bi-zone / triageLinks
A free data collection and YARA scanning tool for cybersecurity incident investigation, compromise assessment and threat hunting
☆18Updated 11 months ago
Alternatives and similar repositories for triage
Users that are interested in triage are comparing it to the libraries listed below
Sorting:
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆132Updated 8 months ago
- Enterprise Response Model & Common Knowledge☆38Updated 3 months ago
- A tool to remotely detect unusual sessions opened on windows machines using RPC☆118Updated 4 months ago
- Useful collection of scapy-scripts and more☆32Updated last year
- реп полезностей для PT MaxPatrol SIEM☆24Updated 2 years ago
- Automating EDR Testing with reference to MITRE ATTACK via Cobalt Strike [Purple Team].☆157Updated 2 years ago
- ☆107Updated 3 months ago
- A comprehensive workshop aimed to equip participants with an in-depth understanding of modern Command and Control (C2) concepts, focusing…☆105Updated 2 years ago
- ☆160Updated last year
- Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so on☆83Updated last year
- ShellSweeping the evil.☆180Updated 10 months ago
- A fully-undetectable ransomware that utilizes OneDrive & Google Drive to encrypt target local files☆126Updated last year
- 🧰 ESXi Testing Tookit is a command-line utility designed to help security teams test ESXi detections.☆78Updated 5 months ago
- Active C&C Detector☆156Updated 2 years ago
- A collection of all my personal cheat sheets and guides as I progress through my career in offensive security.☆256Updated last week
- VeilTransfer is a data exfiltration utility designed to test and enhance the detection capabilities. This tool simulates real-world data …☆146Updated 2 months ago
- LOLAPPS is a compendium of applications that can be used to carry out day-to-day exploitation.☆191Updated 7 months ago
- ☆189Updated last year
- This is a simulation of attack by Fancy Bear group (APT28) targeting high-ranking government officials Western Asia and Eastern Europe☆36Updated last year
- Respotter is a Responder honeypot. Detect Responder in your environment as soon as it's spun up.☆198Updated 2 weeks ago
- A collection of tools, scripts and personal research☆145Updated 2 months ago
- An offensive postexploitation tool that will give you complete control over the Outlook desktop application and therefore to the emails c…☆166Updated last year
- All kinds of tiny shells☆58Updated 2 years ago
- Free training course offered at Hack Space Con 2023☆138Updated 2 years ago
- https://lolad-project.github.io/☆81Updated 9 months ago
- ☆122Updated last year
- PowerShell Script Analyzer☆70Updated last year
- ☆160Updated 3 months ago
- A curated list of awesome LOLBins, GTFO projects, and similar 'Living Off the Land' security resources.☆199Updated 11 months ago
- Advanced Active Directory network topology analyzer with SMB validation, multiple authentication methods (password/NTLM/Kerberos), and co…☆275Updated last week