cryps1s / DARKSURGEON
DARKSURGEON is a Windows packer project to empower incident response, digital forensics, malware analysis, and network defense.
☆463Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for DARKSURGEON
- Automated, Collection, and Enrichment Platform☆322Updated 5 years ago
- Powershell-based Windows Security Auditing Toolbox☆572Updated 5 years ago
- CimSweep is a suite of CIM/WMI-based tools that enable the ability to perform incident response and hunting operations remotely across al…☆650Updated 5 years ago
- A PowerShell script for helping to find vulnerable settings in AD Group Policy. (deprecated, use Grouper2 instead!)☆737Updated 5 years ago
- FCL (Fileless Command Lines) - Known command lines of fileless malicious executions☆462Updated 3 years ago
- A PowerShell script to interact with the MITRE ATT&CK Framework via its own API☆367Updated 5 years ago
- Currently not updated for WMIEvent module...☆261Updated 8 years ago
- GoFetch is a tool to automatically exercise an attack plan generated by the BloodHound application.☆629Updated 7 years ago
- Some PowerShell Stuff☆280Updated 2 years ago
- ☆347Updated 3 years ago
- Sheepl : Creating realistic user behaviour for supporting tradecraft development within lab environments☆392Updated 8 months ago
- A fully functional DanderSpritz lab in 2 commands☆419Updated 5 years ago
- Credential and Red Teaming Defense for Windows Environments☆323Updated 4 months ago
- Automated deployment of Windows and Active Directory test lab networks. Useful for red and blue teams.☆479Updated 5 years ago
- Python script to decode common encoded PowerShell scripts☆215Updated 6 years ago
- Powershell Threat Hunting Module☆279Updated 8 years ago
- Red team & penetration testing tools to exploit the capabilities of Intel AMT☆255Updated 3 years ago
- This is a PowerShell based tool that is designed to act like a RAT. Its interface is that of a shell where any command that is supported …☆806Updated 4 months ago
- Powershell C2 Server and Implants☆573Updated 5 years ago
- Query and report user logons relations from MS Windows Security Events☆240Updated 6 years ago
- PowerShell - Rapid Response... For the incident responder in you!☆294Updated 5 years ago
- LyncSniper: A tool for penetration testing Skype for Business and Lync deployments☆304Updated 4 years ago
- Some PowerShell Defensive Scripts☆126Updated 8 years ago
- Configuration guidance for implementing Pass-the-Hash mitigations. #nsacyber☆198Updated 7 years ago
- This repo is for WMIOps, a powershell script which uses WMI for various purposes across a network.☆381Updated 4 months ago
- Main Build directory☆177Updated 5 years ago
- Windows Live Artifacts Acquisition Script☆183Updated 2 years ago
- ☆193Updated 3 years ago
- Scripts for comparing Microsoft Windows compliance with the ASD 1709 & Office 2016 Hardening Guides☆159Updated 4 years ago