runZeroInc / runzero-tools
Open source tools, libraries, and datasets related to the runZero product and associated research
☆119Updated 2 weeks ago
Alternatives and similar repositories for runzero-tools:
Users that are interested in runzero-tools are comparing it to the libraries listed below
- How to Zeek Sysmon Logs!☆101Updated 3 years ago
- ATT&CK Evaluations website (DEPRECATED)☆59Updated 3 years ago
- LLMNR/NBNS/mDNS Spoofing Detection Toolkit☆59Updated 3 years ago
- Recog-Go: Pattern Recognition using Rapid7 Recog☆107Updated last year
- Joystick is a tool that gives you the ability to transform the ATT&CK Evaluations data into concise views that brings forward the nuances…☆64Updated last year
- Simulating Adversary Operations☆93Updated 6 years ago
- Monitoring GitHub for sensitive data shared publicly☆66Updated 3 years ago
- ☆82Updated 4 years ago
- attack2jira automates the process of standing up a Jira environment that can be used to track and measure ATT&CK coverage☆111Updated 2 years ago
- Indicator of Compromise Scanner for CVE-2019-19781☆94Updated 5 years ago
- automated password spraying tool☆147Updated 3 years ago
- Burp Suite extension to perform Kerberos authentication☆104Updated 9 months ago
- A Django application to help red team operators manage a library of domain names☆162Updated last year
- A little tool for detecting suspicious privileged NTLM connections, in particular Pass-The-Hash attack, based on event viewer logs.☆169Updated last month
- Compilation of resources to help with Adversary Simulation automation harness☆99Updated 4 years ago
- A testing framework for mail security and filtering solutions.☆244Updated last year
- Network assessment tool for various UDP Services covering both IPv4 and IPv6 protocols☆116Updated 5 years ago
- Real Time Threat Monitoring Tool☆112Updated 2 years ago
- My conference presentations☆66Updated last year
- ☆53Updated 6 years ago
- Threat Alert Logic Repository☆92Updated 6 years ago
- Monitors for DCSYNC and DCSHADOW attacks and create custom Windows Events for these events.☆139Updated 7 years ago
- PowerShell based Active Directory Honey User Account Management with Universal Dashboards☆141Updated 5 years ago
- Bro integration with osquery☆15Updated 2 years ago
- Repository of resources for configuring a Red Team SIEM using Elastic☆100Updated 6 years ago
- Historical list of {Cobalt Strike,NanoHTTPD} servers☆121Updated 5 years ago
- A tool to assess data quality, built on top of the awesome OSSEM.☆77Updated 2 years ago
- ☆97Updated 4 years ago
- Repository for my ATT&CK analysis research.☆69Updated 5 years ago
- Script to export Nessus results to a relational database for use in reports, analysis, or whatever else.☆65Updated 4 years ago