Droogy / Malware-Study
A collection of notes and rules (Snort/Suricata, Sigma, and YARA) to identify various samples of malware.
☆14Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for Malware-Study
- Building ActiveDirectory Lab for practicing various attack vectors used during Red Team engagement.☆36Updated 4 years ago
- Perform Windows domain enumeration via LDAP☆36Updated 2 years ago
- A cloud automation system for Red Teams based on Terraform and Ansible☆24Updated 3 years ago
- ☆21Updated last year
- The repository accompanying the Buer Emulation workshop☆23Updated 3 years ago
- ☆41Updated 2 years ago
- Log converter from CS log to Ghostwriter CSV☆29Updated 4 years ago
- Searching .evtx logs for remote connections☆23Updated last year
- Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable…☆17Updated 3 years ago
- My Malware Analysis Reports☆18Updated 2 years ago
- Tradecraft Development Fundamentals☆40Updated 3 years ago
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- Triaging Windows event logs based on SANS Poster☆37Updated last year
- ☆15Updated 3 years ago
- CyberWarFare Labs hands-on workshop on the topic "Detecting Adversarial Tradecrafts/Tools by leveraging ETW"☆46Updated 2 years ago
- ansible roles to download and install empire (BC-Security),deathstar(byt3bl33der) and starkiller (BC-Security)☆23Updated 2 years ago
- various slides and presentations I've worked on☆18Updated 9 months ago
- An Ansible role to install cobalt-strike☆16Updated 4 years ago
- Ansible Cobalt Strike (Docker)☆14Updated 2 years ago
- Zoom Persistence Aggressor and Handler☆53Updated 3 years ago
- ☆36Updated 3 years ago
- A pair of scripts to import session and local group information that has been collected from alternate data sources into BloodHound's Neo…☆19Updated 2 years ago
- Extracts Azure authentication tokens from PowerShell process minidumps.☆23Updated last year
- ☆13Updated 10 months ago
- Scripts to automate standing up apache2 with mod_rewrite in front of C2 servers.☆46Updated 3 years ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆65Updated 2 years ago
- Reproducible and extensible BloodHound playbooks☆42Updated 4 years ago
- Execute Mimikatz with different technique☆50Updated 3 years ago
- A project to replicate the functionality of Noah Powers' ServerSetup script, but with error handling and fixed Namecheap API support.☆33Updated 3 years ago
- Repository for LNK stuff☆27Updated 2 years ago