magicsword-io / Magic-SigExplorer
☆13Updated 7 months ago
Alternatives and similar repositories for Magic-SigExplorer:
Users that are interested in Magic-SigExplorer are comparing it to the libraries listed below
- A collection of Tools and Rules for decoding Brute Ratel C4 badgers☆62Updated 2 years ago
- ☆34Updated 2 years ago
- ☆22Updated last year
- ☆33Updated 3 years ago
- ShellSweeping the evil.☆52Updated 10 months ago
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆30Updated 2 years ago
- The repository accompanying the Buer Emulation workshop☆24Updated 3 years ago
- Epimitheus is a tool that uses graphical database Neo4j for Windows Events visualization.☆19Updated 3 years ago
- ☆45Updated last year
- Triaging Windows event logs based on SANS Poster☆39Updated 2 years ago
- pypykatz plugin for volatility3 framework☆40Updated last year
- ☆42Updated 2 years ago
- Repository for LNK stuff☆30Updated 2 years ago
- Pwnage☆16Updated 2 months ago
- ☆18Updated last year
- QuasarRAT analysis tools and research report☆27Updated last year
- Repository of Yara rules created by the Stratosphere team☆26Updated 3 years ago
- Placeholder for my detection repo and misc detection engineering content☆43Updated last year
- Generate YARA rules for OOXML documents.☆38Updated last year
- Collection of generic YARA rules☆16Updated 10 months ago
- A proof-of-concept re-assembler for reverse VNC traffic.☆25Updated last year
- Automatically perform advanced NTLM hash relay attacks☆14Updated 2 years ago
- Threat Mitigation Strategies☆25Updated last year
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆72Updated 3 years ago
- Method of finding interesting domains using keywords + JARMs☆13Updated 2 years ago
- A simple command line program to help defender test their detections for network beacon patterns and domain fronting☆69Updated 3 years ago
- Building ActiveDirectory Lab for practicing various attack vectors used during Red Team engagement.☆36Updated 5 years ago
- A project to replicate the functionality of Noah Powers' ServerSetup script, but with error handling and fixed Namecheap API support.☆34Updated 3 years ago
- LILO based Pulse Secure appliance disk image decryptor☆12Updated last year