This script enhances endpoint logging telemetry for the purpose of advanced malware threat detection or for building detections or malware analysis. This can be used in production, however you might want to tune the GPO edits as needed.
☆44May 6, 2026Updated 4 months ago
Alternatives and similar repositories for Enable-All-The-Logs
Users that are interested in Enable-All-The-Logs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- This config file will automatically convert a temporary Windows Sandbox environment into a Flare VM for malware analysis.☆10Jan 3, 2025Updated last year
- Generate a fake "systeminfo.exe" binary in order to hide the presence of a VM☆19Jan 4, 2024Updated 2 years ago
- A quick command line utility that generates uses simple addition to obfuscate individual characters, then executes it☆16Jun 13, 2025Updated last year
- A Python-based VBScript Code Obfuscator☆50Dec 2, 2025Updated 9 months ago
- Threat feeds designed to extract adversarial TTPs and IOCs, using: ✨AI✨☆74Jun 17, 2026Updated 3 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Hide an IP address in scripts using hex/decimal/octal conversions☆74Apr 6, 2025Updated last year
- Detection rules and threat hunting queries in Defender XDR and Azure Sentinel☆17Mar 13, 2026Updated 6 months ago
- Capture. Detonate. Collect☆14Sep 20, 2024Updated 2 years ago
- Fork this repo! Do a Pull Request! As many times as you want! Learn the ins and outs of how to contribute to GitHub! Make your mistakes h…☆15Jun 21, 2024Updated 2 years ago
- A collection of open source threat detection rules created by Cyber Castle's team.☆14Jun 2, 2022Updated 4 years ago
- Incident Response Playbooks☆15Jun 10, 2019Updated 7 years ago
- ☆52Updated this week
- Living off the False Positive!☆42Apr 3, 2026Updated 5 months ago
- This operational dashboard correlates data from Microsoft Defender for Endpoint/Server (MDE) and Azure Monitor Agent (AMA) to identify co…☆18Sep 4, 2026Updated 3 weeks ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆16Feb 23, 2021Updated 5 years ago
- ☆24Jun 4, 2025Updated last year
- A collection of small scripts and tools for deobfuscation and malware analysis.☆67Mar 27, 2023Updated 3 years ago
- ☆10Aug 11, 2025Updated last year
- ☆20Sep 27, 2024Updated 2 years ago
- A pcap capture analysis helper☆25Aug 30, 2023Updated 3 years ago
- Threat Hunting & Incident Investigation with Osquery☆217Mar 30, 2022Updated 4 years ago
- Launch a Windows EXE file with this EXE file (application filter evasion)☆14Mar 10, 2017Updated 9 years ago
- ☆23May 23, 2024Updated 2 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- PowerShell tool for streamlined Microsoft Defender Advanced Hunting query management with GitHub Copilot integration☆21Aug 31, 2026Updated 3 weeks ago
- A PowerShell Universal frontend for AutomatedLab.Utils☆22Jun 5, 2026Updated 3 months ago
- IntuneAutomate - FREE Community Intune toolset designed for Automating key Intune tasks☆25Updated this week
- Config files for my GitHub profile.☆18Mar 21, 2026Updated 6 months ago
- IOCPARSER.COM is a Fast and Reliable service that enables you to extract IOCs and intelligence from different data sources.☆36Jan 20, 2022Updated 4 years ago
- ClientInspectorV2 - Unleashing the power of Azure LogAnalytics, Azure Data Collection Rules, Log Ingestion API by doing client inventory …☆27Apr 28, 2023Updated 3 years ago
- ☆26Jul 23, 2024Updated 2 years ago
- Alternative password shadowing scheme☆12Aug 1, 2026Updated last month
- yara detection rules for hunting with the threathunting-keywords project☆167May 11, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Sentinel Assessment Tool, designed to help SOC teams and detection engineers get a clear view of their Microsoft Sentinel and Microsoft D…☆28Mar 11, 2026Updated 6 months ago
- An extendable tool to extract and aggregate IoCs from threat feeds☆33Feb 6, 2024Updated 2 years ago
- Repo for some CrowdStrike Falcon Real-Time-Response PowerShell scripts☆16Oct 24, 2022Updated 3 years ago
- Powershell Scripts to work on Crowdstrike Falcon that pull back raw data relevant to forensic investigation☆23Dec 18, 2024Updated last year
- Terraform module to send CloudWatch logs to a syslog server. Compatible with papertrail, logstash, and datadog.☆12Mar 18, 2021Updated 5 years ago
- Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise☆69Jul 2, 2026Updated 2 months ago
- Perform file-based malware scan on your on-prem servers with AWS☆14Oct 31, 2023Updated 2 years ago