QueenSquishy / Zombie
General Content
☆20Updated 3 months ago
Related projects ⓘ
Alternatives and complementary repositories for Zombie
- Random tips and tricks RE: ransomware☆14Updated 3 years ago
- ESXi Cyber Security Incident Response Script☆20Updated 2 months ago
- ☆43Updated 3 weeks ago
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆35Updated last year
- Microsoft GPO Readiness Lateral Movement Detection Tool☆16Updated last year
- This is for my crappy (but hopefully useful) MDE and Sentinel KQL queries! #KQLThePlanet☆10Updated last year
- PS-TrustedDocuments: PowerShell script to handle information on trusted documents for Microsoft Office☆34Updated last year
- ShellSweeping the evil.☆52Updated 4 months ago
- ☆19Updated last year
- A project that aims to automate Volatility3 at scale with the use of cloud strength and the power of KQL inside ADX.☆15Updated 2 weeks ago
- Cumulonimbus-UAL_Extractor is a PowerShell based tool created by the Tesorion CERT team to help gather the Unified Audit Logging out of a…☆17Updated last year
- ASR Configurator, Essentials and Atomic Testing☆35Updated last week
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆72Updated 2 years ago
- ☆41Updated 7 months ago
- Azure function to insert MISP data in to Azure Sentinel☆30Updated 2 years ago
- Threat Mitigation Strategies☆25Updated last year
- A tool to display Windows Event logs as they happen.☆12Updated last year
- ☆40Updated 3 years ago
- Notes from my "Implementing a Kick-Butt Training Program: Blue Team GO!" talk☆12Updated 5 years ago
- A script designed to test passwords against user accounts within an Active Directory environment, offering customizable Account Lockout T…☆14Updated last year
- Sigma detection rules for hunting with the threathunting-keywords project☆47Updated last week
- This repository contains sample log data that were collected after running adversary simulations in Microsoft 365☆20Updated last month
- An experimental script to perform bulk parsing of arbitrary file features with YARA and console logging.☆21Updated last year
- This is a repo for fetching Applocker event log by parsing the win-event log☆30Updated 2 years ago
- A preconfigured Windows-based system designed for rapid forensic investigations in both Azure and AWS.☆36Updated 7 months ago
- Windows Security Logging☆43Updated 2 years ago
- This repository is used by FalconForce to release parts of the internal tools used for maintaining, validating and automatically deployin…☆15Updated last year
- Bloodhound Portable for Windows☆51Updated last year