Skip to content
View malcomvetter's full-sized avatar

Organizations

@WirespeedSecurity

Block or report malcomvetter

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Sysmon configuration file template with default high-quality event tracing

5,383 1,829 Updated Jul 3, 2024

Sysmon configuration file template with default high-quality event tracing

570 72 Updated Jan 21, 2026

Malicious traffic detection system

Python 8,232 1,243 Updated Feb 14, 2026

A list of JARM hashes for different ssl implementations used by some C2/red team tools.

143 16 Updated Apr 20, 2023

Cloud-native SIEM for intelligent security analytics for your entire enterprise.

Python 5,473 3,518 Updated Feb 13, 2026

Remote Desktop Protocol in Twisted Python

Python 1,732 544 Updated Jun 28, 2021

An App Domain Manager Injection DLL PoC on steroids

C# 211 23 Updated Dec 14, 2023

Program for determining types of files for Windows, Linux and MacOS.

JavaScript 10,240 881 Updated Feb 14, 2026
Python 10 1 Updated Aug 9, 2024

A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

C 1,817 239 Updated Nov 3, 2024

A set of .NET libraries for Windows implementing PInvoke calls to many native Windows APIs with supporting wrappers.

C# 2,040 223 Updated Jan 29, 2026

Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown

1,403 105 Updated Jun 24, 2025

Utility to inject honey tokens into lsass.

Go 28 5 Updated Feb 7, 2017

A resource containing all the tools each ransomware gangs uses

1,327 151 Updated Dec 24, 2025

Encyclopedia for Executables

PowerShell 471 50 Updated Nov 9, 2021

BlockBlock provides continual protection by monitoring persistence locations.

Objective-C 741 45 Updated Apr 24, 2025

This project aims to compare and evaluate the telemetry of various EDR products.

Python 1,924 193 Updated Jan 20, 2026

Execute ELF files without dropping them on disk

Python 502 49 Updated Jun 28, 2024
Go 108 17 Updated Oct 14, 2021

A quick way to check for the presence of dnSpy hooks in memory

C# 59 19 Updated Oct 6, 2022

Library to load a DLL from memory.

C 3,099 807 Updated Jan 3, 2024

A logging ASKPASS binary

Go 29 3 Updated May 29, 2020

Remote Desktop Protocol .NET Console Application for Authenticated Command Execution

C# 1,133 582 Updated Nov 13, 2022

An RFB proxy, written in go that can save and replay FBS files

Go 233 48 Updated Mar 15, 2024

Malware Configuration And Payload Extraction

Python 761 153 Updated Nov 22, 2024

A library to load, manipulate, dump PE files. See also: https://github.com/hasherezade/libpeconv_tpl

C++ 1,322 200 Updated Oct 31, 2025

Obfuscation library based on C++20 and metaprogramming

C++ 1,675 258 Updated Feb 12, 2026
Next