dhoelzer / AuditcastsScripts
Handy scripts developed and discussed on http://auditcasts.com
☆19Updated 5 years ago
Alternatives and similar repositories for AuditcastsScripts:
Users that are interested in AuditcastsScripts are comparing it to the libraries listed below
- Splunk App to assist Sysmon Threat Hunting☆38Updated 7 years ago
- Powershell - web traffic whitenoise generator☆46Updated 4 years ago
- Tools to search through massive amounts of data☆21Updated 2 months ago
- Splunk app for Threat hunting☆15Updated 6 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- Expert Investigation Guides☆51Updated 3 years ago
- Slides and Other Resources from my latest Talks and Presentations☆24Updated 4 years ago
- A completely unsupported set of scripts used in SANS FOR572, Advanced Network Forensics and Analysis☆25Updated last month
- Public Landing Page☆16Updated 2 years ago
- 504 VSAgent☆23Updated 6 years ago
- Security Operations Center Multiple Purpose Tool, takes IP address input, conducts OSINT, conducts splunk, bro, fireeye, imperva, and fir…☆21Updated 7 years ago
- Site for IWS book content☆18Updated 6 years ago
- Powershell collection designed to assist in Threat Hunting Windows systems.☆27Updated 6 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Updated 11 months ago
- Threat Box Assessment Tool☆19Updated 3 years ago
- Mitre Att&ck Technique Emulation☆82Updated 5 years ago
- This repository is created to add value to existing Network Security Monitoring solutions.☆42Updated 8 years ago
- The gse-study repo was assembled to serve as a consolidated, and comprehensive, study solution for the SANS GSE exam.☆25Updated 6 years ago
- PSAttck is a light-weight framework for the MITRE ATT&CK Framework.☆38Updated 3 years ago
- Tools for parsing Forensic images☆41Updated 6 years ago
- ☆39Updated 5 years ago
- Technical add-on to ingest json formatted volatility memory analysis plugin outputs☆13Updated 6 years ago
- Powershell Functions to interact with TheHive-Project☆10Updated 5 years ago
- ☆29Updated 6 years ago
- pocket guide for core threat hunting concepts☆23Updated 4 years ago
- Sysmon configuration file template with default high-quality event tracing☆17Updated 3 years ago
- ☆76Updated 6 years ago
- SEC599 supporting GitHub repository☆16Updated 5 years ago
- ☆48Updated 4 years ago
- Splunk TA for alert action to TheHive-project☆11Updated 4 years ago