TH3xACE / EDR-TestLinks
Automating EDR Testing with reference to MITRE ATTACK via Cobalt Strike [Purple Team].
☆155Updated 2 years ago
Alternatives and similar repositories for EDR-Test
Users that are interested in EDR-Test are comparing it to the libraries listed below
Sorting:
- ☆160Updated 2 years ago
- Active C&C Detector☆155Updated 2 years ago
- Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so on☆84Updated last year
- ☆98Updated 3 years ago
- PowerShell script that aim to help uncovering (eventual) persistence mechanisms deployed by a threat actor following an Active Directory …☆98Updated 2 weeks ago
- A comprehensive workshop aimed to equip participants with an in-depth understanding of modern Command and Control (C2) concepts, focusing…☆107Updated 2 years ago
- A Python package is used to execute Atomic Red Team tests (Atomics) across multiple operating system environments.☆137Updated last year
- This repo is where I store my Threat Hunting ideas/content☆87Updated 2 years ago
- A Azure Exploitation Toolkit for Red Team & Pentesters☆166Updated 2 years ago
- Custom PowerShell module to setup an Active Directory lab environment to practice penetration testing.☆180Updated 9 months ago
- ☆66Updated 4 years ago
- Completely Risky Active-Directory Simulation Hub☆102Updated 2 years ago
- IOC Collection 2022☆57Updated 2 years ago
- Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR☆250Updated 2 months ago
- SpecterOps Presentations☆210Updated last month
- Finding all things on-prem Microsoft for password spraying and enumeration.☆258Updated 3 years ago
- ☆42Updated 3 years ago
- Default Detections for EDR☆97Updated last year
- Audit tool for Active Directory. Automates a lot of checks from a pentester perspective.☆175Updated 6 months ago
- ☆125Updated last year
- Simple PowerShell script to enable process scanning with Yara.☆98Updated 3 years ago
- Active Directory Purple Team Playbook☆115Updated 2 years ago
- Azure AD cheatsheet for the CARTP course☆142Updated 3 years ago
- Veil-PowerView is a powershell tool to gain network situational awareness on Windows domains.☆62Updated 10 years ago
- This repository contains procedures found in the Feb 2022 conti leaks. They were taken from the "manual_teams_c" rocketchat channel in th…☆87Updated 3 years ago
- ☆119Updated 4 years ago
- ☆101Updated last year
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆207Updated 3 years ago
- A quick handy script to harvest credentials off of a user during a Red Team and get execution of a file from the user☆256Updated 3 years ago
- An active directory laboratory for penetration testing.☆148Updated 5 years ago