0xHasanM / MISC
☆16Updated 2 months ago
Alternatives and similar repositories for MISC
Users that are interested in MISC are comparing it to the libraries listed below
Sorting:
- ☆66Updated 2 years ago
- A collection of open source threat detection rules created by Cyber Castle's team.☆14Updated 2 years ago
- Simplified MITRE Use Cases, it describes the Attack and Detection☆45Updated 4 years ago
- Random notes collected on the intertubes relating to DFIR☆32Updated last year
- ☆16Updated 3 weeks ago
- Cloud-based AD lab created to help you test real attacks in a controlled environment and create detection rules for them☆28Updated last year
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆77Updated 3 years ago
- Some important DFIR Resources☆83Updated 2 years ago
- ☆14Updated 5 years ago
- Writeups for the challenges i wrote for ASCWG quals☆10Updated 2 years ago
- Jupyter Notebooks for the Blue Team☆34Updated 4 months ago
- SIEM Cheat Sheet☆73Updated last year
- Collection of scripts and tools related to the eCTHPv2 exam by INE.☆14Updated 2 years ago
- Malware Samples that could be used for teaching students about malware analysis.☆54Updated last year
- Repo containing my personal walkthroughs of PMAT Labs i.e. PMAT Malware Samples.☆43Updated 3 years ago
- My own diary notes. Adding the commands, tools, techniques, and resources that I will not memorize.☆15Updated last year
- Linux Baseline and Forensic Triage Tool - BETA☆55Updated 2 years ago
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆68Updated last year
- ☆21Updated 5 years ago
- Regexplore is a Volatility plugin designed to mimic the functionality of the Registry Explorer plugins in EZsuite☆17Updated 2 years ago
- Understanding and analyzing carrier files workshop repo☆50Updated 5 years ago
- ☆63Updated 3 years ago
- ☆65Updated 2 years ago
- macOS Artifacts☆29Updated 2 months ago
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆95Updated last year
- Simple Script to Help You Find All Files Has Been Modified, Accessed, and Created In A Range Time.☆27Updated 2 years ago
- Threat Hunt Investigation Methodology and Procedure☆15Updated 2 years ago
- This tool parses Windows EVTX logs to extract login and logout sessions from a security.evtx file. It uses a Tkinter GUI to let you selec…☆32Updated 2 months ago
- Useful resources about phishing email analysis☆83Updated 3 months ago
- This repo is where I store my Threat Hunting ideas/content☆87Updated 2 years ago