📦 GitHub 全球红队渗透资源中转站。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
旨在收录那些“好用却难找”的安全项目。
🔗 定时推送:GitHub Trending (Security)
🛠 必备清单:后渗透、远控、免杀、提权工具集
📅 更新频率:每日精选,绝不灌水。
⚠️ 本频道仅供安全研究与授权测试使用。
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Credential Dumping #LSASS
📦 项目名称: Wazuh-XDR-EDR-Deployment
👤 项目作者: Izaiah1996
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-11 05:59:48
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Credential Dumping #LSASS
📦 项目名称: Wazuh-XDR-EDR-Deployment
👤 项目作者: Izaiah1996
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-11 05:59:48
📝 项目描述:
Single-node Wazuh 4.12.0 stack deployed on the management segment of a multi-VLAN home SOC lab, with agents enrolled on a Windows domain controller and workstation, plus a custom MITRE ATT&CK mapped detection rule for LSASS credential dumping.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Credential Dumping #LSASS
📦 项目名称: Lab-05-Wazuh-XDR-EDR-Deployment
👤 项目作者: Izaiah1996
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 22:12:40
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Credential Dumping #LSASS
📦 项目名称: Lab-05-Wazuh-XDR-EDR-Deployment
👤 项目作者: Izaiah1996
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 22:12:40
📝 项目描述:
Single-node Wazuh 4.12.0 stack deployed on the management segment of a multi-VLAN home SOC lab, with agents enrolled on a Windows domain controller and workstation, plus a custom MITRE ATT&CK mapped detection rule for LSASS credential dumping.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz #procdump #comsvcs
📦 项目名称: elk-apt-threat-detection
👤 项目作者: comrade-era
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 13:17:27
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz #procdump #comsvcs
📦 项目名称: elk-apt-threat-detection
👤 项目作者: comrade-era
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-08-10 13:17:27
📝 项目描述:
A sample log generator that produces realistic ECS-format events simulating common APT techniques Example KQL and EQL detection rules covering credential dumping, encoded PowerShell, suspicious process trees, lateral movement, and unusual network egress Docker Compose orchestration with both dev (security-disabled) and production configurations A M🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz #sekurlsa
📦 项目名称: apt-detection-lab
👤 项目作者: batihroman
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-18 23:42:37
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz #sekurlsa
📦 项目名称: apt-detection-lab
👤 项目作者: batihroman
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-07-18 23:42:37
📝 项目描述:
SOC home lab detecting APT28 credential dumping. Inspired by CERT-UA threat intelligence from the Russia-Ukraine war🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz #procdump
📦 项目名称: breach-precursor-detector
👤 项目作者: rvong65
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-19 20:30:35
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz #procdump
📦 项目名称: breach-precursor-detector
👤 项目作者: rvong65
🛠 开发语言: Python
⭐ Star数量: 1 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-19 20:30:35
📝 项目描述:
Unsupervised anomaly detector that flags early breach precursors (credential dumping, process injection) using Isolation Forest on EDR-style process features. Inspired by CrowdStrike-style EDR — includes confidence gating and human-readable explanations—deployed on Streamlit Cloud.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Credential Dumping #LSASS #comsvcs #MiniDump
📦 项目名称: sigma-detection-pack
👤 项目作者: Djaberi
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-14 13:42:25
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Credential Dumping #LSASS #comsvcs #MiniDump
📦 项目名称: sigma-detection-pack
👤 项目作者: Djaberi
🛠 开发语言: Python
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-06-14 13:42:25
📝 项目描述:
Vendor-neutral Sigma detection rules across 9 MITRE ATT&CK tactics — credential dumping, encoded PowerShell, persistence, lateral movement, and more. Structurally validated in CI with an auto-generated coverage matrix.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Credential Dumping #LSASS
📦 项目名称: Cloud-Native-Threat-Hunting
👤 项目作者: Spica581
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-24 18:23:49
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Credential Dumping #LSASS
📦 项目名称: Cloud-Native-Threat-Hunting
👤 项目作者: Spica581
🛠 开发语言: Unknown
⭐ Star数量: 0 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-24 18:23:49
📝 项目描述:
Cloud-native threat hunting case study using Splunk Cloud to detect MITRE ATT&CK T1003.001 (LSASS Memory Dumping). Features custom SPL and runtime regex (rex) log parsing of raw Sysmon telemetry to isolate credential theft.🔗 点击访问项目地址
🚨 GitHub 监控消息提醒
🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz
📦 项目名称: Volatility3-Memory-Analysis-Playbook
👤 项目作者: ilyess-sellami
🛠 开发语言: Unknown
⭐ Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-18 19:01:57
📝 项目描述:
🔗 点击访问项目地址
🚨 发现关键词: #Credential Dumping #LSASS #Mimikatz
📦 项目名称: Volatility3-Memory-Analysis-Playbook
👤 项目作者: ilyess-sellami
🛠 开发语言: Unknown
⭐ Star数量: 3 | 🍴 Fork数量: 0
📅 更新时间: 2026-05-18 19:01:57
📝 项目描述:
A structured DFIR playbook for analyzing memory dumps using Volatility 3. This repository provides a question-driven workflow for investigating volatile memory artifacts, suspicious processes, network connections, persistence mechanisms, credential dumping activity, and attacker behavior during incident response and CTF investigations.🔗 点击访问项目地址