MarkBaggett / domain_stats2
☆13Updated 5 years ago
Alternatives and similar repositories for domain_stats2:
Users that are interested in domain_stats2 are comparing it to the libraries listed below
- ☆11Updated 4 years ago
- PowerShell Memory Pulling script☆19Updated 9 years ago
- IOCPARSER.COM is a Fast and Reliable service that enables you to extract IOCs and intelligence from different data sources.☆34Updated 3 years ago
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 4 years ago
- Defence Against the Dark Arts☆34Updated 5 years ago
- ☆12Updated 2 years ago
- Threat Hunter's Knowledge Base☆22Updated 3 years ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆32Updated 3 weeks ago
- An experimental Velociraptor implementation using cloud infrastructure☆23Updated last week
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆36Updated last year
- Git for me to put all my forensics stuff☆21Updated last month
- Generate a histogram of TCP and UDP payload bytes from a pcap file☆24Updated 2 years ago
- An experimental script to perform bulk parsing of arbitrary file features with YARA and console logging.☆21Updated 2 years ago
- Web interface for monitoring and interacting with Netflow data stored in Silk repositories.☆13Updated 5 years ago
- Winterfell hunt is a python script to perform auto threat hunting for malicious activities in windows OS based on collected data by winte…☆15Updated 4 years ago
- Sharing Threat Hunting runbooks☆25Updated 5 years ago
- Generic Signature Format for SIEM Systems☆14Updated 3 years ago
- Resource links (video, slides & code) for my conference talks | presentations | workshops☆13Updated last month
- A tool to modify timestamps in a packet capture to a user selected date☆31Updated 3 years ago
- A few XDR Scripts☆17Updated 2 weeks ago
- A collection of searches, interesting events and tables on Crowdstrike Splunk.☆29Updated 3 years ago
- Bloodhound Portable for Windows☆51Updated last year
- Send High & New Incidents to The Hive incident management Platform☆18Updated 4 years ago
- A MITRE ATT&CK Lookup Tool☆45Updated 9 months ago
- The "DFUR" Splunk application and data that was presented at the 2020 SANS DFIR Summit.☆12Updated 4 years ago
- Crowdstrike Falcon Host script for iterating through instances to get alert and other relevant data☆13Updated 5 years ago
- ☆41Updated 10 months ago
- A collection of Sigma rules organized by MITRE ATT&CK technique☆17Updated 3 years ago
- DNS Dashboard for hunting and identifying beaconing☆14Updated 4 years ago
- Parses Nessus .nessus files for exploitable vulnerabilities and outputs a report file in format MM-DD-YYYY-nessus.csv☆39Updated last year