bi-zone / triage
A free data collection and YARA scanning tool for cybersecurity incident investigation, compromise assessment and threat hunting
☆15Updated 6 months ago
Alternatives and similar repositories for triage
Users that are interested in triage are comparing it to the libraries listed below
Sorting:
- Useful collection of scapy-scripts and more☆27Updated 10 months ago
- exfiltration/infiltration toolkit☆44Updated 6 months ago
- BloodHound PowerShell client☆52Updated last month
- ☆37Updated last year
- ☆57Updated 2 years ago
- 🧰 ESXi Testing Tookit is a command-line utility designed to help security teams test ESXi detections.☆73Updated 3 weeks ago
- ☆65Updated 4 years ago
- ☆96Updated 3 weeks ago
- Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so on☆81Updated last year
- An interactive shell to spoof some LOLBins command line☆184Updated last year
- Reads and prints information from the website MalAPI.io☆38Updated 3 years ago
- information about ransomware groups (Ransomware Analysis Notes)☆37Updated last year
- ☆80Updated 5 months ago
- Enterprise Response Model & Common Knowledge☆36Updated 11 months ago
- A comprehensive workshop aimed to equip participants with an in-depth understanding of modern Command and Control (C2) concepts, focusing…☆101Updated last year
- This is a simulation of attack by Fancy Bear group (APT28) targeting high-ranking government officials Western Asia and Eastern Europe☆33Updated 11 months ago
- C2 Automation using Linode☆82Updated 2 years ago
- ☆20Updated last year
- A fully-undetectable ransomware that utilizes OneDrive & Google Drive to encrypt target local files☆124Updated 11 months ago
- Ansible + Vagrant + Hyper-V + Vulnerable AD 😎☆92Updated 9 months ago
- ☆54Updated 5 months ago
- Yara Rules for Modern Malware☆77Updated last year
- ☆63Updated 3 years ago
- This repository contains a comprehensive testing designed for evaluating the performance and resilience of Endpoint Detection and Respons…☆54Updated 6 months ago
- Ransomware Simulator for testing Blue Team Detections☆37Updated 2 years ago
- A tool to remotely detect unusual sessions opened on windows machines using RPC☆104Updated 3 weeks ago
- All kinds of tiny shells☆58Updated 2 years ago
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆68Updated last year
- A collection of tools, scripts and personal research☆128Updated last month
- A collection of tools Neil and Andy have been working on released in one place and interlinked with previous tools☆88Updated last year