davidprefer / Brugglemark
PowerShell script that abuses browser bookmark synchronization as a mechanism for sending and receiving data between systems.
☆15Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for Brugglemark
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- ShellSweeping the evil.☆52Updated 5 months ago
- Simple PowerShell script to enable process scanning with Yara.☆90Updated 2 years ago
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆72Updated 2 years ago
- A repository containing the research output from my GCFE Gold Paper which compared Windows 10 and Windows 11.☆25Updated 2 years ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆31Updated 3 weeks ago
- C# User Simulation☆33Updated 2 years ago
- Threat Mitigation Strategies☆25Updated last year
- Go module that allows you to authenticate to Azure with a well known client ID using interactive logon and grab the token☆24Updated last year
- Parses Nessus .nessus files for exploitable vulnerabilities and outputs a report file in format MM-DD-YYYY-nessus.csv☆38Updated last year
- PS-TrustedDocuments: PowerShell script to handle information on trusted documents for Microsoft Office☆34Updated last year
- Repository for LNK stuff☆27Updated 2 years ago
- ☆31Updated 2 years ago
- A PowerShell script that checks for dangerous ACLs on system hives and shadows☆28Updated 3 years ago
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆16Updated 3 years ago
- ☆27Updated this week
- A proof-of-concept re-assembler for reverse VNC traffic.☆25Updated last year
- ☆23Updated 2 years ago
- Indicators of Normality☆12Updated 2 years ago
- Bloodhound Portable for Windows☆51Updated last year
- Freyja is a Golang, Purple Team agent that compiles into Windows, Linux and macOS x64 executables.☆41Updated 3 weeks ago
- JXA script for Mythic that prints the TCC.db☆15Updated 3 years ago
- This repository contains sample log data that were collected after running adversary simulations in Microsoft 365☆20Updated last month
- ☆15Updated 2 years ago
- Threat hunting with EQL and Bro. This repo contains modifications to EQL and EQLLib to use BRO logs.☆8Updated 5 years ago
- Hundred Days of Yara Challenge☆12Updated 2 years ago
- General Content☆20Updated 4 months ago
- Files to automatically deploy red team Active Directory test lab☆42Updated 2 years ago