clong / detect-responderLinks
☆76Updated 7 years ago
Alternatives and similar repositories for detect-responder
Users that are interested in detect-responder are comparing it to the libraries listed below
Sorting:
- Credit to Helge Klein - https://helgeklein.com/blog/2015/02/creating-realistic-test-user-accounts-active-directory/☆69Updated 7 years ago
- 504 VSAgent☆25Updated 7 years ago
- Repository for my ATT&CK analysis research.☆71Updated 6 years ago
- A MITRE Caldera plugin written in Python 3 used to convert Red Canary Atomic Red Team Tests to MITRE Caldera Stockpile YAML ability files…☆73Updated 4 years ago
- Mitre Att&ck Technique Emulation☆82Updated 6 years ago
- ☆53Updated 7 years ago
- Generate ATT&CK Navigator layer file from PowerShell Empire agent logs☆48Updated 7 years ago
- PurpleSpray is an adversary simulation tool that executes password spray behavior under different scenarios and conditions with the purpo…☆51Updated 6 years ago
- A companion tool for BloodHound offering Active Directory statistics and number crunching☆65Updated 7 years ago
- Detect possible sysmon logging bypasses given a specific configuration☆111Updated 7 years ago
- Simulating Adversary Operations☆97Updated 7 years ago
- Conveigh is a Windows PowerShell LLMNR/NBNS spoofer detection tool☆97Updated 9 years ago
- Presentation Slides☆26Updated 6 years ago
- Responsive Command and Control System☆102Updated 3 years ago
- Repo containing docker-compose files and setup scripts without having to clone the individual reternal components☆112Updated 4 years ago
- A repo to document API functions mapped to security events across diverse platforms☆74Updated 6 years ago
- Reconnaissance tool for Microsoft Office 365☆69Updated 7 years ago
- The opposite of Ruler, provides blue teams with the ability to detect Ruler usage against Exchange.☆96Updated 8 years ago
- Purple Team Security☆76Updated 3 years ago
- ☆98Updated 6 years ago
- Sandbox feature upgrade with the help of wrapped samples☆76Updated 7 years ago
- PortPlow is a distributed port and system scanning & enumeration service. It enables the quick and automated enumeration of ports and ser…☆56Updated last year
- Splunk App to assist Sysmon Threat Hunting☆38Updated 8 years ago
- SMB Named Pipe shell☆69Updated last year
- ☆41Updated 7 years ago
- Bash script to parse multiple Nmap (.gnmap) exports into various plain-text formats for easy analysis.☆66Updated 12 years ago
- Security Operations Center Multiple Purpose Tool, takes IP address input, conducts OSINT, conducts splunk, bro, fireeye, imperva, and fir…☆22Updated 8 years ago
- SEC599 supporting GitHub repository☆16Updated 6 years ago
- CloudBurst is a red team framework for interacting with cloud providers to capture, compromise, and exfil data.☆37Updated 7 years ago
- This PowerShell script will determine if your connection to external servers over HTTPS is being decrypted by an intercepting proxy such …☆68Updated 8 years ago