b3b0 / snipehuntLinks
π¦π¬A small PowerShell tool for finding information quickly on malicious IPs or FQDNs. Powershell threat hunting.
β11Updated 6 years ago
Alternatives and similar repositories for snipehunt
Users that are interested in snipehunt are comparing it to the libraries listed below
Sorting:
- THOR MITRE ATT&CK Framework Coverageβ25Updated 5 years ago
- Log aggregation, analysis, alerting and correlation for Windows, Syslog and text based logs.β23Updated 9 years ago
- β13Updated 6 years ago
- PowerShell Memory Pulling scriptβ19Updated 10 years ago
- This repo is dedicated to all my tricks, tweaks and modules for testing and hunting threats. This repo contains multiple directories whicβ¦β57Updated 8 years ago
- A few scripts I put together for testing purposes and to automate a few capabilities while doing IR. These scripts are also part of my blβ¦β56Updated 8 years ago
- β30Updated 7 years ago
- Generic Signature Format for SIEM Systemsβ14Updated 4 years ago
- All the useful tools interesting to be usedβ24Updated 3 years ago
- This repository contains all the config files and scripts used for our Open Source Endpoint monitoring project.β35Updated 6 years ago
- Audit Powershell and search from known keywords in history #Blueteamβ25Updated 5 years ago
- A few quick recipes for those that do not have much time during the dayβ22Updated last year
- Notebooks created to attack and secure Active Directory environmentsβ27Updated 6 years ago
- Tool for quickly gathering information from Shodan.io about the number of IPs which satisfy large number of different queriesβ52Updated 3 years ago
- MasterParser is a simple, all-in-one, digital forensics artifact parserβ24Updated 4 years ago
- A script to assist in processing forensic RAM captures for malware triageβ26Updated 5 years ago
- These are some of the commands which I use frequently during Malware Analysis and DFIR.β24Updated 2 years ago
- OSINT tool to evaluate the trustworthiness of a companyβ41Updated 6 years ago
- Bolster NEO API - Artificial intelligence based zero-hour phishing detectionβ13Updated 4 years ago
- FireEye iSIGHT Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platformβ16Updated 7 years ago
- PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.β40Updated 3 years ago
- Sharing Threat Hunting runbooksβ25Updated 6 years ago
- β21Updated 2 years ago
- Automatic Sender Policy Framework Reconnaissanceβ19Updated 7 years ago
- An extendable tool to extract and aggregate IoCs from threat feedsβ33Updated 2 years ago
- Various components we use in labsβ10Updated 5 years ago
- A simple many-rules to many-files YARA scanner for incident response or malware zoos.β27Updated 7 years ago
- Threat intelligence and threat detection indicators (IOC, IOA)β52Updated 5 years ago
- HoneyDB Python Moduleβ14Updated 2 years ago
- Gunslinger is used to hunt for Magecart sites using URLScan's APIβ31Updated 3 years ago