nsacyber / PRUNE
Logs key Windows process performance metrics. #nsacyber
☆66Updated 2 years ago
Alternatives and similar repositories for PRUNE
Users that are interested in PRUNE are comparing it to the libraries listed below
Sorting:
- Aids in discovering HTTP and HTTPS connectivity issues. #nsacyber☆109Updated 4 years ago
- Configuration guidance for implementing BitLocker. #nsacyber☆120Updated 5 years ago
- Guidance for blocking outdated web technologies. #nsacyber☆57Updated 3 years ago
- Converts serial IP data, typically collected from Industrial Control System devices, to the more commonly used Packet Capture (PCAP) form…☆75Updated 7 years ago
- Automatically scores how well Windows systems have implemented some of the top 10 Information Assurance mitigation strategies. #nsacyber☆76Updated 8 years ago
- Configuration guidance for implementing application whitelisting with AppLocker. #nsacyber☆214Updated 2 months ago
- Detects Windows and Linux systems with enabled Trusted Platform Modules (TPM) vulnerable to CVE-2017-15361. #nsacyber☆55Updated 6 years ago
- A prototype that demonstrates a method for scoring how well Windows systems have implemented some of the top 10 Information Assurance mit…☆99Updated 8 years ago
- Just random powershell things I've put together.☆38Updated last week
- Search a filesystem for indicators of compromise (IoC).☆71Updated 3 months ago
- Identifies unexpected and prohibited certificate authority certificates on Windows systems. #nsacyber☆113Updated 8 years ago
- Identifies defensive gaps in security posture by leveraging Mitre's ATT&CK framework. #nsacyber☆163Updated 5 years ago
- ☆54Updated 3 years ago
- Registry Explorer bookmark definitions☆42Updated 4 months ago
- PowerShell Script for Agentless Incident Response☆25Updated 7 years ago
- A few scripts I put together for testing purposes and to automate a few capabilities while doing IR. These scripts are also part of my bl…☆54Updated 7 years ago
- This repository is created to add value to existing Network Security Monitoring solutions.☆42Updated 8 years ago
- ☆77Updated 5 years ago
- Configuration guidance for implementing Pass-the-Hash mitigations. #nsacyber☆199Updated 8 years ago
- Powering Up Incident Response with Power-Response☆63Updated 5 years ago
- Invoke-LiveResponse☆147Updated 3 years ago
- Expert Investigation Guides☆51Updated 4 years ago
- ☆30Updated 8 years ago
- Report Generation from the Carbon Black REST API☆15Updated 3 years ago
- Documentation for Zeek☆50Updated this week
- Azure Sentinel Template parser☆16Updated 4 years ago
- PowerShell Module for automating Tenable Nessus Vulnerability Scanner.☆88Updated 2 years ago
- This repository was created to aid in the deployment/maintenance of the Sysmon service on a large number of computers.☆82Updated 2 years ago
- Submits multiple domains to VirusTotal API☆60Updated 3 years ago
- Supporting files for the Chinese State-Sponsored Cyber Operations: Observed TTPs Cybersecurity Advisory. #nsacyber☆43Updated 3 years ago