MikeHorn-git / WAFSLinks
Hardened your Windows OS against forensics analysis
☆21Updated 8 months ago
Alternatives and similar repositories for WAFS
Users that are interested in WAFS are comparing it to the libraries listed below
Sorting:
- ☆46Updated 5 months ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆33Updated last month
- Linux #rootkit and #malware revealer☆26Updated last year
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆52Updated 8 months ago
- Lena's scripts/code/resources for malware analysis☆27Updated last year
- Scan files for potential threats while leveraging AMSI (Antimalware Scan Interface) and Windows Defender. By isolating malicious content.☆21Updated 7 months ago
- information about ransomware groups (Ransomware Analysis Notes)☆38Updated last year
- Cheat sheet to detect and remove linux kernel rootkit☆68Updated 7 months ago
- Detection rule validation☆41Updated last year
- This is a simulation of attack by Fancy Bear group (APT28) targeting high-ranking government officials Western Asia and Eastern Europe☆34Updated last year
- A fully-undetectable ransomware that utilizes OneDrive & Google Drive to encrypt target local files☆126Updated last year
- Malware Analysis tools☆26Updated 10 months ago
- Configuration Extractors for Malware☆110Updated 3 months ago
- PowerShell Script Analyzer☆70Updated last year
- C2 Active Scanner☆59Updated last year
- Powershell Linter☆79Updated last week
- ☆24Updated 5 months ago
- ☆37Updated last year
- Tools and scripts to deploy and manage OpenRelik instances☆14Updated last month
- Tools for offensive security of NetBackup infrastructures☆41Updated 2 years ago
- All kinds of tiny shells☆58Updated 2 years ago
- A proof-of-concept re-assembler for reverse VNC traffic.☆25Updated 2 years ago
- NoDelete is a tool that assists in malware analysis by locking a folder where malware drops files before deleting them.☆47Updated 7 months ago
- MS Graph Commands and Tools for Blue Teamers☆50Updated last year
- ☆27Updated 8 months ago
- Hollowise is a tool that implements process hollowing and PPID (Parent Process ID) spoofing techniques for masking a legitimate analysis …☆37Updated 5 months ago
- Exfiltrate data over audio output from remote desktop sessions - Covert channel PoC☆61Updated 8 months ago
- A Repository to Track Anti-Forensic Techniques☆111Updated 2 years ago
- This repository contains a variety of plugins and scripts, related to the Volatility framework.☆16Updated 6 months ago
- A library and a set of tools for exploiting and communicating with Google's Quick Share devices.☆44Updated 4 months ago