ReconInfoSec / adversary-emulation-map
Creates an ATT&CK Navigator map of an Adversary Emulation Plan
☆16Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for adversary-emulation-map
- Threat Mitigation Strategies☆25Updated last year
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- Crowdstrike Falcon Host script for iterating through instances to get alert and other relevant data☆13Updated 5 years ago
- PowerShell Memory Pulling script☆19Updated 9 years ago
- Collection of scripts and tools that I created to aid in my testing.☆14Updated 2 years ago
- Send High & New Incidents to The Hive incident management Platform☆17Updated 3 years ago
- Winterfell hunt is a python script to perform auto threat hunting for malicious activities in windows OS based on collected data by winte…☆14Updated 4 years ago
- incident response scripts☆18Updated 5 years ago
- OSSEM Modular☆27Updated 4 years ago
- BloodHound Data Scanner☆43Updated 4 years ago
- These are some of the commands which I use frequently during Malware Analysis and DFIR.☆25Updated 10 months ago
- C# User Simulation☆33Updated 2 years ago
- Resource links (video, slides & code) for my conference talks | presentations | workshops☆11Updated this week
- A collection of searches, interesting events and tables on Crowdstrike Splunk.☆29Updated 3 years ago
- Bloodhound Portable for Windows☆51Updated last year
- ☆41Updated 7 months ago
- Basic c2-matrix analysis enviroment using Suricata + Wazuh + Elastic stack☆12Updated 4 years ago
- Bunch of honey related items that spoof/decoy powersploit functions.☆18Updated 4 years ago
- The "DFUR" Splunk application and data that was presented at the 2020 SANS DFIR Summit.☆12Updated 4 years ago
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆35Updated last year
- ☆19Updated 3 years ago
- Scripts to help hunt for possible golden/silver TGT tickets☆16Updated 7 years ago
- Splunk Add-on for PowerShell provides field extraction for PowerShell event logs.☆17Updated 3 years ago
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 3 years ago
- ☆15Updated 2 years ago
- ☆10Updated 3 months ago
- A collection of hunting and blue team scripts. Mostly others, some my own.☆38Updated last year
- Converts Sigma detection rules to a Splunk alert configuration.☆13Updated 3 years ago