freeload101 / CrowdStrike_RTR_Powershell_Scripts
☆67Updated 10 months ago
Alternatives and similar repositories for CrowdStrike_RTR_Powershell_Scripts:
Users that are interested in CrowdStrike_RTR_Powershell_Scripts are comparing it to the libraries listed below
- Repository of SentinelOne Deep Visibility queries.☆120Updated 3 years ago
- ☆53Updated last year
- BulkStrike enables the usage of CrowdStrike Real Time Response (RTR) to bulk execute commands on multiple machines.☆41Updated 2 years ago
- ☆26Updated 3 years ago
- ☆70Updated 2 months ago
- A PowerShell incident response script for quick triage☆78Updated 2 years ago
- Provides an advanced input.conf file for Windows and 3rd party related software with more than 70 different event log mapped to the MITRE…☆90Updated 3 months ago
- Collection of PowerShell functinos and scripts a Blue Teamer might use☆83Updated last year
- Real-time Response scripts and schema☆107Updated last year
- Conference presentations☆47Updated last year
- Notes on responding to security breaches relating to Azure AD☆97Updated 2 years ago
- ☆40Updated last year
- Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.☆110Updated last year
- MISP to Sentinel integration☆62Updated last month
- SentinelOne STAR Rules☆52Updated last year
- RRR (Rapid Response Reporting) is a collection of Incident Response Report objects. They are designed to help incident responders provid…☆36Updated 2 years ago
- ☆82Updated last week
- Microsoft Threat Protection Advance Hunting Cheat Sheet☆78Updated 4 years ago
- ☆14Updated 3 months ago
- A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon☆195Updated 4 years ago
- ☆4Updated 2 months ago
- A series of PowerShell scripts to automate collection of forensic artefacts in most Incident Response environments☆64Updated 2 years ago
- Full of public notes and Utilities☆94Updated last month
- 2021 SANS DFIR Summit: Greppin' Logs☆21Updated 3 years ago
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆128Updated 2 years ago
- ☆42Updated 2 years ago