darkoperator / SysmonLinux.UtilLinks
PowerShell Module for parsing logs generated by Sysinternals Sysmon for Linux
☆37Updated 3 years ago
Alternatives and similar repositories for SysmonLinux.Util
Users that are interested in SysmonLinux.Util are comparing it to the libraries listed below
Sorting:
- A PowerShell script that checks for dangerous ACLs on system hives and shadows☆28Updated 4 years ago
- Enumerate Microsoft 365 Groups in a tenant with their metadata☆55Updated 4 years ago
- SMBMap is a handy SMB enumeration tool - here with Kerberos support☆73Updated 4 years ago
- Evtx Log (xml) Browser☆57Updated 2 years ago
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆54Updated 2 years ago
- Go module that allows you to authenticate to Azure with a well known client ID using interactive logon and grab the token☆26Updated 3 years ago
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆74Updated 4 years ago
- ☆71Updated 2 weeks ago
- Tool to perform lateral movement between AAD joined devices☆66Updated 3 years ago
- BloodHound Data Scanner☆45Updated 5 years ago
- General Content☆25Updated last month
- Purple Team Workshop by @jorgeorchilles☆12Updated 9 months ago
- blame Huy☆42Updated 5 years ago
- PetitPotam fork with Kerberos support in the impacket script☆17Updated 4 years ago
- Quick and dirty PoSH code to read teams messages☆23Updated last year
- A post exploitation framework designed to operate covertly on heavily monitored environments☆21Updated 5 years ago
- rustyIron is a tool that takes advantage of functionality within Ivanti's MobileIron MDM solution to perform single-factor authentication…☆44Updated 4 years ago
- Bloodhound Portable for Windows☆53Updated 2 years ago
- Process Monitor filter for finding privilege escalation vulnerabilities on Windows☆79Updated 4 years ago
- Tool to transfer credential files from Firefox to your local machine to decrypt offline.☆22Updated 4 years ago
- ThreatBox is a standard and controlled Linux based attack platform. I've used a version of this for years. It started as a collection of …☆76Updated last year
- Extracts Azure authentication tokens from PowerShell process minidumps.☆24Updated 2 years ago
- GoldenSAML Attack Libraries and Framework☆77Updated last year
- This is a repo for fetching Applocker event log by parsing the win-event log☆31Updated 3 years ago
- This project provides Base64 encoding and decoding functionality to PowerShell within Constrained Language Mode☆27Updated last year
- Kerberoast Detection Script☆31Updated last year
- RDP Checker☆65Updated last year
- Azur3Alph4 is a PowerShell module that automates red-team tasks for ops on objective. This module situates in a post-breach (RCE achieved…☆63Updated 4 years ago
- ☆28Updated 3 years ago
- Reproducible and extensible BloodHound playbooks☆44Updated 6 years ago