Skip to content
View rabbitstack's full-sized avatar

Block or report rabbitstack

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

.NET tool used to enrich RPC telemetry

C# 51 3 Updated Jun 13, 2025

Open source Tines / Splunk SOAR alternative. All-in-one automation platform (workflows, tables, cases) for security and IT teams.

Python 2,810 239 Updated Jun 13, 2025
C# 73 5 Updated Jun 15, 2025

A repository of all code from Introduction to System Programming in Linux, by Stewart Weiss

C 55 8 Updated Jun 5, 2025

This technique leverages PowerShell's .NET interop layer and COM automation to achieve stealthy command execution by abusing implicit type coercion

PowerShell 43 3 Updated May 16, 2025

Evasive shellcode loader for bypassing event-based injection detection (PoC)

C++ 778 127 Updated Aug 23, 2021

A modern 32/64-bit position independent implant template

C 1,226 197 Updated Mar 21, 2025

Call Stack Spoofing for Rust

Rust 164 18 Updated Jun 14, 2025

Also known by Microsoft as Knifecoat 🌶️

C# 1,136 204 Updated Dec 22, 2022

Light Blue React Template - Admin Dashboard Template built with React

JavaScript 571 197 Updated Nov 29, 2024

Early Bird Cryo Injections – APC-based DLL & Shellcode Injection via Pre-Frozen Job Objects

C++ 97 10 Updated Apr 6, 2025

This repo covers some code execution and AV Evasion methods for Macros in Office documents

VBA 1,234 230 Updated Jan 27, 2022
Python 165 46 Updated Jan 20, 2021

A native Windows library for intercepting kernel-to-user transitions using instrumentation callbacks

C++ 20 6 Updated Feb 3, 2024

SigNoz is an open-source observability platform native to OpenTelemetry with logs, traces and metrics in a single application. An open-source alternative to DataDog, NewRelic, etc. 🔥 🖥. 👉 Open sour…

TypeScript 22,395 1,585 Updated Jun 16, 2025

PoC capable of detecting manual syscalls from usermode.

C++ 197 32 Updated Nov 21, 2024

My projects to understand malware development and detection. Use responsibly. I'm not responsible if you cause unauthorised damage to anyone's system.

C 71 9 Updated Jun 13, 2025

CVE-2025-24071: NTLM Hash Leak via RAR/ZIP Extraction and .library-ms File

Python 305 49 Updated Mar 20, 2025

Tabler is free and open-source HTML Dashboard UI Kit built on Bootstrap

HTML 39,568 4,190 Updated Jun 12, 2025

delegated, decentralized, capabilities based authorization token

Rust 1,026 27 Updated Jun 12, 2025

RunAs Utility Credential Stealer implementing 3 techniques : Hooking CreateProcessWithLogonW, Smart Keylogging, Remote Debugging

C++ 192 33 Updated Mar 6, 2025

Fault tolerant, kernel-level Load Balancer

Go 5 Updated Jun 5, 2025

🐜🐜🐜 ants is the most powerful and reliable pooling solution for Go.

Go 13,740 1,398 Updated Apr 12, 2025

A few custom rules for the Fibratus tool (https://github.com/rabbitstack/fibratus)

5 1 Updated Jun 15, 2025

Collect Windows telemetry for Maldev

C++ 353 41 Updated Feb 8, 2025

Loads any C# binary in mem, patching AMSI + ETW.

C# 830 149 Updated Oct 3, 2021

anti-ransomware file-system filter

C++ 59 9 Updated Sep 3, 2024

A fucking real shellcode loader with a GUI. Work-in-Progress.

Go 75 12 Updated Jun 10, 2025

PoC for thread pool based process injection in Windows.

C++ 116 13 Updated Mar 29, 2025
Next