MarkBaggett / GeoLocationNotebook
☆40Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for GeoLocationNotebook
- Expert Investigation Guides☆50Updated 3 years ago
- ☆43Updated last month
- CSIRT Jump Bag☆27Updated 7 months ago
- Defensive Origins Training Schedule☆37Updated 11 months ago
- Identifies physical locations where a laptop has been based upon wireless profiles and wireless data recorded in event logs☆91Updated 3 years ago
- Repo of python/bash scripts for identifying IoC's in threat feed and other online tools☆26Updated 4 years ago
- My Jupyter Notebooks☆36Updated 7 months ago
- Notes from my "Implementing a Kick-Butt Training Program: Blue Team GO!" talk☆12Updated 5 years ago
- Reference sheet for Threat Hunting Professional Course☆25Updated 5 years ago
- Tool used to perform threat intelligence against packet data☆35Updated 7 months ago
- Collection of walkthroughs on various threat hunting techniques☆75Updated 4 years ago
- Slides and Other Resources from my latest Talks and Presentations☆24Updated 3 years ago
- Open source training materials for law-enforcement and organisations interested in DFIR.☆56Updated 2 months ago
- Links to materials referenced in the SANS Tech Tuesday workshop June 30,2020☆26Updated 4 years ago
- A completely unsupported set of scripts used in SANS FOR572, Advanced Network Forensics and Analysis☆23Updated 4 months ago
- Distribution of the SANS SEC504 Windows Cheat Sheet Lab☆66Updated 4 years ago
- ☆9Updated 3 years ago
- Powershell - web traffic whitenoise generator☆46Updated 4 years ago
- Sharing Threat Hunting runbooks☆24Updated 5 years ago
- ☆28Updated 4 years ago
- Scapy packet fragment reassembly engines☆34Updated 3 years ago
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆44Updated 2 years ago
- Wrap any binary into a cached webserver☆53Updated 2 years ago
- Python script to batch query the Tor Relays and Bridges☆36Updated 5 years ago
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆52Updated 2 years ago
- Powershell Scripts to work on Crowdstrike Falcon that pull back raw data relevant to forensic investigation☆22Updated 3 months ago
- ☆53Updated 3 years ago
- ☆39Updated 5 years ago
- Random notes collected on the intertubes relating to DFIR☆32Updated last year
- ☆77Updated 5 years ago