This script enhances endpoint logging telemetry for the purpose of advanced malware threat detection or for building detections or malware analysis. This can be used in production, however you might want to tune the GPO edits as needed.
☆43May 6, 2026Updated 3 months ago
Alternatives and similar repositories for Enable-All-The-Logs
Users that are interested in Enable-All-The-Logs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Generate a fake "systeminfo.exe" binary in order to hide the presence of a VM☆18Jan 4, 2024Updated 2 years ago
- Threat feeds designed to extract adversarial TTPs and IOCs, using: ✨AI✨☆74Jun 17, 2026Updated 2 months ago
- Hide an IP address in scripts using hex/decimal/octal conversions☆74Apr 6, 2025Updated last year
- Detection rules and threat hunting queries in Defender XDR and Azure Sentinel☆17Mar 13, 2026Updated 5 months ago
- Capture. Detonate. Collect☆14Sep 20, 2024Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Fork this repo! Do a Pull Request! As many times as you want! Learn the ins and outs of how to contribute to GitHub! Make your mistakes h…☆15Jun 21, 2024Updated 2 years ago
- A collection of open source threat detection rules created by Cyber Castle's team.☆14Jun 2, 2022Updated 4 years ago
- Incident Response Playbooks☆15Jun 10, 2019Updated 7 years ago
- ☆47Updated this week
- Living off the False Positive!☆41Apr 3, 2026Updated 4 months ago
- This operational dashboard correlates data from Microsoft Defender for Endpoint/Server (MDE) and Azure Monitor Agent (AMA) to identify co…☆18May 13, 2026Updated 3 months ago
- ☆51Jul 30, 2025Updated last year
- ThreatHunt is a PowerShell repository that allows you to train your threat hunting skills.☆135Jul 25, 2019Updated 7 years ago
- ☆24Jun 4, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆10Aug 11, 2025Updated last year
- ☆20Sep 27, 2024Updated last year
- A pcap capture analysis helper☆25Aug 30, 2023Updated 2 years ago
- Threat Hunting & Incident Investigation with Osquery☆217Mar 30, 2022Updated 4 years ago
- Launch a Windows EXE file with this EXE file (application filter evasion)☆14Mar 10, 2017Updated 9 years ago
- ☆23May 23, 2024Updated 2 years ago
- PowerShell tool for streamlined Microsoft Defender Advanced Hunting query management with GitHub Copilot integration☆19Aug 10, 2026Updated last week
- IntuneAutomate - FREE Community Intune toolset designed for Automating key Intune tasks☆25Updated this week
- Config files for my GitHub profile.☆18Mar 21, 2026Updated 4 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- IOCPARSER.COM is a Fast and Reliable service that enables you to extract IOCs and intelligence from different data sources.☆36Jan 20, 2022Updated 4 years ago
- ClientInspectorV2 - Unleashing the power of Azure LogAnalytics, Azure Data Collection Rules, Log Ingestion API by doing client inventory …☆27Apr 28, 2023Updated 3 years ago
- ☆26Jul 23, 2024Updated 2 years ago
- Alternative password shadowing scheme☆11Aug 1, 2026Updated 2 weeks ago
- ☆11Feb 9, 2023Updated 3 years ago
- yara detection rules for hunting with the threathunting-keywords project☆166May 11, 2025Updated last year
- Sentinel Assessment Tool, designed to help SOC teams and detection engineers get a clear view of their Microsoft Sentinel and Microsoft D…☆28Mar 11, 2026Updated 5 months ago
- An extendable tool to extract and aggregate IoCs from threat feeds☆33Feb 6, 2024Updated 2 years ago
- Repo for some CrowdStrike Falcon Real-Time-Response PowerShell scripts☆16Oct 24, 2022Updated 3 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Powershell Scripts to work on Crowdstrike Falcon that pull back raw data relevant to forensic investigation☆23Dec 18, 2024Updated last year
- Terraform module to send CloudWatch logs to a syslog server. Compatible with papertrail, logstash, and datadog.☆12Mar 18, 2021Updated 5 years ago
- Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise☆69Jul 2, 2026Updated last month
- Perform file-based malware scan on your on-prem servers with AWS☆14Oct 31, 2023Updated 2 years ago
- A ProcessMonitor visualization application written in rust.☆182Aug 6, 2023Updated 3 years ago
- Upgrade kali linux default installation☆15Jul 12, 2026Updated last month
- 🌌 Real-time threat detection for smart contracts☆10May 16, 2023Updated 3 years ago