ohjeongwook / WindowsEventTools
Collection Of Scripts And Utilities For Windows Event Hunting
☆18Updated 5 years ago
Alternatives and similar repositories for WindowsEventTools:
Users that are interested in WindowsEventTools are comparing it to the libraries listed below
- Do the unexpected with AD GPO processing☆9Updated 5 years ago
- module for certexfil☆15Updated 2 years ago
- Useful Windows and AD tools☆15Updated 3 years ago
- Speaking materials from conferences I've given☆9Updated 2 years ago
- This script will pull and analyze syscalls in given application(s) allowing for easier security research purposes☆21Updated 4 years ago
- A PowerShell script to prevent Sysmon from writing its events☆15Updated 4 years ago
- An AV evasion technique using multibyte xor encoding of shellcode☆8Updated 8 years ago
- Brute Force and Scan WinRm Service☆13Updated 5 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14Updated 4 years ago
- This repo exists as a quick and dirty arsenal of methods and scripts to subvert .NET SSL/TLS certificate validation in PowerShell and pre…☆11Updated 8 years ago
- Automated Payload Test Controller☆9Updated 7 years ago
- Lets you write arbitrary registry entries to Group Policy related .pol files (e.g. registry.pol)☆11Updated 5 years ago
- ☆12Updated 3 years ago
- Light System Examination Toolkit (LISET) - logs & activity & configuration gathering utility that comes handy in fast Windows incident re…☆28Updated 8 years ago
- Frontend to import Nmap Scan in ES, and frontend to make search☆10Updated 10 years ago
- Retrieve the IIS Application Pool Credentials. Relies on the WebAdministration PowerShell Module.☆14Updated 7 years ago
- Local enumeration and exploitation framework.☆18Updated 7 years ago
- Repository of Information sharing on threats and indicators☆12Updated 5 years ago
- A collection of tools adversaries commonly use in an attack.☆14Updated 3 months ago
- Windows SSPI wrapper in prue python☆15Updated last year
- ☆20Updated 4 years ago
- A Canary which fires when uninstalled☆34Updated 4 years ago
- Reddit domain search module for Recon-ng☆10Updated 7 years ago
- A utility to force query DNS over DoH off of CloudFlare API when DNS block is in place☆10Updated 6 years ago
- Windows login backdoor diagnostic tool☆11Updated 7 years ago
- smtp-user-enum.pl ported into a recon-ng module.☆9Updated 10 years ago
- My personal Automated Malware Analysis Sandboxes and Services☆24Updated 7 years ago
- An offensive bash script which tries to find GENERIC privesc vulnerabilities and issues.☆13Updated 7 years ago
- Some Powershell scripts developed during my security consulting work. Hopefully they are useful to you too!☆13Updated 4 years ago