iknowjason / Velociraptor_AzureView external linksLinks
A collection of Terraform and Ansible scripts that automatically (and quickly) deploys a small Velociraptor R&D lab.
☆22Apr 16, 2021Updated 4 years ago
Alternatives and similar repositories for Velociraptor_Azure
Users that are interested in Velociraptor_Azure are comparing it to the libraries listed below
Sorting:
- Publicly shareable windows event log message data☆28Nov 29, 2019Updated 6 years ago
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆145Nov 2, 2022Updated 3 years ago
- Hunt the windows Registry automatically using VQL☆13Jan 6, 2026Updated last month
- Transform EQL detection rules to VQL artifacts☆12Nov 12, 2021Updated 4 years ago
- Netwitness Maltego integration Project☆18May 9, 2017Updated 8 years ago
- Auxiliary scripts for Incident Response with ELK☆11Oct 7, 2015Updated 10 years ago
- Python for Penetration Testers, published by Packt☆14Jan 30, 2023Updated 3 years ago
- Documentation site for Velociraptor☆61Updated this week
- Web interface for monitoring and interacting with Netflow data stored in Silk repositories.☆13Mar 24, 2019Updated 6 years ago
- ☆12Nov 3, 2020Updated 5 years ago
- Python Forensic and Log Analysis GUI☆27Dec 22, 2014Updated 11 years ago
- Golang parser for OLE files☆33Dec 4, 2025Updated 2 months ago
- Tools for attacking various MIFARE RFID cards☆16Jun 21, 2019Updated 6 years ago
- Quick script to build host or investigation timelines using Carbon Black Response☆12Sep 25, 2018Updated 7 years ago
- Matt's DFIR blog☆14Jul 28, 2025Updated 6 months ago
- ☆12Dec 7, 2022Updated 3 years ago
- Parses for Google Analytic values in raw files like RAM, DD images etc.☆18Apr 17, 2016Updated 9 years ago
- Create Password lists for cracking lyrical passwords☆17May 11, 2024Updated last year
- Forensic cheatsheets for use with cheat☆15Dec 2, 2021Updated 4 years ago
- Just Another broken Registry Parser (JARP)☆16May 23, 2024Updated last year
- Parser for Sdba memory pool tags☆21Jul 16, 2021Updated 4 years ago
- ☆14Oct 24, 2024Updated last year
- ☆21Apr 16, 2023Updated 2 years ago
- A library implementing a generic SQL like query language.☆21Sep 15, 2025Updated 5 months ago
- VMDK Forensic Artifact Extractor (VFAE) is windows based tool written in C++ that extracts files with a known location from VMDK images r…☆17Aug 7, 2015Updated 10 years ago
- Carve $MFT records from a chunk of data (for instance a memory dump)☆16Aug 21, 2016Updated 9 years ago
- Convert TI SmartRF Bluetooth Low Energy Packet Captures to Libpcap Format☆18Dec 11, 2014Updated 11 years ago
- Turn Ducky Scripts into QMK ready SEND_STRING() macros☆19Nov 14, 2019Updated 6 years ago
- Library of threat hunts to get any user started!☆48Sep 4, 2020Updated 5 years ago
- Parses Java Cache IDX files☆40Feb 28, 2018Updated 7 years ago
- An example of a mis-configured Rails application release under MIT license.☆21Jan 19, 2023Updated 3 years ago
- Cloud Templates and scripts to deploy mordor environments☆129Mar 3, 2021Updated 4 years ago
- Placeholder for my detection repo and misc detection engineering content☆42Oct 20, 2023Updated 2 years ago
- PyVelociraptor contains the python bindings for the Velociraptor API.☆21Updated this week
- The CyberCX Digger project is designed to help Australian organisations determine if they have been impacted by certain high profile cybe…☆43Sep 17, 2020Updated 5 years ago
- Various DFIR Tools☆27Jul 23, 2018Updated 7 years ago
- Automated threat intelligence collection with McAfee ATD, OpenDXL and MISP☆22Feb 21, 2020Updated 5 years ago
- Parse IE, FireFox, Chrome and Safari Cookies for Google Analytic values☆23Sep 3, 2016Updated 9 years ago
- Generate a histogram of TCP and UDP payload bytes from a pcap file☆24Aug 1, 2022Updated 3 years ago