OneFuzz is a self-hosted Fuzzing-As-A-Service platform initially launched by a small group in MSR, now a significant internal platform within Microsoft, aimed at driving security and quality into products through continuous developer-driven fuzzing.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
SharpEDRChecker scans system components to detect security products and tools.
Redboto is a collection of scripts for red team operations against the AWS API.
Check if a domain is in the Alexa or Cisco top one million domain list.
Learn how to create new Malleable C2 profiles for Cobalt Strike to avoid detection and signatured toolset
RedWarden is a Cobalt Strike C2 Reverse proxy that evades detection by Blue Teams, AVs, EDRs, and scanners through packet inspection and malleable profile correlation.
A YARA interactive debugger for the YARA language written in Rust, providing features like function calls, constant evaluation, and string matching.
Adversary emulation framework for testing security measures in network environments.
A lightweight, first-stage C2 implant written in Nim for remote access and control.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.