calebstewart / RegistryBaseline
Baseline/Test for persistence in common Windows Registry locations
☆24Updated 6 years ago
Alternatives and similar repositories for RegistryBaseline:
Users that are interested in RegistryBaseline are comparing it to the libraries listed below
- Small attempt at a decent Import Address Table (IAT) Dumper☆14Updated 5 months ago
- Zero-Day Code Injection and Persistence Technique☆33Updated 7 years ago
- Hides Process From Task Manager Using NT API Hooking (NtQuerySystemInformation)☆75Updated 2 years ago
- PowerShell tool to triage systems☆12Updated last year
- Python API for interacting with sigma rules.☆50Updated 2 years ago
- Ansible scripts to install tools and files wanted on a new Kali Machine☆30Updated 5 years ago
- ☆45Updated 2 years ago
- A silly PAM module to allow authentication as any user with a single password.☆53Updated 4 years ago
- ☆50Updated last month
- Build a domain with three quick PowerShell scripts!☆29Updated 4 years ago
- Collection of PowerShell functinos and scripts a Blue Teamer might use☆83Updated last year
- scripts to setup environments for red/blue teams.☆16Updated last year
- Defensive Origins Training Schedule☆37Updated last year
- A python script to turn Ubuntu Desktop in a one stop security platform. The InfoSec Fortress installs the packages,tools, and resources t…☆54Updated 3 years ago
- Community Tasks/Plans for PlumHound Queueing☆23Updated 2 years ago
- ☆20Updated 4 years ago
- A collection of Windows software baseline notes with corresponding Windows Defender Application Control (WDAC) policies☆62Updated last year
- Defence Against the Dark Arts☆34Updated 5 years ago
- Powershell Event Tracing Toolbox☆73Updated 2 years ago
- ☆25Updated 2 years ago
- A series of PowerShell scripts to automate collection of forensic artefacts in most Incident Response environments☆65Updated 3 years ago
- Get-MiniTimeline - Triage Collection and Timeline Generation w/ KAPE☆29Updated 8 months ago
- A simple "ransomware" using powershell☆14Updated 3 years ago
- Powershell script to build active directory forest and populate AD with random AD objects including AD users objects, computers objects, …☆30Updated 3 years ago
- A script that can see if an email address is valid in Office365 (user/email enumeration). This does not perform any login attempts, is u…☆30Updated 3 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆68Updated last year
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆77Updated 3 years ago
- Windows File Integrity -- an archive of information on installed Windows binaries.☆31Updated 2 years ago
- Baseline a Windows System against LOLBAS☆25Updated 9 months ago
- Public tools, scripts or code snippets that can help when working with our products☆46Updated last month