QueenSquishy / ZombieLinks
General Content
☆26Updated last year
Alternatives and similar repositories for Zombie
Users that are interested in Zombie are comparing it to the libraries listed below
Sorting:
- Placeholder for my detection repo and misc detection engineering content☆42Updated last year
- Create a cool process tree like https://twitter.com/ACEResponder.☆35Updated 2 years ago
- ShellSweeping the evil.☆53Updated last year
- PS-TrustedDocuments: PowerShell script to handle information on trusted documents for Microsoft Office☆35Updated 2 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆31Updated 2 years ago
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆52Updated last year
- Simple PowerShell script to enable process scanning with Yara.☆95Updated 2 years ago
- create a "simulated internet" cyber range environment☆17Updated last month
- ☆33Updated last year
- Bloodhound Portable for Windows☆51Updated 2 years ago
- Yara Rules for Modern Malware☆77Updated last year
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆73Updated 3 years ago
- Detection rule validation☆41Updated last year
- ☆84Updated 2 years ago
- Table of AD and Azure assets and whether they belong to Tier Zero☆27Updated last year
- Python tool to find vulnerable AD object and generating csv report☆26Updated 3 years ago
- Living off the False Positive!☆37Updated 5 months ago
- ☆14Updated 2 years ago
- ☆25Updated 3 years ago
- Default Detections for EDR☆96Updated last year
- ☆10Updated 11 months ago
- Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups☆60Updated 2 years ago
- A home for detection content developed by the delivr.to team☆69Updated last month
- A repository of curated lists with elements such as IoCs to use for threat hunting & detection queries.☆34Updated 11 months ago
- Splunk Technology-AddOn for Aurora Sigma-Based EDR Agent. It helps parse and configure the necessary inputs to neatly consume Aurora EDR …☆13Updated 2 years ago
- This script generates a groups.xml file that mimics a real GPP to create a new user on domain-joined computers☆46Updated 5 years ago
- Parses Nessus .nessus files for exploitable vulnerabilities and outputs a report file in format MM-DD-YYYY-nessus.csv☆39Updated last year
- Assist analyst and threat hunters to understand Windows authentication logs and to analyze brutforce scenarios.☆18Updated 2 years ago
- ☆14Updated last year
- Evtx Log (xml) Browser☆56Updated 2 years ago