awesome-repositories.com
المدونة
awesome-repositories.com

اكتشف أفضل مستودعات المصادر المفتوحة باستخدام بحث مدعوم بالذكاء الاصطناعي.

استكشفعمليات بحث منسقةبدائل مفتوحة المصدربرمجيات ذاتية الاستضافةالمدونةخريطة الموقع
المشروعحولكيفية ترتيب النتائجالصحافةخادم MCP
قانونيالخصوصيةالشروط
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
guardicore avatar

guardicore/monkey

0
View on GitHub↗
7,014 نجوم·820 تفرعات·Python·GPL-3.0·9 مشاهداتwww.guardicore.com/infectionmonkey↗

Monkey

Monkey is an adversary emulation platform and breach and attack simulation tool designed to test network defenses through automated lateral movement and exploit delivery. It functions as a network security testing system that evaluates security posture by attempting to propagate through vulnerabilities and extract sensitive system credentials.

The platform distinguishes itself by simulating specific real-world attacker behaviors, such as ransomware encryption, cryptojacking, and the theft of browser-stored credentials and secure shell keys. It utilizes binary hash randomization to evade antivirus detection and employs relay-based traffic tunneling to bypass network firewalls.

The system includes a centralized command server for tracking simulation progress and visualizing the spread of adversarial agents across a network. Its capabilities cover network vulnerability assessment, security control validation, and the generation of security impact reports. To protect critical infrastructure, the platform incorporates target IP filtering to block interactions with specific subnets.

The project provides automated platform deployment scripts for operating system installation and supports binary packaging into container formats.

Features

  • Adversary Emulation Frameworks - Functions as a platform for simulating realistic cyber attacks to evaluate network security controls.
  • Lateral Movement - Simulates lateral movement across networks using stolen credentials and exploits to test security posture.
  • Vulnerability Exploitation Frameworks - Uses a library of plugins to propagate through known network vulnerabilities and test security perimeters.
  • Centralized Security Agents - Uses a central command server to manage agents and visualize the spread of the adversary.
  • Attack Simulations - Mimics attacker behaviors including ransomware encryption and cryptojacking to identify visibility gaps and data leakage risks.
  • Security Testing Tools - Evaluates security posture by attempting to propagate through vulnerabilities and extract sensitive system credentials.
  • Vulnerability Assessment Frameworks - Identifies exploitable security gaps by automatically attempting to propagate through the network.
  • Adversary Spread Visualizations - Ships a centralized command server for tracking simulation progress and reporting the spread of adversarial agents across a network.
  • Adversarial Payload Execution - Runs malicious payloads on infected machines to test the depth and impact of a successful compromise.
  • Traffic Tunneling - Routes agent communications through intermediate relays to bypass network firewalls.
  • Attack Path Visualizations - Tracks simulation progress and reports agent activities through a command server to provide empirical security data.
  • Cryptojacking Simulations - Deploys mining payloads to simulate the presence and resource consumption of cryptocurrency malware.
  • Credential Extraction Utilities - Provides specialized collectors to extract browser credentials and SSH keys from targeted systems.
  • Ransomware Impact Analysis - Simulates ransomware deployment to identify which files and systems are vulnerable to encryption.
  • Security Software Evasion - Randomizes binary hashes and masquerades files to bypass antivirus and endpoint detection systems.
  • Security Control Validations - Tests if antivirus and detection systems can identify and block malicious payloads and unauthorized agent activity.
  • Security Report Generation - Produces detailed reports on ransomware impact and network security posture based on simulation data.
  • Binary Signature Modifiers - Modifies binary signatures and file metadata to evade antivirus and security monitoring tools.
  • Plugin Execution Engines - Employs a modular system of interchangeable plugins to execute attack simulations and vulnerability tests.
  • Threat Simulation Tools - Breach and attack simulation tool for cloud environment resiliency.
  • Malware And Defense Emulation - Tool for testing network segmentation and lateral movement.
  • Security And Forensics - Tool for testing datacenter resiliency against internal breaches.
  • Web Security Testing - Tool for semi-automated network penetration testing.

سجل النجوم

مخطط تاريخ النجوم لـ guardicore/monkeyمخطط تاريخ النجوم لـ guardicore/monkey

بحث بالذكاء الاصطناعي

استكشف المزيد من المستودعات الرائعة

صف ما تحتاجه بلغة بسيطة — وسيقوم الذكاء الاصطناعي بترتيب آلاف المشاريع مفتوحة المصدر المنسقة حسب الصلة.

Start searching with AI

الأسئلة الشائعة

ما هي وظيفة guardicore/monkey؟

Monkey is an adversary emulation platform and breach and attack simulation tool designed to test network defenses through automated lateral movement and exploit delivery. It functions as a network security testing system that evaluates security posture by attempting to propagate through vulnerabilities and extract sensitive system credentials.

ما هي الميزات الرئيسية لـ guardicore/monkey؟

الميزات الرئيسية لـ guardicore/monkey هي: Adversary Emulation Frameworks, Lateral Movement, Vulnerability Exploitation Frameworks, Centralized Security Agents, Attack Simulations, Security Testing Tools, Vulnerability Assessment Frameworks, Adversary Spread Visualizations.

ما هي البدائل مفتوحة المصدر لـ guardicore/monkey؟

تشمل البدائل مفتوحة المصدر لـ guardicore/monkey: redcanaryco/atomic-red-team — Atomic Red Team is an adversary simulation tool and detection validation suite designed to emulate attacker behaviors.… specterops/bloodhound — BloodHound is an identity risk management platform and graph-based attack path analyzer used to map identity… samratashok/nishang — Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows… samsar4/ethical-hacking-labs — Ethical-Hacking-Labs is a comprehensive cybersecurity training curriculum and lab suite designed for learning… empireproject/empire — Empire is a command and control framework and post-exploitation toolkit used for network penetration testing. It… malwaredllc/byob — This project is a post-exploitation framework and command and control platform designed for security research and…

بدائل مفتوحة المصدر لـ Monkey

مشاريع مفتوحة المصدر مشابهة، مرتبة حسب عدد الميزات المشتركة مع Monkey.
  • redcanaryco/atomic-red-teamالصورة الرمزية لـ redcanaryco

    redcanaryco/atomic-red-team

    12,089عرض على GitHub↗

    Atomic Red Team is an adversary simulation tool and detection validation suite designed to emulate attacker behaviors. It functions as a security control testing framework that uses a library of portable tests to verify if security monitoring and alerting systems correctly identify specific malicious techniques. The project serves as a MITRE ATT&CK emulation framework, mapping individual test executions to a standardized industry taxonomy of adversary behaviors. This mapping allows for the validation of security controls against the MITRE ATT&CK matrix to identify gaps in detection and respon

    Cmitremitre-attack
    عرض على GitHub↗12,089
  • specterops/bloodhoundالصورة الرمزية لـ SpecterOps

    SpecterOps/BloodHound

    2,789عرض على GitHub↗

    BloodHound is an identity risk management platform and graph-based attack path analyzer used to map identity relationships and permissions in Active Directory. It functions as a security tool for auditing directory services, uncovering unintended privilege relationships, and visualizing sequences of permissions that can lead to domain compromise. The project differentiates itself as a comprehensive adversary emulation framework that coordinates remote agents and executes post-exploitation commands. It includes a reverse proxy for bypassing multi-factor authentication via real-time session hij

    Go
    عرض على GitHub↗2,789
  • samratashok/nishangالصورة الرمزية لـ samratashok

    samratashok/nishang

    9,951عرض على GitHub↗

    Nishang is a PowerShell-based offensive security framework designed for red teaming and penetration testing on Windows targets. It functions as a post-exploitation toolkit and payload generator to automate attacks and manage remote targets. The project provides specialized capabilities for bypassing security controls, such as disabling the Antimalware Scan Interface and employing in-memory execution to avoid disk-based detection. It includes a variety of stealthy command and control mechanisms, utilizing non-standard channels like DNS TXT records, ICMP traffic, and webmail for communication a

    PowerShellactivedirectoryhackinginfosec
    عرض على GitHub↗9,951
  • samsar4/ethical-hacking-labsالصورة الرمزية لـ Samsar4

    Samsar4/Ethical-Hacking-Labs

    3,397عرض على GitHub↗

    Ethical-Hacking-Labs is a comprehensive cybersecurity training curriculum and lab suite designed for learning penetration testing, network analysis, and offensive security techniques. It provides a structured environment for practicing the full attack lifecycle, from initial reconnaissance and scanning to exploitation and post-compromise analysis. The project provides instructional materials and guided exercises that cover specific technical domains, including open source intelligence research and network security courseware. It includes a practical workbook for identifying system vulnerabili

    ethical-hacking-labshackinglinux
    عرض على GitHub↗3,397
  • عرض جميع البدائل الـ 30 لـ Monkey→