A collection of hunting and blue team scripts. Mostly others, some my own.
☆38Jan 8, 2023Updated 3 years ago
Alternatives and similar repositories for Hunting-Scripts
Users that are interested in Hunting-Scripts are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- irCRpull is a PowerShell script utilized to pull several system artifacts, utilizing the free tool CrowdResponse, from a live Win7+ syste…☆14Mar 25, 2015Updated 11 years ago
- ☆53May 21, 2018Updated 8 years ago
- Blue Team Powershell Script☆18Nov 22, 2021Updated 4 years ago
- PoC for CVE-2020-1015☆40May 16, 2020Updated 6 years ago
- An IOC framework written in PowerShell☆19Jan 3, 2017Updated 9 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Powershell Threat Hunting Module☆293Sep 21, 2016Updated 9 years ago
- PowerShell script useful for Incident Response and security/configuration baselines for Windows Vista and later☆20Jul 29, 2026Updated last month
- Automated forensics written in PowerShell☆34Sep 29, 2019Updated 6 years ago
- To parse ugly Microsoft DNS Logs....☆41Jun 8, 2018Updated 8 years ago
- Oriana is a threat hunting tool that leverages a subset of Windows events to build relationships, calculate totals and run analytics. The…☆174Jun 10, 2021Updated 5 years ago
- The offical exploit for Pandora v7.0NG Post-auth Remote Code Execution CVE-2019-20224☆14Jan 10, 2020Updated 6 years ago
- A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.☆483Nov 15, 2024Updated last year
- Public Repository created for Fusao Tanida - CORPIT-4984☆15Jan 23, 2020Updated 6 years ago
- ☆33Nov 21, 2024Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Invoke-LiveResponse☆150Feb 22, 2022Updated 4 years ago
- Monitoring tool for PasteBin-alike sites written in Python. Inspired by pastemon http://github.com/xme/pastemon☆44Jan 31, 2021Updated 5 years ago
- An assortment of general guides I've currated for general teaching purposes focusing on red / blue team methodologies and tasks.☆13Feb 3, 2018Updated 8 years ago
- ☆10Feb 3, 2021Updated 5 years ago
- A pure PowerShell/ .NET DFIR capability that dumps the Windows SRUM (System Resource Usage Monitor) database to CSVs for analysis.☆14Oct 21, 2021Updated 4 years ago
- PowerShell script utilized to pull several forensic artifacts from a live Win7 and WinXP system without WINRM.☆53Jan 25, 2018Updated 8 years ago
- A collection of dashboards, templates, API's and Power BI code for vulnerability management and analysis☆23Feb 2, 2025Updated last year
- Threat Hunting with ELK Workshop (InfoSecWorld 2017)☆65Oct 31, 2017Updated 8 years ago
- Lokix Platform is a free open-source solution to help blue teams and threat hunters use Loki Scanner to sweep enterprise networks☆25Aug 8, 2020Updated 6 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Blue Team Scripts☆254Jun 20, 2019Updated 7 years ago
- Scripts that are suited for blue teams☆33Mar 17, 2016Updated 10 years ago
- Windows Installer Bypass using Rollback Script .rbs and .rbf - Race Condition☆22May 24, 2019Updated 7 years ago
- A VBA implementation of the RunPE technique or how to bypass application whitelisting.☆14Dec 30, 2018Updated 7 years ago
- Best practices in threat intelligence☆50Nov 6, 2022Updated 3 years ago
- ☆47Jan 15, 2016Updated 10 years ago
- POC code to crash Windows Event Logger Service☆27Oct 16, 2020Updated 5 years ago
- MS Entra ID Protection Guidance☆22Apr 2, 2024Updated 2 years ago
- Tools, techniques, cheat sheets, and other resources to assist those defending organizations and detecting adversaries☆465Feb 4, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Copy-on-write fork()-like memory dump using Process Snapshotting APIs☆13Jul 23, 2017Updated 9 years ago
- Docker Pentest Lists are collection of Dockerfiles or Links to Dockerfiles for containers used in Penetration Tests☆21May 1, 2017Updated 9 years ago
- Resources and materials for DEF CON 2018 Packet Hunting Workshop☆80Aug 12, 2018Updated 8 years ago
- Golang implementation of PyMISP-feedgenerator☆18Jul 31, 2022Updated 4 years ago
- ☆16Apr 14, 2020Updated 6 years ago
- Artefacts from various retefe campaigns☆10Mar 9, 2019Updated 7 years ago
- Export MISP attributes in Yara☆12Sep 15, 2017Updated 8 years ago