randomaccess3 / block-parser
Parser for Windows PowerShell script block logs
☆13Updated 2 weeks ago
Alternatives and similar repositories for block-parser:
Users that are interested in block-parser are comparing it to the libraries listed below
- OMIGOD! OM I GOOD? A free scanner to detect VMs vulnerable to one of the "OMIGOD" vulnerabilities discovered by Wiz's threat research tea…☆18Updated 3 years ago
- ☆15Updated 3 years ago
- A collection of tools adversaries commonly use in an attack.☆14Updated last month
- Kibana app for RedELK☆16Updated last year
- reboot of https://github.com/Genetic-Malware/Ebowla in order to simplify / modernize the codebase and provide ongoing support☆22Updated 3 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆30Updated 2 years ago
- F-Secure Lightweight Acqusition for Incident Response (FLAIR)☆16Updated 3 years ago
- Go module that allows you to authenticate to Azure with a well known client ID using interactive logon and grab the token☆25Updated 2 years ago
- Active Directory Password Spray Testing Utility in Go☆14Updated 9 months ago
- ☆22Updated last year
- HoneyZure is a honeypot tool specifically designed for Azure environments, fully provisioned through Terraform. It leverages a Log Analyt…☆16Updated 7 months ago
- Cisco CallManager User Enumeration☆15Updated 2 years ago
- python3 scripts to help with aws triage needs☆15Updated 2 years ago
- Speaking materials from conferences I've given☆9Updated 2 years ago
- EventLogSilencer is a PowerShell script designed for disable Windows Event Logging☆14Updated last year
- A cap/pcap packet parser to make life easier when performing stealth/passive reconnaissance.☆21Updated 6 months ago
- Helper script for BloodHound to automatically add relationships between multiple accounts owned by the same individual☆13Updated 2 years ago
- ☆12Updated 2 months ago
- Indicators of Normality☆12Updated 2 years ago
- Ansible role that Installs Mythic☆14Updated 6 months ago
- Drakus allows you to monitor the artifacts and domains used in a Red Team exercise to see if they have been uploaded to certain online ma…☆13Updated 4 years ago
- A proof-of-concept re-assembler for reverse VNC traffic.☆25Updated last year
- Slides from my talk at the Adversary Village, Defcon 30☆29Updated 2 years ago
- Linux #rootkit and #malware revealer☆21Updated 5 months ago
- Scans through registry hives outputting entropy values for key/values, dumps binary contents to files...we are looking for those "fileles…☆11Updated 6 years ago
- JXA script for Mythic that prints the TCC.db☆15Updated 3 years ago
- ☆17Updated last year
- A not-at-all-ordered compilation of random security-related powershell scripts :-)☆11Updated 2 years ago
- Tool for obtaining information about PPL processes☆17Updated 11 months ago
- Perform file-based malware scan on your on-prem servers with AWS☆10Updated last year