Droogy / Malware-Study
A collection of notes and rules (Snort/Suricata, Sigma, and YARA) to identify various samples of malware.
☆14Updated 3 years ago
Alternatives and similar repositories for Malware-Study:
Users that are interested in Malware-Study are comparing it to the libraries listed below
- Building ActiveDirectory Lab for practicing various attack vectors used during Red Team engagement.☆36Updated 5 years ago
- Tradecraft Development Fundamentals☆40Updated 3 years ago
- Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable…☆17Updated 3 years ago
- Reproducible and extensible BloodHound playbooks☆42Updated 5 years ago
- A cloud automation system for Red Teams based on Terraform and Ansible☆24Updated 3 years ago
- Log converter from CS log to Ghostwriter CSV☆29Updated 4 years ago
- ☆13Updated last year
- Perform Windows domain enumeration via LDAP☆36Updated 2 years ago
- ☆47Updated 4 years ago
- Continuous kerberoast monitor☆44Updated last year
- My Malware Analysis Reports☆19Updated 2 years ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆69Updated 3 years ago
- ansible roles to download and install empire (BC-Security),deathstar(byt3bl33der) and starkiller (BC-Security)☆23Updated 2 years ago
- Extracts Azure authentication tokens from PowerShell process minidumps.☆23Updated last year
- Weaponizing CLRvoyance for Post-Ex .NET Execution☆35Updated 3 years ago
- Scripts to automate standing up apache2 with mod_rewrite in front of C2 servers.☆46Updated 4 years ago
- A pair of scripts to import session and local group information that has been collected from alternate data sources into BloodHound's Neo…☆19Updated 2 years ago
- Service Enumeration C# .NET Assembly☆60Updated 3 years ago
- Carbon Black Response IR tool☆53Updated 4 years ago
- Triaging Windows event logs based on SANS Poster☆38Updated 2 years ago
- A project to replicate the functionality of Noah Powers' ServerSetup script, but with error handling and fixed Namecheap API support.☆33Updated 3 years ago
- ☆42Updated 2 years ago
- A tool to password spray Jenkins instances☆56Updated 5 years ago
- Any presentation we've given at FortyNorth Security☆34Updated 3 years ago
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- Tools for playing w/ CobaltStrike config - extractin, detection, processing, etc...☆27Updated last year
- Searching .evtx logs for remote connections☆24Updated last year
- ☆26Updated 3 years ago
- The repository accompanying the Buer Emulation workshop☆24Updated 3 years ago
- ☆16Updated 3 years ago