📦 GitHub 全球红队渗透资源中转站。
​旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz #sekurlsa

📦 项目名称: apt-detection-lab
👤 项目作者: batihroman
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-18 23:42:37

📝 项目描述:
SOC home lab detecting APT28 credential dumping. Inspired by CERT-UA threat intelligence from the Russia-Ukraine war

🔗 点击访问项目地址 GitHub - batihroman/apt-detection-lab: SOC home lab detecting APT28 credential dumping. Inspired by CERT-UA threat intelligence…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #弱口令 #口令 #credential

📦 项目名称: credential-vault
👤 项目作者: RockiChn
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-11 10:56:56

📝 项目描述:
Jarvis Global Secure Encrypted Credential Vault — AES-GCM + PBKDF2 加密存储池,含安全鉴证(ACL/意图/弱口令/模块完整性)与快照回滚

🔗 点击访问项目地址 GitHub - RockiChn/credential-vault: Jarvis Global Secure Encrypted Credential Vault — AES-GCM + PBKDF2 加密存储池,含安全鉴证(ACL/意图/弱口令/模块完整性)与快照回滚
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz #procdump

📦 项目名称: breach-precursor-detector
👤 项目作者: rvong65
🛠 开发语言: Python
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-19 20:30:35

📝 项目描述:
Unsupervised anomaly detector that flags early breach precursors (credential dumping, process injection) using Isolation Forest on EDR-style process features. Inspired by CrowdStrike-style EDR — includes confidence gating and human-readable explanations—deployed on Streamlit Cloud.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping #LSASS #comsvcs #MiniDump

📦 项目名称: sigma-detection-pack
👤 项目作者: Djaberi
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-14 13:42:25

📝 项目描述:
Vendor-neutral Sigma detection rules across 9 MITRE ATT&CK tactics — credential dumping, encoded PowerShell, persistence, lateral movement, and more. Structurally validated in CI with an auto-generated coverage matrix.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping #Mimikatz #sekurlsa

📦 项目名称: THM-Boogeyman3
👤 项目作者: czabatta
🛠 开发语言: Unknown
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-12 20:24:17

📝 项目描述:
TryHackMe SOC Level 1 — Full kill chain analysis: HTA lure, DLL execution, credential dumping, DCSync, ransomware staging

🔗 点击访问项目地址 GitHub - czabatta/THM-Boogeyman3: TryHackMe SOC Level 1 — Full kill chain analysis: HTA lure, DLL execution, credential dumping…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping #LSASS

📦 项目名称: Cloud-Native-Threat-Hunting
👤 项目作者: Spica581
🛠 开发语言: Unknown
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-24 18:23:49

📝 项目描述:
Cloud-native threat hunting case study using Splunk Cloud to detect MITRE ATT&CK T1003.001 (LSASS Memory Dumping). Features custom SPL and runtime regex (rex) log parsing of raw Sysmon telemetry to isolate credential theft.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz

📦 项目名称: Volatility3-Memory-Analysis-Playbook
👤 项目作者: ilyess-sellami
🛠 开发语言: Unknown
Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-18 19:01:57

📝 项目描述:
A structured DFIR playbook for analyzing memory dumps using Volatility 3. This repository provides a question-driven workflow for investigating volatile memory artifacts, suspicious processes, network connections, persistence mechanisms, credential dumping activity, and attacker behavior during incident response and CTF investigations.

🔗 点击访问项目地址 GitHub - ilyess-sellami/Volatility3-Memory-Analysis-Playbook: A structured DFIR playbook for analyzing memory dumps using Volatility…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: Enterprise-SOC-Homelab-Threat-Detection-Engineering-Project
👤 项目作者: Nourmohamed2
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-19 22:59:05

📝 项目描述:
Built an enterprise SOC homelab using ELK Stack, Active Directory, Sysmon, and Winlogbeat for centralized log monitoring and threat detection. Simulated real-world attacks including brute force, reverse shells, credential dumping, and lateral movement with custom detections mapped to MITRE ATT&CK.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: Endpoint-Detection-and-Response-EDR-LimaCharlie
👤 项目作者: omcyber10
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-16 22:51:59

📝 项目描述:
Hands-on Endpoint Detection & Response (EDR) lab using LimaCharlie to simulate and investigate LSASS credential dumping activity, endpoint telemetry, and SOC investigation workflows.

🔗 点击访问项目地址 GitHub - omcyber10/Endpoint-Detection-and-Response-EDR-LimaCharlie: Hands-on Endpoint Detection & Response (EDR) lab using LimaCharlie…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: Pentest-lab-project
👤 项目作者: JOHNNY210702
🛠 开发语言: Shell
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-12 13:02:49

📝 项目描述:
Simulated internal Active Directory penetration test demonstrating enumeration, lateral movement, credential dumping, and full domain compromise in a VMware lab environment.

🔗 点击访问项目地址 JOHNNY210702/Pentest-lab-project
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: -Active-Directory-Kill-Chain-
👤 项目作者: vetementsvmnts
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-12 10:02:16

📝 项目描述:
Critical concepts demonstrated: Kerberoasting, AS-REP roasting, DCSync BloodHound attack path analysis Lateral movement (PSExec, WMI, WinRM) Credential dumping (LSASS, SAM)

🔗 点击访问项目地址 GitHub - vetementsvmnts/-Active-Directory-Kill-Chain-: Critical concepts demonstrated: Kerberoasting, AS-REP roasting, DCSync BloodHound…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: Volatility-3-Memory-Analysis-Playbook
👤 项目作者: ilyess-sellami
🛠 开发语言: None
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-11 16:48:35

📝 项目描述:
A structured DFIR playbook for analyzing memory dumps using Volatility 3. This repository provides a question-driven workflow for investigating volatile memory artifacts, suspicious processes, network connections, persistence mechanisms, credential dumping activity, and attacker behavior during incident response and CTF investigations.

🔗 点击访问项目地址 GitHub - ilyess-sellami/Volatility-3-Memory-Analysis-Playbook: A structured DFIR playbook for analyzing memory dumps using Volatility…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: Windows10-Privilege-Escalation-Lab
👤 项目作者: ajx77
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-06 07:02:02

📝 项目描述:
Windows 10 exploitation and privilege escalation lab using SMB enumeration, remote command execution, credential dumping, and NTLM hash cracking.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: Incident-Response-lab
👤 项目作者: gaurav-koshti-CySA
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-04 03:56:06

📝 项目描述:
End-to-end incident response simulation: T1003.001 LSASS credential dumping detection & remediation with Wazuh SIEM and formal incident report

🔗 点击访问项目地址 GitHub - gaurav-koshti-CySA/Incident-Response-lab: End-to-end incident response simulation: T1003.001 LSASS credential dumping…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: Windows-10-Crendential-Attack-Pentesting
👤 项目作者: KiMiRoTa
🛠 开发语言: None
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-02 07:12:03

📝 项目描述:
This repository is my university project about simulating credential dumping and privilege escalation in a Windows Active Directory environment

🔗 点击访问项目地址 GitHub - KiMiRoTa/Windows-10-Crendential-Attack-Pentesting: This repository is my university project about simulating credential…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: Active-Directory-Pentest-Lab
👤 项目作者: ajx77
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-04-29 06:59:03

📝 项目描述:
Built and exploited a self-hosted Active Diretory Lab Simulation real-world attack scenarios including enumeration, lateral movement, and credential dumping.

🔗 点击访问项目地址 GitHub - ajx77/Active-Directory-Pentest-Lab: Built and exploited a self-hosted Active Diretory Lab Simulation real-world attack…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: slinger
👤 项目作者: FalconOpsLLC
🛠 开发语言: Python
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-04-28 01:31:32

📝 项目描述:
FalconOps fork of slinger: live-read SAM/LSA/DCC credential dumping over SMB with no hive file written on target.

🔗 点击访问项目地址
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: Detection-of-Suspicious-LSASS-Dump-Activity-via-PowerShell-CMD-in-Splunk
👤 项目作者: KillerInstinct7
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-04-27 23:32:11

📝 项目描述:
Built and validated a Splunk detection for PowerShell or cmd activity executing from or referencing a temporary directory where the command line references an LSASS dump file (lsass.DMP). This behavior may indicate credential dumping or unauthorized access to sensitive system memory artifacts.

🔗 点击访问项目地址 GitHub - KillerInstinct7/Detection-of-Suspicious-LSASS-Dump-Activity-via-PowerShell-CMD-in-Splunk: Built and validated a Splunk…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: Windows-10-Crendential-Attack-Lab
👤 项目作者: KiMiRoTa
🛠 开发语言: None
Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-04-23 04:08:45

📝 项目描述:
This repository is my university project about simulating credential dumping and privilege escalation in a Windows Active Directory environment

🔗 点击访问项目地址 GitHub - KiMiRoTa/Windows-10-Crendential-Attack-Pentesting: This repository is my university project about simulating credential…
🚨 GitHub 监控消息提醒

🚨 发现关键词: #Credential Dumping

📦 项目名称: WIndows-Crendential-Attack-Lab
👤 项目作者: KiMiRoTa
🛠 开发语言: None
Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-04-22 09:58:06

📝 项目描述:
This repository is my university project about simulating credential dumping and privilege escalation in a Windows Active Directory environment

🔗 点击访问项目地址
 
 
Back to Top