justintime / hibp-audit
HIBP Audit - Audit Active Directory user accounts against HIBP
☆15Updated 3 years ago
Alternatives and similar repositories for hibp-audit:
Users that are interested in hibp-audit are comparing it to the libraries listed below
- ☆41Updated 2 years ago
- Presentations☆17Updated 2 years ago
- Pushes Sysmon Configs☆88Updated 3 years ago
- Microsoft GPO Readiness Lateral Movement Detection Tool☆16Updated 2 years ago
- Builds a hashmap of AD NTLM hashes/usernames and iterates through a second list of hashes checking for the existence of each entry in the…☆77Updated 4 years ago
- gundog - guided hunting in Microsoft Defender☆52Updated 4 years ago
- Enumerate Microsoft 365 Groups in a tenant with their metadata☆53Updated 4 years ago
- This repository was created to aid in the deployment/maintenance of the Sysmon service on a large number of computers.☆82Updated 2 years ago
- Automatic Sender Policy Framework Reconnaissance☆19Updated 6 years ago
- Audix is a PowerShell tool to quickly configure the Windows Event Audit Policies for security monitoring☆117Updated 5 years ago
- ☆62Updated 3 years ago
- Defence Against the Dark Arts☆34Updated 5 years ago
- A collection of searches, interesting events and tables on Crowdstrike Splunk.☆29Updated 4 years ago
- ☆20Updated 4 years ago
- Community Tasks/Plans for PlumHound Queueing☆23Updated 2 years ago
- FOR508 Index - GCFA☆20Updated 6 years ago
- Ingesting Shodan Monitor Alerts to Microsoft Sentinel☆34Updated last year
- Find accounts using common and default passwords in Active Directory.☆68Updated 5 years ago
- A collection of hunting and blue team scripts. Mostly others, some my own.☆38Updated 2 years ago
- My conference presentations☆66Updated last year
- Useful access control entries (ACE) on system access control list (SACL) of securable objects to find potential adversarial activity☆90Updated 3 years ago
- ☆113Updated 5 years ago
- Powershell - web traffic whitenoise generator☆47Updated 4 years ago
- Cypher for Defenders: Leveraging Bloodhound Data Beyond the UI☆25Updated last year
- incident response scripts☆19Updated 6 years ago
- This script validates the most common Conditional Access policies in Microsoft 365.☆9Updated 11 months ago
- A WDAC configuration repository with the sole intention of enriching MDE☆28Updated 2 years ago
- A tool for auditing network shares in an Active Directory environment☆42Updated 6 years ago
- Helps with finding and registering categorized domains☆67Updated 4 years ago
- ☆47Updated 3 weeks ago