☆17Aug 27, 2022Updated 3 years ago
Alternatives and similar repositories for blue_team_con
Users that are interested in blue_team_con are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A preconfigured Windows-based system designed for rapid forensic investigations in both Azure and AWS.☆39Mar 25, 2024Updated 2 years ago
- Azure AD Incident Response☆28Oct 8, 2021Updated 4 years ago
- The Intelligent Process Lifecycle of Active Cyber Defenders☆34Jan 1, 2023Updated 3 years ago
- Windows Syslog Command Line Client☆16Nov 21, 2012Updated 13 years ago
- MSTIC Notebook Components☆35Sep 4, 2025Updated 9 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- This provides a guided step by step walkthrough for threat modeling with MITRE ATT&CK Framework☆30Jan 7, 2026Updated 5 months ago
- Export Microsoft Sentinel artifacts like Analytical Rules, Hunting Queries, Workbooks in order to support new feature Repositories CI/CD …☆60Sep 15, 2022Updated 3 years ago
- Fetching data from system☆11Jun 18, 2017Updated 9 years ago
- A community event for security researchers to share their favorite notebooks☆108Feb 15, 2024Updated 2 years ago
- Collection of scripts/resources/ideas for attack surface reduction and additional logging to enable better threat hunting on Windows endp…☆38Apr 5, 2024Updated 2 years ago
- Elastic version of SOC prime watcher rules☆30Oct 14, 2024Updated last year
- ☆34Jun 13, 2023Updated 3 years ago
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆210Jul 21, 2022Updated 3 years ago
- File indexer with semantic search, hybrid retrieval, and multi-step reasoning agents☆21Jan 17, 2026Updated 5 months ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- A collection of Scripts which disable / remove Windows 10 Features and Apps☆14Jun 8, 2025Updated last year
- Repo with supporting material for the talk titled "Cracking the Beacon: Automating the extraction of implant configurations"☆11Feb 6, 2025Updated last year
- Recordization library☆11Jun 10, 2026Updated 3 weeks ago
- A series of PowerShell scripts to automate collection of forensic artefacts in most Incident Response environments☆65Jan 31, 2022Updated 4 years ago
- An alarm callback plugin for executing a script on Graylog2's server.☆11Apr 23, 2016Updated 10 years ago
- Various commands, tools, techniques that you can use to examine live Windows systems for signs of Compromise or for Threat Hunting.Can al…☆15May 30, 2026Updated last month
- ☆54May 14, 2024Updated 2 years ago
- Windows log and threat hunting with powershell☆16Dec 11, 2020Updated 5 years ago
- Unofficial. Splunk MCP server. Implemented in Python and TypeScript/JS. Runs searches, queries Splunk, and outputs data as JSON, CSV, or …☆33Jun 16, 2025Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Repository of Volatility3 plugins☆23Mar 22, 2023Updated 3 years ago
- Automated collection, translation and analysis of open source intelligence using large language models.☆43Feb 2, 2024Updated 2 years ago
- Build and maintenance scripts for Container Linux☆14May 17, 2020Updated 6 years ago
- Cloud threat detection visualization from excalidraw☆12Apr 25, 2022Updated 4 years ago
- Azure Sentinel Template parser☆16Nov 2, 2020Updated 5 years ago
- ☆15Oct 24, 2024Updated last year
- This script will generate hashes (MD5, SHA1, SHA256), submit the MD5 to Virus Total, and produce a text file with the results.☆15Jul 13, 2023Updated 2 years ago
- Sentinel Threat Intelligence Upload Toolkit☆18Jul 15, 2024Updated last year
- ☆21Apr 10, 2025Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Automation around Entra ID☆38Updated this week
- Repo to hold my PowerShell Scripts☆17Oct 19, 2022Updated 3 years ago
- A series of tutorials and sketches pulled from various sources and modified for the Thotcon 0xA conference badge.☆15May 3, 2019Updated 7 years ago
- ☆18Jan 9, 2026Updated 5 months ago
- Packet Analysis on Steroids