Skip to content
View cyberbuff's full-sized avatar

Block or report cyberbuff

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
cyberbuff/README.md

Hi there πŸ‘‹

I'm Hare Sudhan, a Software/Security Engineer specializing in developing applications for Adversary Emulation.

πŸ‘· Check out what I'm currently working on

  • redcanaryco/atomic-red-team - Small and highly portable detection tests based on MITRE's ATT&CK. (2 days ago)
  • cyberbuff/LOAS - Living off the Orchard: Apple Script (4 days ago)
  • infosecB/LOOBins - Living Off the Orchard: macOS Binaries (LOOBins) is designed to provide detailed information on various built-in "living off the land" macOS binaries and how they can be used by threat actors for malicious purposes. (1 week ago)
  • cyberbuff/atomic-red-team-mcp - MCP server for Atomic Red Team (4 weeks ago)
  • LOLESXi-Project/LOLESXi - LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. This project gathers procedural examples from public reports of adversarial activities targeting ESXi hosts (1 month ago)

πŸ™‡ Recent Mentions

  1. ATT&CKCON 5 - Bridging the Gap: Enhancing Detection Coverage with Atomic Red Team, Sigma, and MITRE ATT&CK
  2. Atomic Red Team Webinar - Simplify security testing with Docker, Windows Sandbox, and Atomic Red Team
  3. Blockchain Goes to College
  4. Breaking into infosec and learning new skills with Atomic Red Team - [Youtube Video]https://www.youtube.com/watch?v=t0rwyuPoZ-E)
  5. T9Hacks 2020 winners announced

πŸ“« How to reach me

Twitter Linkedin


Pinned Loading

  1. redcanaryco/atomic-red-team redcanaryco/atomic-red-team Public

    Small and highly portable detection tests based on MITRE's ATT&CK.

    C 11.3k 3k

  2. redcanaryco/invoke-atomicredteam redcanaryco/invoke-atomicredteam Public

    Invoke-AtomicRedTeam is a PowerShell module to execute tests as defined in the [atomics folder](https://github.com/redcanaryco/atomic-red-team/tree/master/atomics) of Red Canary's Atomic Red Team p…

    PowerShell 985 232

  3. TheAtomicPlaybook TheAtomicPlaybook Public

    The Atomic Playbook contains TTPs from the MITRE ATT&CK framework mapped to the tests in the Atomic Red Team. It serves as a single resource to know about the tests, it's execution, detection and d…

    Jupyter Notebook 34 5

  4. LOOBins LOOBins Public

    Forked from infosecB/LOOBins

    Living Off the Orchard: macOS Binaries (LOOBins) is designed to provide detailed information on various built-in "living off the land" macOS binaries and how they can be used by threat actors for m…

    Python

  5. magicsword-io/LOLRMM magicsword-io/LOLRMM Public

    LotL RMM

    MDX 262 59

  6. nteract/papermill nteract/papermill Public

    πŸ“š Parameterize, execute, and analyze notebooks

    Python 6.3k 445