-
RMML Public
Forked from LivingInSyn/RMMLA list of RMMs designed to be used in automation to build alerts
Python MIT License UpdatedAug 15, 2024 -
LOOBins Public
Forked from infosecB/LOOBinsLiving Off the Orchard: macOS Binaries (LOOBins) is designed to provide detailed information on various built-in "living off the land" macOS binaries and how they can be used by threat actors for m…
Python GNU General Public License v3.0 UpdatedAug 13, 2024 -
certstream-python Public
Forked from CaliDog/certstream-pythonPython library for connecting to CertStream
Python MIT License UpdatedJul 25, 2024 -
certstream-server Public
Forked from CaliDog/certstream-serverCertificate Transparency Log aggregation, parsing, and streaming service written in Elixir
Vue MIT License UpdatedMar 26, 2024 -
Snaffler Public
Forked from SnaffCon/Snafflera tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )
C# GNU General Public License v3.0 UpdatedMar 4, 2024 -
file-extension-list Public
Forked from dyne/file-extension-listOrganised collection of common file extensions
Shell The Unlicense UpdatedFeb 26, 2024 -
family-of-client-ids-research Public
Forked from secureworks/family-of-client-ids-researchResearch into Undocumented Behavior of Azure AD Refresh Tokens
Python MIT License UpdatedFeb 23, 2024 -
msticpy Public
Forked from microsoft/msticpyMicrosoft Threat Intelligence Security Tools
Python Other UpdatedFeb 2, 2024 -
Training-MSOfficeOffensiveTradecraft Public
Forked from outflanknl/Training-MSOfficeOffensiveTradecraftInfo related to the Outflank training: Microsoft Office Offensive Tradecraft
UpdatedJan 22, 2024 -
Process-Hollowing Public
Forked from m0n0ph1/Process-HollowingGreat explanation of Process Hollowing (a Technique often used in Malware)
C++ UpdatedOct 11, 2023 -
BloodHound Public
Forked from SpecterOps/BloodHound-LegacySix Degrees of Domain Admin
PowerShell GNU General Public License v3.0 UpdatedOct 3, 2023 -
osquery Public
Forked from osquery/osquerySQL powered operating system instrumentation, monitoring, and analytics.
C++ Other UpdatedAug 18, 2023 -
sysmon-modular Public
Forked from olafhartong/sysmon-modularA repository of sysmon configuration modules
PowerShell MIT License UpdatedJul 29, 2023 -
jarm Public
Forked from salesforce/jarmPython BSD 3-Clause "New" or "Revised" License UpdatedJul 13, 2023 -
Azure-Sentinel Public
Forked from Azure/Azure-SentinelCloud-native SIEM for intelligent security analytics for your entire enterprise.
Jupyter Notebook MIT License UpdatedJun 30, 2023 -
Hunting-Queries-Detection-Rules Public
Forked from Bert-JanP/Hunting-Queries-Detection-RulesKQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.
UpdatedApr 17, 2023 -
-
-
-
DefenderCheck Public
Forked from matterpreter/DefenderCheckIdentifies the bytes that Microsoft Defender flags on.
C# BSD 3-Clause "New" or "Revised" License UpdatedFeb 27, 2023 -
serviceDetector Public
Forked from tothi/serviceDetectorDetect whether a service is installed (blindly) and/or running (if exposing named pipes) on a remote machine without using local admin privileges.
Python UpdatedFeb 27, 2023 -
-
FalconFriday Public
Forked from FalconForceTeam/FalconFridayHunting queries and detections
BSD 3-Clause "New" or "Revised" License UpdatedDec 28, 2022 -
sandbox-attacksurface-analysis-tools Public
Forked from googleprojectzero/sandbox-attacksurface-analysis-toolsSet of tools to analyze Windows sandboxes for exposed attack surface.
C# Apache License 2.0 UpdatedDec 16, 2022 -
-
Security-Datasets Public
Forked from OTRF/Security-DatasetsRe-play Security Events
PowerShell MIT License UpdatedMar 29, 2022 -
gifcast Public
Forked from dstein64/gifcast🎞️ Converts an asciinema cast to an animated GIF.
JavaScript MIT License UpdatedMar 8, 2022 -
godoh Public
Forked from sensepost/godoh🕳 godoh - A DNS-over-HTTPS C2
Go GNU General Public License v3.0 UpdatedMar 1, 2022 -
windows-domain-controller-vagrant Public
Forked from rgl/windows-domain-controller-vagrantExample Windows Domain Controller
PowerShell UpdatedFeb 12, 2022 -
packer Public
Forked from hashicorp/packerPacker is a tool for creating identical machine images for multiple platforms from a single source configuration.
Go Mozilla Public License 2.0 UpdatedFeb 3, 2022