dtact / divd-2021-00038--log4j-scanner
Scan systems and docker images for potential log4j vulnerabilities. Able to patch (remove JndiLookup.class) from layered archives. Will detect in-depth (layered archives jar/zip/tar/war and scans for vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046 and CVE-2021-45105). Binaries for Windows, Linux and OsX, but can be build on each platfo…
☆50Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for divd-2021-00038--log4j-scanner
- Elastic Beat for fetching and shipping Office 365 audit events☆66Updated 4 years ago
- A tool to assess the compliance of a VMware vSphere environment against the CIS Benchmark.☆47Updated 2 years ago
- OpenIOC rules to facilitate hunting for indicators of compromise☆38Updated 2 years ago
- ☆33Updated 2 years ago
- Designed to be installed on a fresh install of raspbian on a raspberry pi, by combining Respounder (Responder detection) and Artillery (p…☆34Updated 5 years ago
- Example tools for detecting software using OpenSSL 3.0.0 - 3.0.6 (vulnerable to latest unnamed vulnerability)☆40Updated 2 years ago
- Splunk Add on for OPNsense firewall☆1Updated last month
- ☆34Updated last year
- ☆15Updated 5 years ago
- Tools and scripts by Arctic Wolf☆68Updated 7 months ago
- Explore the GOAD Active Directory lab in 5 minutes with Adalanche☆35Updated 10 months ago
- Pep up your Windows Event Collector (WEC) for Windows Event Forwarding (WEF)☆19Updated 3 years ago
- A python script to acquire multiple aws ec2 instances in a forensically sound-ish way☆37Updated 3 years ago
- Multi Vagrant environment with Active Directory☆142Updated 6 years ago
- Synthetic Adversarial Log Objects: A Framework for synthentic log generation☆77Updated 10 months ago
- Ansible role for installing Sysmon with popular config files included.☆24Updated last year
- Personal repo for messing with scripts☆25Updated 3 years ago
- Ansible role to detect Log4Shell exploitation attempts☆18Updated 2 years ago
- Ansible modules for the Graylog API☆61Updated 3 years ago
- CrowdStrike's Open Source Policy & Contribution Guide☆39Updated last year
- Threat intelligence and threat detection indicators (IOC, IOA)☆53Updated 3 years ago
- ☆114Updated last year
- Powershell Scripts to work on Crowdstrike Falcon that pull back raw data relevant to forensic investigation☆22Updated 3 months ago
- Ransomware Simulator for Red/Blue teams to test their defences.☆19Updated 2 years ago
- ☆18Updated 7 years ago
- Web based S1 query navigator for one-click threat hunting☆18Updated 3 years ago
- DevSec Windows Patch Baseline - InSpec Profile☆47Updated 3 months ago
- Pushes Sysmon Configs☆89Updated 3 years ago
- ☆17Updated 4 years ago