logpresso / community
Logpresso Mini and community contents for incident response
☆16Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for community
- ☆12Updated 3 years ago
- A Microsoft Windows service to provide telemetry on Windows executable memory page changes to facilitate threat detection☆28Updated 4 years ago
- Analytics for Accounting logs from Network devices☆16Updated 3 years ago
- Tweettioc Splunk App☆20Updated 4 years ago
- ☆31Updated 2 years ago
- Specific guidance and configuration scripts based on Microsoft-recommended security configuration baselines for Windows.☆11Updated 4 years ago
- A Canary which fires when uninstalled☆34Updated 3 years ago
- ☆11Updated 3 years ago
- Notebooks created to attack and secure Active Directory environments☆27Updated 5 years ago
- Takes the original idea of NetCease and adds functionality☆24Updated 2 years ago
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆51Updated last year
- Some portable tools, some YARA, some Python, and a little bit of love. Not all of these tools can be used in incident response. Use PEs…☆33Updated 11 months ago
- Invoke-Decoder – A PowerShell script to decode/deobfuscate malware samples☆20Updated 4 years ago
- Trace ScriptBlock execution for powershell v2☆39Updated 4 years ago
- Old home of LimaCharlie, open source EDR☆28Updated last year
- Links to malware-related YARA rules☆14Updated 2 years ago
- A set of tools for collecting forensic information☆26Updated 4 years ago
- ☆14Updated 7 months ago
- Indicators of Normality☆12Updated 2 years ago
- Python emulator for Excel XLM macros.☆18Updated 4 years ago
- ☆14Updated 2 years ago
- Using Microsoft 365 App Passwords for persistence☆23Updated 4 years ago
- Cybersecurity Incidents Mind Maps☆32Updated 3 years ago
- Collection Of Scripts And Utilities For Windows Event Hunting☆16Updated 4 years ago
- Generate YARA rules for OOXML documents.☆37Updated last year
- This is a repository for the public blog with Labs indicators of compromise and code☆18Updated 4 years ago
- Cmdlets for capturing Windows Events☆13Updated 2 years ago
- Surface Analysis System on Cloud☆19Updated 11 months ago