randomaccess3 / block-parserLinks
Parser for Windows PowerShell script block logs
☆13Updated 6 months ago
Alternatives and similar repositories for block-parser
Users that are interested in block-parser are comparing it to the libraries listed below
Sorting:
- Go module that allows you to authenticate to Azure with a well known client ID using interactive logon and grab the token☆26Updated 2 years ago
- OMIGOD! OM I GOOD? A free scanner to detect VMs vulnerable to one of the "OMIGOD" vulnerabilities discovered by Wiz's threat research tea…☆20Updated 3 years ago
- Indicators of Normality☆11Updated 2 years ago
- a tiny program to consume from ETW providers for research☆49Updated 6 months ago
- Registry hive parsing the async way☆21Updated 3 months ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆31Updated 2 years ago
- ☆16Updated 5 months ago
- ☆23Updated 4 months ago
- A cap/pcap packet parser to make life easier when performing stealth/passive reconnaissance.☆21Updated 11 months ago
- Automated Persistence and Lateral Movement using GCP Patch Management☆15Updated 2 years ago
- A collection of tools adversaries commonly use in an attack.☆14Updated 7 months ago
- Slides from my talk at the Adversary Village, Defcon 30☆29Updated 2 years ago
- GeoWordlists is a tool to generate wordlists of passwords containing cities at a defined distance around the client city.☆10Updated last year
- Leverages B64 chunks to split files and save to clipboard☆26Updated 2 months ago
- Active Directory Group Policy analyzer☆14Updated 5 years ago
- ☆14Updated last year
- EventLogSilencer is a PowerShell script designed for disable Windows Event Logging☆17Updated last year
- A collection of my presentation materials.☆17Updated last year
- ☆18Updated last week
- HoneyZure is a honeypot tool specifically designed for Azure environments, fully provisioned through Terraform. It leverages a Log Analyt…☆16Updated last year
- Volatility 3 plugins to extract a module as complete as possible☆12Updated 2 years ago
- Timestomp Tool to flatten MAC times with a specific timestamp☆47Updated 2 months ago
- Bloodhound Portable for Windows☆51Updated 2 years ago
- self-hosted Azure OSINT tool☆31Updated 2 weeks ago
- Alpine hostapd-mana based RADIUS server☆10Updated 2 years ago
- python3 scripts to help with aws triage needs☆15Updated 3 years ago
- single-threaded event driven sleep obfuscation poc for linux☆34Updated 3 weeks ago
- Resources and Discussions About Detection Engineering☆12Updated 2 years ago
- Proof-of-concept modular implant platform leveraging v8☆53Updated 4 months ago
- Extension functionality for the NightHawk operator client☆27Updated last year