Skip to content
View malcomvetter's full-sized avatar

Organizations

@WirespeedSecurity

Block or report malcomvetter

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Sysmon configuration file template with default high-quality event tracing

5,213 1,795 Updated Jul 3, 2024

Sysmon configuration file template with default high-quality event tracing

515 65 Updated Sep 23, 2025

Malicious traffic detection system

Python 7,223 1,154 Updated Oct 13, 2025

A list of JARM hashes for different ssl implementations used by some C2/red team tools.

144 16 Updated Apr 20, 2023

Cloud-native SIEM for intelligent security analytics for your entire enterprise.

Python 5,310 3,374 Updated Oct 13, 2025

Remote Desktop Protocol in Twisted Python

Python 1,727 543 Updated Jun 28, 2021

An App Domain Manager Injection DLL PoC on steroids

C# 202 22 Updated Dec 14, 2023

Program for determining types of files for Windows, Linux and MacOS.

JavaScript 9,468 854 Updated Oct 13, 2025
Python 10 1 Updated Aug 9, 2024

A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

C 1,760 229 Updated Nov 3, 2024

A set of .NET libraries for Windows implementing PInvoke calls to many native Windows APIs with supporting wrappers.

C# 1,970 215 Updated Oct 13, 2025

Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown

1,383 104 Updated Jun 24, 2025

Utility to inject honey tokens into lsass.

Go 28 5 Updated Feb 7, 2017

A resource containing all the tools each ransomware gangs uses

1,241 141 Updated Oct 8, 2025

Encyclopedia for Executables

PowerShell 455 49 Updated Nov 9, 2021

BlockBlock provides continual protection by monitoring persistence locations.

Objective-C 713 45 Updated Apr 24, 2025

This project aims to compare and evaluate the telemetry of various EDR products.

Python 1,840 184 Updated Sep 23, 2025

Execute ELF files without dropping them on disk

Python 497 49 Updated Jun 28, 2024
Go 108 17 Updated Oct 14, 2021

A quick way to check for the presence of dnSpy hooks in memory

C# 60 17 Updated Oct 6, 2022

Library to load a DLL from memory.

C 3,037 792 Updated Jan 3, 2024

A logging ASKPASS binary

Go 29 3 Updated May 29, 2020

Remote Desktop Protocol .NET Console Application for Authenticated Command Execution

C# 1,114 568 Updated Nov 13, 2022

An RFB proxy, written in go that can save and replay FBS files

Go 230 48 Updated Mar 15, 2024

Malware Configuration And Payload Extraction

Python 760 154 Updated Nov 22, 2024

A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl

C++ 1,284 195 Updated May 25, 2025

Obfuscation library based on C++20 and metaprogramming

C++ 1,556 250 Updated Aug 28, 2025
Next