Defence Against the Dark Arts
☆34Sep 15, 2019Updated 6 years ago
Alternatives and similar repositories for defensive-scripts
Users that are interested in defensive-scripts are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A collection of Splunk dashboard templates.☆16Apr 18, 2019Updated 7 years ago
- ☆12Dec 16, 2016Updated 9 years ago
- Netwitness Maltego integration Project☆18May 9, 2017Updated 9 years ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆24Jul 9, 2021Updated 4 years ago
- Splunk code (SPL) for serious threat hunters and detection engineers.☆293Jan 15, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- a port made of honey for blocking people☆13Jun 24, 2020Updated 6 years ago
- A PoC backdoor that uses Gmail as a C&C server☆13Jun 28, 2020Updated 6 years ago
- VMDK Forensic Artifact Extractor (VFAE) is windows based tool written in C++ that extracts files with a known location from VMDK images r…☆17Aug 7, 2015Updated 10 years ago
- Collection of Splunking Tools, SPL Code and Resources☆16Jan 30, 2025Updated last year
- Cowrie SSH/Telnet Honeypot http://cowrie.readthedocs.io☆13Jun 25, 2020Updated 6 years ago
- Disk Image Mounting Script☆11Jan 22, 2026Updated 5 months ago
- Cobalt Strike/C2 Servers☆13Apr 22, 2021Updated 5 years ago
- Threat Simulator for Enterprise Networks☆14May 14, 2022Updated 4 years ago
- A collection of Terraform and Ansible scripts that automatically (and quickly) deploys a small Velociraptor R&D lab.☆22Apr 16, 2021Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆17Sep 4, 2021Updated 4 years ago
- Basic file metadata gathering script☆21Apr 16, 2025Updated last year
- PyVelociraptor contains the python bindings for the Velociraptor API.☆23May 5, 2026Updated last month
- ☆20Nov 22, 2016Updated 9 years ago
- ☆115Jan 31, 2024Updated 2 years ago
- Registry timestamp manipulation☆17Feb 26, 2014Updated 12 years ago
- Repo containing docker-compose files and setup scripts without having to clone the individual reternal components☆111Mar 25, 2021Updated 5 years ago
- Carve $MFT records from a chunk of data (for instance a memory dump)☆16Aug 21, 2016Updated 9 years ago
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆48Jan 2, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise☆69Updated this week
- Proof of concept incident response demo using SSM and AWS Fargate.☆15Dec 5, 2019Updated 6 years ago
- Automate SSH communication with firewalls, switches, etc.☆28Mar 29, 2018Updated 8 years ago
- Command line $MFT record decoder☆12May 20, 2017Updated 9 years ago
- The Stamus Networks App for Splunk allows Splunk Enterprise users to extract information and insights from both the Stamus Security Plat…☆13Jan 7, 2026Updated 5 months ago
- $MFT parser (from live systems or a copy of the $MFT) and raw file copy utility☆38Jul 18, 2024Updated last year
- Invoke-LiveResponse☆152Feb 22, 2022Updated 4 years ago
- List of Red Team Resources☆18Jun 16, 2020Updated 6 years ago
- Discover MSSQL Instances via UDP Scanning☆25Dec 17, 2018Updated 7 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Information about the open-source-dfir slack community☆29Jun 17, 2023Updated 3 years ago
- This repository was created to aid in the deployment/maintenance of the Sysmon service on a large number of computers.☆83Mar 20, 2023Updated 3 years ago
- Artifact collection tool for *nix systems☆219Mar 20, 2024Updated 2 years ago
- Run Velociraptor on Security Onion☆41Jul 27, 2022Updated 3 years ago
- Stand-alone parser for User Access Logging from Server 2012 and newer systems☆80Jan 9, 2024Updated 2 years ago
- A Catalog of Application Whitelisting Bypass Techniques☆32Nov 11, 2014Updated 11 years ago
- Yara scan Phishing Kit's Zip archive(s)☆62Jun 20, 2025Updated last year