logpresso / community
Logpresso Mini and community contents for incident response
☆16Updated 3 years ago
Alternatives and similar repositories for community:
Users that are interested in community are comparing it to the libraries listed below
- Indicators of Normality☆12Updated 2 years ago
- Scans through registry hives outputting entropy values for key/values, dumps binary contents to files...we are looking for those "fileles…☆11Updated 6 years ago
- Evtx Log (xml) Browser☆56Updated last year
- ☆12Updated 3 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆30Updated 4 years ago
- Hunt for SQLite files used by various applications☆10Updated last month
- NTFS Security Descriptor Stream ($Secure:$SDS) parser☆14Updated 2 years ago
- An efficient tool for search files, directories, and alternate data streams directly from NTFS image files.☆24Updated 10 months ago
- Repository containing malware analysis filters for the Windows SysInternals' - Process Monitor tool☆14Updated 4 years ago
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- A set of tools for collecting forensic information☆26Updated 4 years ago
- ☆23Updated last year
- Collection Of Scripts And Utilities For Windows Event Hunting☆17Updated 4 years ago
- Load MISP events into memcached for log enrichment using logstash☆12Updated 4 years ago
- Yara rules written by me, for free use.☆18Updated 3 years ago
- Parser for Sdba memory pool tags☆17Updated 3 years ago
- Simple Windows Event Log Forwarder (SWELF). Its easy to use/simply works Log Forwarder and EVTX Parser. Almost in full release here at ht…☆24Updated last year
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆20Updated 2 years ago
- A repo that contains a recursive dump from the ROOT key of every Windows Registry hive (using KAPE) from a vanilla (clean) install of eve…☆45Updated last year
- ESXi Cyber Security Incident Response Script☆22Updated 4 months ago
- Specific guidance and configuration scripts based on Microsoft-recommended security configuration baselines for Windows.☆11Updated 4 years ago
- ☆32Updated 2 years ago
- ☆9Updated 5 years ago
- ☆14Updated 9 months ago
- A repository containing the research output from my GCFE Gold Paper which compared Windows 10 and Windows 11.☆26Updated 2 years ago
- Parser for Windows PowerShell script block logs☆13Updated 3 weeks ago
- Cmdlets for capturing Windows Events☆13Updated 2 years ago
- ☆15Updated 3 years ago
- ☆47Updated 5 years ago
- Links to malware-related YARA rules☆14Updated 2 years ago