hostnames using OSINT techniques.
-
SCShell
Forked from Mr-Un1k0d3r/SCShellFileless lateral movement tool that relies on ChangeServiceConfigA to run command
-
secrules-language-tests
Set of test cases that can be used to test custom implementations of the SecRules language (ModSecurity rules format).
-
jboss-autopwn
A JBoss script for obtaining remote shell access
-
net-tns
Net::TNS, a Ruby library for connecting to Oracle databases.
-
Nmap-Tools
SpiderLabs shared Nmap Tools
-
modsec-sdbm-util
Utility to manipulate SDBM files used by ModSecurity. With that utility it is possible to _shrink_ SDBM databases. It is also possible to list the SDBM contents with filters such as: expired or invalid items only.
-
scavenger
scavenger : is a multi-threaded post-exploitation scanning tool for scavenging systems, finding most frequently used files and folders as well as "interesting" files containing sensitive information.
-
MCIR
The Magical Code Injection Rainbow! MCIR is a framework for building configurable vulnerability testbeds. MCIR is also a collection of configurable vulnerability testbeds.
-
deblaze
Performs method enumeration and interrogation against flash remoting end points.
-
DoHC2
DoHC2 allows the ExternalC2 library from Ryan Hanson (https://github.com/ryhanson/ExternalC2) to be leveraged for command and control (C2) via DNS over HTTPS (DoH).
-
SharpCompile
SharpCompile is an aggressor script for Cobalt Strike which allows you to compile and execute C# in realtime. This is a more slick approach than manually compiling an .NET assembly and loading it into Cobalt Strike. The project aims to make it easier to move away from adhoc PowerShell execution instead creating a temporary assembly and executing…
-
Airachnid-Burp-Extension
A Burp Extension to test applications for vulnerability to the Web Cache Deception attack
-
ModSecurity-Python-bindings
Python bindings for libModSecurity (aka ModSecurity v3)
-
Firework
Firework is a proof of concept tool to interact with Microsoft Workplaces creating valid files required for the provisioning process.
-
OWASP-CRS-regressions
Regression tests for OWASP CRS v3
-
Scripts
Various Scripts
-
ModSecurity-log-utilities
Set of CLI tools to transform ModSecurity logs into a meaningful information, given a context.

