How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.
GOAD is an Ansible-based automation tool and infrastructure orchestrator used to deploy pre-configured networks of vulnerable Windows virtual machines. It serves as a security training environment for practicing Active Directory penetration testing, privilege escalation, and lateral movement across various cloud platforms and local virtualization hypervisors. The project distinguishes itself through a multi-provider infrastructure model and a system of infrastructure recipes that simulate intentional security misconfigurations. It supports the deployment of varied attack scenarios, including
Scan files or process memory for CobaltStrike beacons and parse their configuration
Firewall and Privatizing Proxy for Trackers, Attackers, Malware, Adware, and Spammers with Anti-Virus On-Demand and On-Access Scanning (PF, squid, privoxy, hphosts, dshield, emergingthreats, hostsfile, PAC file, clamav)
Santa is a binary authorization system for macOS designed to control and monitor which binaries can execute based on defined trust rules. It functions as application whitelisting software that prevents unauthorized programs from running by verifying them against cryptographic hashes and signing certificates. The system provides execution monitoring by recording every binary launch event to create a visible software execution trail. It enables centralized audit logging to track successful and denied application launches across multiple devices, ensuring enterprise device compliance through syn
The opposite of Ruler, provides blue teams with the ability to detect Ruler usage against Exchange.
The main features of sensepost/notruler are: Endpoint Security.
Open-source alternatives to sensepost/notruler include: orange-cyberdefense/goad — GOAD is an Ansible-based automation tool and infrastructure orchestrator used to deploy pre-configured networks of… apr4h/cobaltstrikescan — Scan files or process memory for CobaltStrike beacons and parse their configuration. essandess/macos-fortress — Firewall and Privatizing Proxy for Trackers, Attackers, Malware, Adware, and Spammers with Anti-Virus On-Demand and… google/santa — Santa is a binary authorization system for macOS designed to control and monitor which binaries can execute based on… linuz/sticky-keys-slayer — Scans for accessibility tools backdoors via RDP. nsacyber/windows-secure-host-baseline — Configuration guidance for implementing the Windows 10 and Windows Server 2016 DoD Secure Host Baseline settings.…