ThreatResponse / margaritashotgun
Remote Memory Acquisition Tool
☆245Updated 4 years ago
Alternatives and similar repositories for margaritashotgun:
Users that are interested in margaritashotgun are comparing it to the libraries listed below
- Python installable command line utiltity for mitigation of host and key compromises.☆344Updated 3 years ago
- A MITRE ATT&CK Navigator export for AWS GuardDuty Findings☆137Updated 3 years ago
- This script is used to generate some basic detections of the aws security services☆72Updated 2 years ago
- A python module for orchestrating content acquisitions and analysis via amazon ssm.☆59Updated last year
- A Terraform module for GRR: the distributed incident forensics and response framework☆51Updated 4 years ago
- A small set of scripts to summarize AWS Security Groups, and generate visualizations of the rules.☆62Updated 4 years ago
- ☆370Updated 11 months ago
- Tools for AWS forensics☆64Updated 8 years ago
- Blazing CloudTrail since 2018☆135Updated 6 years ago
- ☆82Updated 5 years ago
- Example detection of compromise credentials in AWS☆120Updated 6 years ago
- 'Continuous' AWS perimeter monitoring: Periodically scan internet facing AWS resources to detect misconfigured services.☆64Updated 5 years ago
- Python module for evaluation of AWS account best practices around incident handling readieness.☆55Updated 4 years ago
- SkyWrapper helps to discover suspicious creation forms and uses of temporary tokens in AWS☆105Updated 3 years ago
- Osquery Mangement Server☆114Updated 4 years ago
- Security Monitoring Resolution Categories☆138Updated 3 years ago
- These are tools we released with our 2020 defcon/blackhat talk https://www.youtube.com/watch?v=Ml09R38jpok☆170Updated 2 weeks ago
- Threat Feed Aggregation, Made Easy☆167Updated 4 years ago
- Automated Use Case Testing☆167Updated 6 years ago
- The SOCless automation framework☆137Updated last week
- ☆154Updated last year
- A production-friendly malware scanner for your AWS cloud☆199Updated 3 years ago
- Extension to Cuckoo Sandbox open source projects, adds support to AWS cloud functionalities and enables running emulation on auto-scaling…☆136Updated 2 years ago
- Mark Baggett's (@MarkBaggett - GSE #15, SANS SEC573 Author) tool for detecting randomness using NLP techniques rather than pure entropy c…☆125Updated 2 years ago
- Tools to automate and/or expedite response.☆113Updated 7 months ago
- Incident Response and Forensic on AWS☆20Updated 4 years ago
- IAMFinder enumerates and finds users and IAM roles in a target AWS account.☆110Updated 4 years ago
- Salt States for Configuring the SIFT Workstation☆98Updated last week
- ☆190Updated 8 months ago
- Dorothy is a tool to test security monitoring and detection for Okta environments☆178Updated 6 months ago