TH3xACE / EDR-TestLinks
Automating EDR Testing with reference to MITRE ATTACK via Cobalt Strike [Purple Team].
☆155Updated 2 years ago
Alternatives and similar repositories for EDR-Test
Users that are interested in EDR-Test are comparing it to the libraries listed below
Sorting:
- ☆160Updated 2 years ago
- Active C&C Detector☆156Updated 2 years ago
- PowerShell script that aim to help uncovering (eventual) persistence mechanisms deployed by a threat actor following an Active Directory …☆97Updated 2 months ago
- Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so on☆84Updated last year
- ☆65Updated 4 years ago
- ☆99Updated 3 years ago
- A comprehensive workshop aimed to equip participants with an in-depth understanding of modern Command and Control (C2) concepts, focusing…☆106Updated 2 years ago
- A Python package is used to execute Atomic Red Team tests (Atomics) across multiple operating system environments.☆137Updated last year
- A Azure Exploitation Toolkit for Red Team & Pentesters☆166Updated 2 years ago
- This repo is where I store my Threat Hunting ideas/content☆87Updated 2 years ago
- Custom PowerShell module to setup an Active Directory lab environment to practice penetration testing.☆180Updated 8 months ago
- Active Directory Purple Team Playbook☆115Updated 2 years ago
- SpecterOps Presentations☆209Updated 3 weeks ago
- Default Detections for EDR☆97Updated last year
- ☆124Updated last year
- Collect-MemoryDump - Automated Creation of Windows Memory Snapshots for DFIR☆251Updated 2 months ago
- Simple PowerShell script to enable process scanning with Yara.☆96Updated 3 years ago
- IOC Collection 2022☆57Updated 2 years ago
- Completely Risky Active-Directory Simulation Hub☆102Updated 2 years ago
- Initial triage of Windows Event logs☆105Updated last year
- InfoSec Notes☆60Updated last year
- Veil-PowerView is a powershell tool to gain network situational awareness on Windows domains.☆62Updated 10 years ago
- Audit tool for Active Directory. Automates a lot of checks from a pentester perspective.☆175Updated 6 months ago
- Finding all things on-prem Microsoft for password spraying and enumeration.☆258Updated 3 years ago
- ☆182Updated last year
- https://lolad-project.github.io/☆83Updated last year
- ☆167Updated 2 years ago
- A Cobalt Strike Scanner that retrieves detected Team Server beacons into a JSON object☆170Updated 3 years ago
- ☆42Updated 3 years ago
- Azure AD cheatsheet for the CARTP course☆142Updated 3 years ago