BlackhawkLAB - cloud based end point detection and remediation solution
-
Updated
Apr 6, 2018 - Python
BlackhawkLAB - cloud based end point detection and remediation solution
Powershell modules and commands that come in handy for pentests and red team assessments.
Lightweight Endpoint Detection & Response (EDR) Framework
Carbon Black - Cyphort Binary Detonation Connector
Carbon Black - Palo Alto Network WildFire binary detonation connector
Carbon Black detonation Integration with Bluecoat Malware Analysis (MAA)
Import Cb Collective Defense Cloud Intelligence Feeds to air-gapped VMware Carbon Black EDR servers
Python EDR system Example (server and client-side)
Enumerate and disable common sources of telemetry used by AV/EDR.
Connector for pulling iSIGHT IOCs into a Carbon Black feed
PoC memory injection detection agent based on ETW, for offensive and defensive research purposes
Add a description, image, and links to the edr topic page so that developers can more easily learn about it.
To associate your repository with the edr topic, visit your repo's landing page and select "manage topics."