mamun-sec / dfirtLinks
Collect information of Windows PC when doing incident response
☆253Updated 2 years ago
Alternatives and similar repositories for dfirt
Users that are interested in dfirt are comparing it to the libraries listed below
Sorting:
- Course repository for PowerShell for Pentesters Course☆432Updated 3 years ago
- Collection of tools that reflect the network dimension into Bloodhound's data☆447Updated 2 years ago
- Uses Sharphound, Bloodhound and Neo4j to produce an actionable list of attack paths for targeted remediation.☆465Updated 10 months ago
- ☆772Updated last week
- A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365☆786Updated 2 years ago
- MAL-CL (Malicious Command-Line)☆313Updated 2 years ago
- Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detection…☆852Updated 3 years ago
- #ThreatHunting #DFIR #Malware #Detection Mind Maps☆297Updated 3 years ago
- WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)☆783Updated 2 years ago
- A repository of DFIR-related Mind Maps geared towards the visual learners!☆525Updated 2 years ago
- CVE-2021-1675 Detection Info☆216Updated 2 years ago
- Collection of Event ID ressources useful for Digital Forensics and Incident Response☆616Updated 11 months ago
- Collection of PowerShell functions a Red Teamer may use in an engagement☆525Updated last year
- Ransomware simulation script written in PowerShell. Useful for testing your defenses and backups against real ransomware-like activity in…☆226Updated 7 months ago
- Ransomware simulator written in Golang☆439Updated 2 years ago
- An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.☆313Updated 3 weeks ago
- ☆226Updated 2 years ago
- Purple Teaming Attack & Hunt Lab - Terraform☆159Updated 3 years ago
- An introduction to Active Directory security☆647Updated 2 years ago
- PowerShell Ransomware Simulator with C2 Server☆486Updated last year
- SMBeagle - Fileshare auditing tool.☆713Updated 4 months ago
- Pwnspoof repository☆261Updated last year
- Quietly enumerate an Active Directory Domain via LDAP parsing users, admins, groups, etc.☆491Updated 2 years ago
- Blue Team detection lab created with Terraform and Ansible in Azure.☆158Updated 6 months ago
- A list of my personal projects☆177Updated 2 years ago
- An Office365 User Attack Tool☆636Updated last year
- A suite of Tools to aid Incidence Response and Live Forensics for - Windows (Powershell) | Linux (Bash) | MacOS (Shell)☆581Updated 8 months ago
- PowerShell module for Office 365 and Azure log collection☆266Updated 2 months ago
- Sysmon EDR POC Build within Powershell to prove ability.☆224Updated 4 years ago
- ☆614Updated 2 years ago