johnfranolich / Hunting-Scripts
A collection of hunting and blue team scripts. Mostly others, some my own.
☆38Updated last year
Related projects ⓘ
Alternatives and complementary repositories for Hunting-Scripts
- incident response scripts☆18Updated 5 years ago
- Splunk App to assist Sysmon Threat Hunting☆38Updated 7 years ago
- Microsoft GPO Readiness Lateral Movement Detection Tool☆16Updated last year
- This repository was created to aid in the deployment/maintenance of the Sysmon service on a large number of computers.☆82Updated last year
- OSSEM Modular☆27Updated 4 years ago
- A collection of searches, interesting events and tables on Crowdstrike Splunk.☆29Updated 3 years ago
- Purple Team Security☆74Updated 2 years ago
- PSAttck is a light-weight framework for the MITRE ATT&CK Framework.☆38Updated 2 years ago
- Defence Against the Dark Arts☆34Updated 5 years ago
- Collection of scripts and tools that I created to aid in my testing.☆14Updated 2 years ago
- Splunk app for Threat hunting☆15Updated 6 years ago
- ☆19Updated 3 years ago
- PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.☆38Updated 2 years ago
- A collection of useful PowerShell tools to collect, organize, and visualize Sysmon event data☆40Updated 4 years ago
- The project was moved here https://github.com/atomic-threat-coverage/atomic-threat-coverage☆23Updated 5 years ago
- Powershell collection designed to assist in Threat Hunting Windows systems.☆27Updated 6 years ago
- List of PowerShell commands and commandlets that should be in your Powershel watchlist☆38Updated 3 years ago
- Expert Investigation Guides☆50Updated 3 years ago
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆16Updated 3 years ago
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- Information about most important hunts which can be performed by Threat hunters while searching for any adversary/threats inside the orga…☆15Updated 5 years ago
- Automatic Sender Policy Framework Reconnaissance☆18Updated 6 years ago
- ☆28Updated 4 years ago
- ☆29Updated 6 years ago
- Powershell Functions to interact with TheHive-Project☆10Updated 5 years ago
- ☆76Updated 6 years ago
- gundog - guided hunting in Microsoft Defender☆52Updated 3 years ago
- Simple Powershell scripts to collect all Windows Event Logs from a host and parse them into one CSV timeline.☆33Updated 6 years ago
- BloodHound Data Scanner☆43Updated 4 years ago
- Threat Mitigation Strategies☆25Updated last year