joeavanzato / ThreatSimLinks
Threat Simulator for Enterprise Networks
☆14Updated 3 years ago
Alternatives and similar repositories for ThreatSim
Users that are interested in ThreatSim are comparing it to the libraries listed below
Sorting:
- Provides an advanced baseline to implement a secure Windows auditing strategy on Windows OS.☆57Updated 6 months ago
- Domain Response is a tool that is designed to help you automate the investigation for a domain. This tool is specificly designed to autom…☆49Updated 3 months ago
- VTC - Velociraptor Timeline Creator☆19Updated last year
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆36Updated 2 years ago
- Repo for Automations and other solutions for Elastic SIEM/Security.☆18Updated 4 years ago
- ☆75Updated last year
- MS Graph Commands and Tools for Blue Teamers☆52Updated 2 years ago
- Collection of Remote Management Monitoring tool artifacts, for assisting forensics and investigations☆101Updated 3 months ago
- PowerHunt is a modular threat hunting framework written in PowerShell that leverages PowerShell Remoting for data collection on scale.☆71Updated last year
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆66Updated 3 years ago
- Explore the GOAD Active Directory lab in 5 minutes with Adalanche☆41Updated 11 months ago
- Sigma detection rules for hunting with the threathunting-keywords project☆57Updated 9 months ago
- ☆47Updated last month
- Powershell script to build active directory forest and populate AD with random AD objects including AD users objects, computers objects, …☆39Updated 3 years ago
- The Eventlog Compendium is the go-to resource for understanding Windows Event Logs.☆50Updated 7 months ago
- ☆43Updated 4 years ago
- ASR Configurator, Essentials and Atomic Testing☆99Updated 7 months ago
- ☆61Updated 2 years ago
- Azure AD Incident Response☆26Updated 4 years ago
- A quick and easy PowerShell script to collect a packet trace with option to convert .etl to .pcap.☆39Updated 3 years ago
- Specific guidance and configuration scripts based on Microsoft-recommended security configuration baselines for Windows.☆14Updated 5 years ago
- REST server that can analyze Kusto KQL queries against the Sentinel and Microsoft 365 Defender schemas.☆44Updated 2 months ago
- ☆42Updated 2 years ago
- ☆41Updated 2 years ago
- Open-source Fabric templates for cybersecurity and compliance☆27Updated 11 months ago
- Powershell Scripts to work on Crowdstrike Falcon that pull back raw data relevant to forensic investigation☆23Updated 11 months ago
- Your Browser-based EVTX Companion☆89Updated this week
- ☆79Updated 3 weeks ago
- This project aims to bridge the gap between Microsoft Attack Surface Reduction (ASR) rules and MITRE ATT&CK by mapping ASR rules to their…☆28Updated last year
- Hunting Queries for Microsoft Defender Security Center https://docs.microsoft.com/en-us/windows/security/threat-protection/microsoft-defe…☆39Updated 4 years ago