3rd-party Lists
Virtual Machines
- TibixDev/winboat - Run Windows apps on 🐧 Linux with ✨ seamless integration
- sickcodes/Docker-OSX - Run macOS VM in a Docker! Run near native OSX-KVM in Docker! X11 Forwarding! CI/CD for OS X Security Research! Docker mac Containers
- SinaKarvandi/Hypervisor-From-Scratch - Source code of a multiple series of tutorials about the hypervisor
- firecracker-microvm/firecracker - Secure and fast microVMs for serverless computing
- packer: Build Automated Machine Images
- StefanScherer/adfs2 - Multi Vagrant environment with Active Directory
- JaanusKaapPublic/HyperViper - Toolkit for Hyper-V security research
- nongiach/arm_now - a qemu powered tool that allows instant setup of VM for testing binaries built for different CPU architectures
vCenter
- JamesCooteUK/SharpSphere - .NET Project for Attacking vCenter - 使用 vCenter API,对安装了vmtools的Windows机器进行操作,可以执行命令、读写文件等等
- RicterZ/PySharpSphere - Yet another SharpSphere
- horizon3ai/vcenter_saml_login - A tool to extract the IdP cert from vCenter backups and log in as Administrator - 从data.mdb里提取证书,模拟登录并获取管理员cookie
- shmilylty/vhost_password_decrypt - vhost password decrypt
- W01fh4cker/VcenterKit - Vcenter综合渗透利用工具包 | Vcenter Comprehensive Penetration and Exploitation Toolkit
Hardening
- kkamagui/alcatraz - A Practical Hypervisor Sandbox to Prevent Escapes from the KVM/QEMU and KVM-based MicroVMs
- nsmfoo/antivmdetection - Script to create templates to use with VirtualBox to make vm detection harder
- Knowledge Fragment: Hardening Win7 x64 on VirtualBox for Malware Analysis
QEMU
Exploits
- hustdebug/scavenger - This is an exploit for an uninitialized free in nvme:nvme_map_prp(). For more information, see the writeup the slides for the talk in Blackhat Asis 2021
- guardicore/vmware_guest_auth_bypass - two scripts related to the VIX authentication bypass presented in Black Hat
- xairy/vmware-exploitation - A bunch of links related to VMware escape exploits