RomaissaAdjailia / Get-AppLockerEventlog
This is a repo for fetching Applocker event log by parsing the win-event log
☆30Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for Get-AppLockerEventlog
- Hundred Days of Yara Challenge☆12Updated 2 years ago
- Python tool to find vulnerable AD object and generating csv report☆26Updated 2 years ago
- ☆44Updated last year
- ☆13Updated 6 months ago
- CIS Benchmark testing of Windows SIEM configuration☆43Updated last year
- Placeholder for my detection repo and misc detection engineering content☆43Updated last year
- ☆31Updated 2 years ago
- A repository containing the research output from my GCFE Gold Paper which compared Windows 10 and Windows 11.☆25Updated 2 years ago
- ☆20Updated 3 years ago
- Triaging Windows event logs based on SANS Poster☆37Updated last year
- ☆34Updated last year
- Create a cool process tree like https://twitter.com/ACEResponder.☆34Updated last year
- CyberWarFare Labs hands-on workshop on the topic "Detecting Adversarial Tradecrafts/Tools by leveraging ETW"☆46Updated 2 years ago
- Assist analyst and threat hunters to understand Windows authentication logs and to analyze brutforce scenarios.☆18Updated last year
- Active DIrectory Lab for Pentesting Practice☆24Updated 2 years ago
- Modified-Thycotic-Secret-Stealer for use with DPAPI and offline Decryption☆18Updated 2 years ago
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆62Updated 2 years ago
- Living off the False Positive!☆29Updated 3 months ago
- ☆22Updated last year
- ESXi Cyber Security Incident Response Script☆20Updated 2 months ago
- General Content☆20Updated 4 months ago
- Scripts to enumerate and report on Entra Conditional Access☆20Updated 2 months ago
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆50Updated last year
- ☆18Updated 7 months ago
- PS-TrustedDocuments: PowerShell script to handle information on trusted documents for Microsoft Office☆34Updated last year
- Automation of Active Directory penetration testing tasks on top of BloodHound CE☆30Updated last year
- SharpShareFinder is a minimalistic network share discovery POC designed to enumerate shares in Windows Active Directory networks leveragi…☆21Updated 4 months ago
- Threat Mitigation Strategies☆25Updated last year
- ☆20Updated last year
- Searching .evtx logs for remote connections☆23Updated last year