Misp project created a dedicated Misp instance to share information:
https://t.co/9YdPVv8HEU ask them by DM the access.
#COVID19 dedicated MISP https://t.co/Fe7qK8DcmT
SMBv3 Compression Tester
Multiple scripts and detection tools to check if a Windows machine has SMBv3 protocol enabled with the compression feature.
Our NSE script is based on smb2-capabilities.nse but we will PR the nmap repository with those changes.
https://t.co/gNgcZr6U8r
This tool is intended for penetration testers who want to perform an engagement
quickly and efficiently. While this tool can be used for more covert operations
(including some additions below), it really shines when used at the scale of a
large network.
https://t.co/SKbzDGcL14
VB2019 paper: Pulling the PKPLUG: the adversary playbook for the long-standing espionage activity of a Chinese nation-state adversary
https://t.co/MCjGLJswH3
Threat Dragon is a free, open-source, cross-platform threat modeling application including system diagramming and a rule engine to auto-generate threats/mitigations. It is an OWASP Incubator Project. integration with other development lifecycle tools.
https://t.co/KobUWaLjBr
Evasion techniques - Malware Evasion Encyclopedia, which contains over 50 techniques used by various malwares to detect virtualized and sandboxed environments.
https://t.co/XHOEkxC7Qt
The ADTimeline script generates a timeline based on Active Directory replication metadata for objects considered of interest.
Replication metadata gives you the time at which each replicated attribute for a given object was last changed.
https://t.co/aQcTgxDD3P