PingTrip / Ansible_CuckooLinks
☆20Updated 7 years ago
Alternatives and similar repositories for Ansible_Cuckoo
Users that are interested in Ansible_Cuckoo are comparing it to the libraries listed below
Sorting:
- ☆39Updated 5 years ago
- Simple Powershell scripts to collect all Windows Event Logs from a host and parse them into one CSV timeline.☆34Updated 6 years ago
- ☆33Updated 10 months ago
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆53Updated 2 years ago
- An Incident Response tool that visualizes historic process execution evidence (based on Event ID 4688 - Process Creation Event) in a tree…☆60Updated 7 years ago
- Defence Against the Dark Arts☆34Updated 6 years ago
- A utility to trawl phishing domains and attempt to identify phishing kits as well as other malicious activity☆36Updated 3 years ago
- Fast incident overview☆40Updated 8 years ago
- PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.☆38Updated 3 years ago
- PowerShell - Endpoint Analysis Solution Your Windows Intranet Needs☆48Updated 10 months ago
- A modern Python-3-based alternative to RegRipper☆196Updated 6 months ago
- PowerShell No Agent Hunting☆109Updated 7 years ago
- Detect possible sysmon logging bypasses given a specific configuration☆110Updated 6 years ago
- Parses the WMI object database....looking for persistence☆33Updated 5 years ago
- Analysis of file (doc, pdf, exe, ...) in deep (emmbedded file(s)) with clamscan and yara rules☆50Updated 2 years ago
- ☆54Updated 5 years ago
- An uploader honeypot designed to look like poor website security.☆27Updated 5 months ago
- Windows 10 (v1803+) ActivitiesCache.db parsers (SQLite, PowerShell, .EXE)☆197Updated 2 years ago
- Random hunting ordiented yara rules☆97Updated 2 years ago
- Sysmon Tools for PowerShell☆232Updated 7 years ago
- OSSEM Modular☆27Updated 5 years ago
- A YARA Rule Performance Measurement Tool☆60Updated last year
- A powershell script that prints a lot of IP and connection info to the screen☆31Updated 8 years ago
- PSAttck is a light-weight framework for the MITRE ATT&CK Framework.☆38Updated 3 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 7 years ago
- Finds event logs between two time points. Useful for helpdesk/support/malware analysis.☆47Updated 6 years ago
- Malware similarity platform with modularity in mind.☆78Updated 4 years ago
- SysInternals' Process Monitor filters repository - collected from various places and made up by myself. To be used for quick Behavioral a…☆70Updated 4 years ago
- A repo to document API functions mapped to security events across diverse platforms☆74Updated 5 years ago
- Active Directory Group Policy analyzer☆109Updated 11 years ago