Lupovis / DetectingCanaryTokensLinks
A Red Team Script to Detect Canary Tokens and Seed Files
☆15Updated 2 years ago
Alternatives and similar repositories for DetectingCanaryTokens
Users that are interested in DetectingCanaryTokens are comparing it to the libraries listed below
Sorting:
- Provides an advanced baseline to implement a secure Windows auditing strategy on Windows OS.☆60Updated 8 months ago
- Stand-Alone Windows Hardening (SAWH) is a script to reduce the attack surface of Windows systems that are not attached to a Windows Activ…☆55Updated 4 years ago
- A collection of various SIEM rules relating to malware family groups.☆70Updated last year
- Domain Response is a tool that is designed to help you automate the investigation for a domain. This tool is specificly designed to autom…☆49Updated last month
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆128Updated 10 months ago
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆145Updated 3 years ago
- ☆50Updated 2 weeks ago
- Slides of my public talks☆56Updated 2 years ago
- A collection of tips for using MISP.☆76Updated last year
- Active Directory Purple Team Playbook☆115Updated 2 years ago
- MAD ATT&CK Defender: ATT&CK Adversary Emulation Repository☆127Updated 2 years ago
- ☆58Updated 3 years ago
- ☆20Updated 4 years ago
- Import CrowdStrike Threat Intelligence into your instance of MISP☆50Updated 8 months ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆66Updated 3 years ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆51Updated last year
- A collection of scripts, tools. and configs for various OS'es and applications, all free and or open-source, to assist in impromptu Blue-…☆103Updated last year
- ☆73Updated last year
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆71Updated 4 years ago
- Cheat sheets for threat hunting, detection and other stuff.☆34Updated 3 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆79Updated last week
- VirtualGHOST Detection Tool☆105Updated 2 months ago
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆67Updated last year
- ☆69Updated 4 years ago
- Defending OT with ATT&CK provides a customized threat collection tailored to the attack surface and threat model of operational technolog…☆13Updated 8 months ago
- This CALDERA Plugin converts Adversary Emulation Plans from the Center for Threat Informed Defense☆34Updated 4 months ago
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆162Updated 10 months ago
- This repo is where I store my Threat Hunting ideas/content☆87Updated 2 years ago
- CarbonBlack EDR detection rules and response actions☆73Updated last year
- Open Threat Hunting Framework☆124Updated 2 years ago