optiv / Yara-Rules
☆9Updated 4 years ago
Alternatives and similar repositories for Yara-Rules:
Users that are interested in Yara-Rules are comparing it to the libraries listed below
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆30Updated 2 years ago
- Building ActiveDirectory Lab for practicing various attack vectors used during Red Team engagement.☆36Updated 5 years ago
- Threat Mitigation Strategies☆25Updated last year
- Scripts to automate standing up apache2 with mod_rewrite in front of C2 servers.☆47Updated 4 years ago
- Active DIrectory Lab for Pentesting Practice☆24Updated 2 years ago
- Hundred Days of Yara Challenge☆12Updated 2 years ago
- A pair of scripts to import session and local group information that has been collected from alternate data sources into BloodHound's Neo…☆19Updated 2 years ago
- Python Script for SAML2 Authentication Passwordspray☆39Updated last year
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆17Updated 3 years ago
- BloodHound Data Scanner☆45Updated 4 years ago
- BloodHound Cypher Queries Ported to a Jupyter Notebook☆53Updated 4 years ago
- Searching .evtx logs for remote connections☆23Updated last year
- Extracts Azure authentication tokens from PowerShell process minidumps.☆23Updated last year
- Automatically perform advanced NTLM hash relay attacks☆14Updated 2 years ago
- The project is called GreatSCT (Great Scott). GreatSCT is an open source project to generate application white list bypasses. This tool i…☆30Updated 7 years ago
- Malleable C2 is a domain specific language to redefine indicators in Beacon's communication. This repository is a collection of Malleable…☆17Updated 3 years ago
- Ansible Cobalt Strike (Docker)☆15Updated 3 years ago
- A PowerShell script that checks for dangerous ACLs on system hives and shadows☆28Updated 3 years ago
- Reproducible and extensible BloodHound playbooks☆43Updated 5 years ago
- ☆10Updated 2 years ago
- A mini project to exfiltrate data via QR codes☆19Updated 3 weeks ago
- Triaging Windows event logs based on SANS Poster☆39Updated 2 years ago
- Repository for LNK stuff☆30Updated 2 years ago
- ☆38Updated 3 years ago
- Parses Nessus .nessus files for exploitable vulnerabilities and outputs a report file in format MM-DD-YYYY-nessus.csv☆39Updated last year
- Continuous kerberoast monitor☆45Updated last year
- BloodCheck enables Red and Blue Teams to manage multiple Neo4j databases and run Cypher queries against a BloodHound dataset.☆17Updated 3 years ago
- Log converter from CS log to Ghostwriter CSV☆30Updated 4 years ago
- Service Enumeration C# .NET Assembly☆58Updated 3 years ago