A collection of hunting and blue team scripts. Mostly others, some my own.
☆38Jan 8, 2023Updated 3 years ago
Alternatives and similar repositories for Hunting-Scripts
Users that are interested in Hunting-Scripts are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- irCRpull is a PowerShell script utilized to pull several system artifacts, utilizing the free tool CrowdResponse, from a live Win7+ syste…☆14Mar 25, 2015Updated 11 years ago
- PoC for CVE-2020-1015☆40May 16, 2020Updated 6 years ago
- An IOC framework written in PowerShell☆19Jan 3, 2017Updated 9 years ago
- Powershell Threat Hunting Module☆293Sep 21, 2016Updated 10 years ago
- PowerShell script useful for Incident Response and security/configuration baselines for Windows Vista and later☆20Jul 29, 2026Updated last month
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- To parse ugly Microsoft DNS Logs....☆41Jun 8, 2018Updated 8 years ago
- Oriana is a threat hunting tool that leverages a subset of Windows events to build relationships, calculate totals and run analytics. The…☆174Jun 10, 2021Updated 5 years ago
- ☆13Apr 8, 2022Updated 4 years ago
- The offical exploit for Pandora v7.0NG Post-auth Remote Code Execution CVE-2019-20224☆14Jan 10, 2020Updated 6 years ago
- A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.☆483Nov 15, 2024Updated last year
- Public Repository created for Fusao Tanida - CORPIT-4984☆15Jan 23, 2020Updated 6 years ago
- Powershell collection designed to assist in Threat Hunting Windows systems.☆27Apr 13, 2018Updated 8 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆33Oct 7, 2020Updated 5 years ago
- Invoke-LiveResponse☆150Feb 22, 2022Updated 4 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- An assortment of general guides I've currated for general teaching purposes focusing on red / blue team methodologies and tasks.☆13Feb 3, 2018Updated 8 years ago
- A pure PowerShell/ .NET DFIR capability that dumps the Windows SRUM (System Resource Usage Monitor) database to CSVs for analysis.☆14Oct 21, 2021Updated 4 years ago
- PowerShell script utilized to pull several forensic artifacts from a live Win7 and WinXP system without WINRM.☆53Jan 25, 2018Updated 8 years ago
- Threat Hunting with ELK Workshop (InfoSecWorld 2017)☆65Oct 31, 2017Updated 8 years ago
- Lokix Platform is a free open-source solution to help blue teams and threat hunters use Loki Scanner to sweep enterprise networks☆25Aug 8, 2020Updated 6 years ago
- Blue Team Scripts☆254Jun 20, 2019Updated 7 years ago
- Scripts that are suited for blue teams☆33Mar 17, 2016Updated 10 years ago
- Windows Installer Bypass using Rollback Script .rbs and .rbf - Race Condition☆22May 24, 2019Updated 7 years ago
- A VBA implementation of the RunPE technique or how to bypass application whitelisting.☆14Dec 30, 2018Updated 7 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Best practices in threat intelligence☆49Nov 6, 2022Updated 3 years ago
- ☆47Jan 15, 2016Updated 10 years ago
- POC code to crash Windows Event Logger Service☆27Oct 16, 2020Updated 5 years ago
- Tools, techniques, cheat sheets, and other resources to assist those defending organizations and detecting adversaries☆465Feb 4, 2022Updated 4 years ago
- MS Entra ID Protection Guidance☆22Apr 2, 2024Updated 2 years ago
- Copy-on-write fork()-like memory dump using Process Snapshotting APIs☆13Jul 23, 2017Updated 9 years ago
- Docker Pentest Lists are collection of Dockerfiles or Links to Dockerfiles for containers used in Penetration Tests☆21May 1, 2017Updated 9 years ago
- Force-Directed Graph Generator for Volatility Ouputs☆26Mar 3, 2019Updated 7 years ago
- Resources and materials for DEF CON 2018 Packet Hunting Workshop☆80Aug 12, 2018Updated 8 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆16Apr 14, 2020Updated 6 years ago
- Export MISP attributes in Yara☆12Sep 15, 2017Updated 9 years ago
- Removes duplicate entries from a file, resulting in only unique parameter combinations. Useful for parsing waybackurls and making recon m…☆12May 31, 2020Updated 6 years ago
- Very loud vBulletin exploit☆14Aug 12, 2020Updated 6 years ago
- Blackcert monitors Certificate Transparency Logs for a keyword. Blackcert collects any certificate changes for this keyword and also chec…☆10Dec 8, 2022Updated 3 years ago
- VirusTotal SIEM Integration and Automation☆18Jan 16, 2017Updated 9 years ago
- Wireless Forensics Framework In Python☆21Jan 29, 2017Updated 9 years ago