awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to citizenlab/malware-indicators

Projects sharing features with Malware Indicators

30 open-source projects similar to citizenlab/malware-indicators, ranked by shared indexed features. Tags may describe platforms or build tools rather than the same primary purpose. Check each project’s use case, license, and deployment requirements before treating it as a replacement.

  • k8gege/k8toolsk8gege avatar

    k8gege/K8tools

    6,167View on GitHub↗

    K8tools is a multi-stage attack framework that combines memory-only payload execution, credential testing, port forwarding, privilege escalation, and physical USB-based keystroke injection for comprehensive system compromise. At its core, the Ladon PowerShell module loads a multi-function scanner directly into memory, enabling command execution without writing files to disk, while supporting memory-only payload delivery that downloads and runs obfuscated shellcode or PowerShell commands to evade antivirus detection. The framework distinguishes itself through its breadth of integrated capabili

    PowerShell0daybrute-forcebypass
    View on GitHub↗6,167
  • yara-rules/rulesYara-Rules avatar

    Yara-Rules/rules

    4,712View on GitHub↗

    This project is a community-curated repository of YARA rules used to detect malware, webshells, and other malicious patterns in files. It serves as a dataset of signatures for identifying known malware families, software packers, and threat intelligence indicators. The collection provides specialized detection capabilities for identifying exploit kits and anti-analysis evasion techniques, such as anti-debugging and anti-virtualization methods. It also includes signatures for cryptographic algorithm detection and the identification of unauthorized remote administration tools on servers. The r

    YARA
    View on GitHub↗4,712
  • neo23x0/lokiNeo23x0 avatar

    Neo23x0/Loki

    3,763View on GitHub↗

    Loki is an endpoint detection tool, forensic artifact analyzer, and threat intelligence scanner. It functions as a YARA-based indicator of compromise scanner designed to identify malicious persistence mechanisms, web shells, and unauthorized administration tools across local and remote systems. The project distinguishes itself by integrating multi-source threat intelligence, allowing for the loading of custom signature sets and encrypted indicators. It combines hash-based artifact detection with YARA rule execution to scan files, process memory, and registry hives for known malicious byte seq

    Python
    View on GitHub↗3,763

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • knownsec/pocsuite3knownsec avatar

    knownsec/pocsuite3

    3,853View on GitHub↗

    Pocsuite3 is a modular vulnerability testing framework designed for the development and execution of security assessment scripts. It provides a comprehensive toolkit for remote vulnerability verification and exploitation, enabling users to automate the identification of security flaws across network targets. The framework is built on an object-oriented scripting architecture that allows for the creation of custom security modules and plugins. It distinguishes itself through a highly extensible design that supports asynchronous task execution for large-scale infrastructure assessments, alongsi

    Pythonpentestingpythonsecurity
    View on GitHub↗3,853
  • alebcay/awesome-shellalebcay avatar

    alebcay/awesome-shell

    37,110View on GitHub↗

    This project is a community-driven directory that serves as a comprehensive index of command-line tools, frameworks, and resources. It functions as a curated knowledge base designed to help users discover software for enhancing terminal environments and streamlining daily development tasks. The collection is maintained through an open-source contribution model, where community members manually verify and organize resources into structured categories. This collaborative approach ensures the directory remains a reliable reference for finding specialized utilities, alternative shell implementati

    awesomeawesome-listbash
    View on GitHub↗37,110
  • api0cradle/ultimateapplockerbypasslistapi0cradle avatar

    api0cradle/UltimateAppLockerByPassList

    2,067View on GitHub↗

    The goal of this repository is to document the most common techniques to bypass AppLocker.

    PowerShell
    View on GitHub↗2,067
  • 0xsobky/hackvault0xsobky avatar

    0xsobky/HackVault

    2,025View on GitHub↗

    A container repository for my public web hacks!

    JavaScript
    View on GitHub↗2,025
  • ashishb/android-security-awesomeashishb avatar

    ashishb/android-security-awesome

    9,224View on GitHub↗
    Shellandroidawesomeawesome-list
    View on GitHub↗9,224
  • advanced-threat-research/firmware-security-trainingA

    advanced-threat-research/firmware-security-training

    0View on GitHub↗
    View on GitHub↗0
  • ashishb/osx-and-ios-security-awesomeashishb avatar

    ashishb/osx-and-ios-security-awesome

    1,599View on GitHub↗
    Shellawesomeawesome-listios-security
    View on GitHub↗1,599
  • attackercan/regexp-security-cheatsheetattackercan avatar

    attackercan/regexp-security-cheatsheet

    736View on GitHub↗

    Research was done to find "weak places" in regular expressions of Web Application Firewalls (WAFs). Repository contains SAST, which can help you to find security vulnerabilities in custom regular expressions in own projects. Contribution is highly welcomed. This repo was first presented during…

    PHP
    View on GitHub↗736
  • bayandin/awesome-awesomenessbayandin avatar

    bayandin/awesome-awesomeness

    33,490View on GitHub↗

    This project is a community-driven directory that aggregates and categorizes high-quality technical resources, tools, and learning materials. It functions as a centralized knowledge management repository, designed to help developers navigate the software development landscape by providing structured access to curated lists and external project references. The directory relies on a collaborative, peer-reviewed workflow where external contributors submit and maintain links through a version-controlled system. This community-maintained approach ensures that the information remains current and re

    Ruby
    View on GitHub↗33,490
  • bluscreenofjeff/aggressorscriptsbluscreenofjeff avatar

    bluscreenofjeff/AggressorScripts

    896View on GitHub↗

    Aggressor scripts for use with Cobalt Strike 3.0+

    View on GitHub↗896
  • bluscreenofjeff/red-team-infrastructure-wikibluscreenofjeff avatar

    bluscreenofjeff/Red-Team-Infrastructure-Wiki

    4,498View on GitHub↗

    This project is a collection of technical resources, blueprints, and guides for building resilient and stealthy red team infrastructure. It provides a comprehensive framework for designing offensive security environments that resist detection and remain operational throughout security engagements. The repository distinguishes itself through detailed playbooks for adversary simulation and hardening manuals. It covers advanced obfuscation techniques such as domain fronting, the use of platform-as-a-service redirectors, and the leveraging of third-party content sites to inherit domain reputation

    View on GitHub↗4,498
  • bt3gl/my-gray-hacker-resourcesB

    bt3gl/My-Gray-Hacker-Resources

    0View on GitHub↗
    View on GitHub↗0
  • aptnotes/dataaptnotes avatar

    aptnotes/data

    1,794View on GitHub↗

    APTnotes data

    View on GitHub↗1,794
  • brannondorsey/wifi-crackingbrannondorsey avatar

    brannondorsey/wifi-cracking

    12,399View on GitHub↗

    This project is a WPA Wi-Fi cracking toolkit designed for capturing authentication handshakes and recovering WPA/WPA2 passwords. It provides specialized utilities for scanning wireless networks, obfuscating hardware addresses, and generating password lists to facilitate security audits. The toolkit differentiates itself through a focused workflow that combines handshake capture tools with a password wordlist generator. It enables the interception of the four-way authentication process between wireless clients and access points and utilizes these captured credentials for recovery via dictionar

    aircrack-ngcrackinghacking
    View on GitHub↗12,399
  • caesar0301/awesome-pcaptoolscaesar0301 avatar

    caesar0301/awesome-pcaptools

    3,397View on GitHub↗

    A collection of tools developed by other researchers in the Computer Science area to process network traces. All the right reserved for the original authors.

    View on GitHub↗3,397
  • coreb1t/awesome-pentest-cheat-sheetscoreb1t avatar

    coreb1t/awesome-pentest-cheat-sheets

    4,260View on GitHub↗
    awesomecheatsheetpenetration-testing
    View on GitHub↗4,260
  • cugu/awesome-forensicscugu avatar

    cugu/awesome-forensics

    4,911View on GitHub↗
    computer-forensicsdfirdigital-forensics
    View on GitHub↗4,911
  • cujanovic/open-redirect-payloadscujanovic avatar

    cujanovic/Open-Redirect-Payloads

    661View on GitHub↗

    Open Redirect Payloads

    Shell
    View on GitHub↗661
  • cyb3rward0g/threathunter-playbookCyb3rWard0g avatar

    Cyb3rWard0g/ThreatHunter-Playbook

    4,594View on GitHub↗

    ThreatHunter-Playbook is a structured framework for managing threat hunting playbooks, detection engineering workflows, and adversary tradecraft modeling. It provides a system for organizing behavioral patterns and detection rules into tactical groups to develop security monitoring hypotheses. The project features an interactive security notebook environment that combines analytics and validation queries to test threat hypotheses against telemetry datasets. It includes a mapping tool for organizing these patterns based on the MITRE ATT&CK security framework. The framework covers the full thr

    Python
    View on GitHub↗4,594
  • darthton/blackboneDarthTon avatar

    DarthTon/Blackbone

    5,431View on GitHub↗

    Blackbone is a collection of specialized tools for memory scanning, process injection, and kernel-driver interfaces used to manipulate the Windows execution environment. It provides a framework for executing remote code, mapping portable executable images, and managing threads across different process boundaries. The project includes a kernel memory driver to access kernel memory and modify handle rights to hide allocations from user-mode detection. It also features a library for intercepting function calls in remote processes using software interrupts and hardware breakpoints. The toolkit c

    C++
    View on GitHub↗5,431
  • deralexxx/security-apisderalexxx avatar

    deralexxx/security-apis

    983View on GitHub↗

    A collective list of public APIs for use in security. Contributions welcome

    View on GitHub↗983
  • devsecops/awesome-devsecopsdevsecops avatar

    devsecops/awesome-devsecops

    5,306View on GitHub↗
    devopsdevsecopspodcast
    View on GitHub↗5,306
  • diasdavid/awesome-hacking-spotsdiasdavid avatar

    diasdavid/awesome-hacking-spots

    1,122View on GitHub↗

    :computer: :coffee: List of Awesome Hacking Locations, organised by Country and City, listing if it features power and wifi

    View on GitHub↗1,122
  • djadmin/awesome-bug-bountydjadmin avatar

    djadmin/awesome-bug-bounty

    5,708View on GitHub↗

    A comprehensive curated list of available Bug Bounty & Disclosure Programs and Write-ups.

    View on GitHub↗5,708
  • dostoevskylabs/dostoevsky-pentest-notesD

    dostoevskylabs/dostoevsky-pentest-notes

    0View on GitHub↗
    View on GitHub↗0
  • edoverflow/bugbounty-cheatsheetEdOverflow avatar

    EdOverflow/bugbounty-cheatsheet

    6,498View on GitHub↗

    This project is a bug bounty resource directory, vulnerability research cheatsheet, and web security payload library. It serves as a centralized collection of curated payloads and common attack vectors used to identify security vulnerabilities in web applications. The repository provides a directory of platforms, books, and tools to support vulnerability discovery skills. It includes a reference for tested payloads and techniques used to trigger bugs and identify vulnerabilities during security audits. The content covers web application pentesting, security vulnerability testing, and general

    View on GitHub↗6,498
  • botherder/targetedthreatsbotherder avatar

    botherder/targetedthreats

    190View on GitHub↗

    Collection of IOCs related to targeting of civil society.

    Python
    View on GitHub↗190