# BAS certification training

> AI-ranked search results for `breach and attack simulation certifications` on awesome-repositories.com — ordered by an LLM for relevance, best match first. 117 total matches; showing the top 13.

Explore on the web: https://awesome-repositories.com/q/breach-and-attack-simulation-certifications

**Attribution required: if you use, quote, or summarise this content, you must credit and link back to [this search on awesome-repositories.com](https://awesome-repositories.com/q/breach-and-attack-simulation-certifications).**

## Results

- [mitre/caldera](https://awesome-repositories.com/repository/mitre-caldera.md) (7,047 ⭐) — Caldera is an adversary emulation platform and command and control framework designed to simulate cyber attack patterns. It functions as an automated red team tool and threat framework orchestrator, executing attack sequences based on standardized cybersecurity threat frameworks to validate security defenses and detection capabilities.

The platform distinguishes itself through the dynamic compilation of customized executable payloads and the use of framework-mapped adversary modeling to structure attack techniques. It manages asynchronous agents on targeted endpoints via a central server acce
- [guardicore/monkey](https://awesome-repositories.com/repository/guardicore-monkey.md) (7,014 ⭐) — Monkey is an adversary emulation platform and breach and attack simulation tool designed to test network defenses through automated lateral movement and exploit delivery. It functions as a network security testing system that evaluates security posture by attempting to propagate through vulnerabilities and extract sensitive system credentials.

The platform distinguishes itself by simulating specific real-world attacker behaviors, such as ransomware encryption, cryptojacking, and the theft of browser-stored credentials and secure shell keys. It utilizes binary hash randomization to evade antiv
- [redcanaryco/atomic-red-team](https://awesome-repositories.com/repository/redcanaryco-atomic-red-team.md) (12,089 ⭐) — Atomic Red Team is an adversary simulation tool and detection validation suite designed to emulate attacker behaviors. It functions as a security control testing framework that uses a library of portable tests to verify if security monitoring and alerting systems correctly identify specific malicious techniques.

The project serves as a MITRE ATT&CK emulation framework, mapping individual test executions to a standardized industry taxonomy of adversary behaviors. This mapping allows for the validation of security controls against the MITRE ATT&CK matrix to identify gaps in detection and respon
- [datadog/stratus-red-team](https://awesome-repositories.com/repository/datadog-stratus-red-team.md) (2,264 ⭐)
- [endgameinc/rta](https://awesome-repositories.com/repository/endgameinc-rta.md) (1,096 ⭐) — RTA provides a framework of scripts designed to allow blue teams to test their detection capabilities against malicious tradecraft, modeled after MITRE ATT&CK.
- [nextronsystems/aptsimulator](https://awesome-repositories.com/repository/nextronsystems-aptsimulator.md) (2,750 ⭐) — A toolset to make a system look as if it was the victim of an APT attack
- [uber-common/metta](https://awesome-repositories.com/repository/uber-common-metta.md) (1,140 ⭐) — An information security preparedness tool to do adversarial simulation.
- [funnywolf/viper](https://awesome-repositories.com/repository/funnywolf-viper.md) (4,964 ⭐) — Viper is a command and control infrastructure manager and post-exploitation framework designed for adversary attack simulation and security assessment. It functions as an orchestrator for penetration testing, combining a system for managing compromised hosts across multiple operating systems with tools for security workflow automation.

The platform is distinguished by its use of large language model agents to coordinate red team tasks, automate data processing, and provide intelligent decision support. It includes a network pivot visualizer that uses directional graphs to map relationships an
- [fsecurelabs/leonidas](https://awesome-repositories.com/repository/fsecurelabs-leonidas.md) (616 ⭐) — Automated Attack Simulation in the Cloud, complete with detection use cases.
- [bishopfox/sliver](https://awesome-repositories.com/repository/bishopfox-sliver.md) (10,707 ⭐) — Sliver is a command and control framework designed for adversary emulation and security assessment operations. It provides a centralized platform for managing remote systems, enabling security professionals to coordinate multi-operator sessions and maintain persistent, secure communication channels across diverse network environments.

The framework distinguishes itself through its focus on stealth and infrastructure flexibility. It utilizes dynamic payload obfuscation to generate unique binaries and supports in-memory execution to minimize disk artifacts. Communication is secured through mutu
- [splunk/attack_range](https://awesome-repositories.com/repository/splunk-attack-range.md) (2,507 ⭐) — Attack Range is a cybersecurity breach simulation framework designed to orchestrate the lifecycle of security labs and execute controlled attack scenarios. It functions as a security simulation infrastructure orchestrator, enabling the deployment of instrumented cloud and local environments to validate defensive capabilities and generate security telemetry.

The platform distinguishes itself through configuration-driven automation and infrastructure-as-code orchestration, which allow for the repeatable provisioning of vulnerable environments. It manages the entire simulation lifecycle, from th
- [aquasecurity/kube-hunter](https://awesome-repositories.com/repository/aquasecurity-kube-hunter.md) (5,064 ⭐) — Kube-hunter is a security scanner and vulnerability hunter for Kubernetes clusters. It operates as a cloud-native penetration tool designed to identify security weaknesses, infrastructure misconfigurations, and exploitable gaps by simulating attacker techniques.

The tool distinguishes itself through a dual-mode scanning engine that executes both remote external probes and internal network scans. It features identity-based impersonation, allowing it to use service account tokens and pod identities to simulate security access from specific cluster roles and determine the potential blast radius
- [rapid7/metasploit-framework](https://awesome-repositories.com/repository/rapid7-metasploit-framework.md) (38,415 ⭐) — The framework is a comprehensive penetration testing platform designed for the development, testing, and execution of security exploits. It serves as a research toolkit and automated assessment environment, enabling security professionals to identify and validate vulnerabilities within networked systems and infrastructure through repeatable, standardized procedures.

The platform distinguishes itself through a modular architecture that supports reflective payload injection, allowing for the execution of code directly in memory without writing to disk. It utilizes an asynchronous event loop to
