sandflysecurity / sandfly-forensic-scriptsLinks
Small scripts to help with Linux forensics and incident response.
☆48Updated last week
Alternatives and similar repositories for sandfly-forensic-scripts
Users that are interested in sandfly-forensic-scripts are comparing it to the libraries listed below
Sorting:
- Detects CanaryTokens in Office docs and PDFs (docx, xlsx, pptx, pdf) without triggering alerts.☆120Updated last year
- With Wireshark or TCPdump, you can determine whether there is harmful activity on your network traffic that you have recorded on the netw…☆147Updated last year
- 🤖 The Modern, Blazing Fast Port Scanner 🤖☆28Updated 5 months ago
- ServiceLens is a Python tool for analyzing services linked to Microsoft 365 domains. It scans DNS records like SPF and DMARC to identify …☆77Updated 8 months ago
- Kooky cURL-powered replacement for reverse shell via /dev/tcp☆64Updated last week
- A graphical automation to monitor if backdoors/default settings are still active on the compromised machines over time.☆44Updated last year
- Repo for all my exploits/PoCs☆51Updated last month
- A delicious, but malicious SSL-VPN server 🌮☆233Updated 2 weeks ago
- ☆77Updated last year
- ☆37Updated last year
- CaptainCredz is a modular and discreet password-spraying tool.☆114Updated 3 weeks ago
- Retrieve LAPS passwords from a domain. The tools is inspired in pyLAPS.☆84Updated 3 months ago
- APT hub, It help's research to collect information and data on the latest APT activities. It collects data on APT profiles, IOCs(1 yr), a…☆51Updated 3 months ago
- Cheat sheet to detect and remove linux kernel rootkit☆67Updated 6 months ago
- Stuxnet extracted binaries by reversing & Stuxnet Rootkit Analysis☆59Updated 9 months ago
- Top 400 passwords as per HaveIBeenPwned☆22Updated 8 months ago
- This Python-based GUI application allows you to track the latest security vulnerabilities (CVEs) using the☆39Updated 2 months ago
- FWT is a security analysis and file monitoring tool that utilizes Sysmon events.☆27Updated 11 months ago
- Collection of Docker honeypot logs from 2021 - 2024☆36Updated 8 months ago
- NullSection is an Anti-Reversing tool that applies a technique that overwrites the section header with nullbytes.☆65Updated last year
- ☆67Updated 4 months ago
- ☆44Updated 4 months ago
- MalStatWare automates malware analysis with Python. Extract key details like file size, type, hash, path, and digital signature. It analy…☆29Updated last year
- An offensive postexploitation tool that will give you complete control over the Outlook desktop application and therefore to the emails c…☆166Updated 8 months ago
- A tool to dump users's .plist on a Mac OS system and to convert them into a crackable hash☆51Updated 8 months ago
- APT Emulation tool to exfiltrate sensitive .docx, .pptx, .xlsx, .pdf files☆90Updated 2 months ago
- A tool for generating detailed, locally-processed reports from iOS backups, supporting encrypted and unencrypted data.☆59Updated 8 months ago
- DEFCON 31 slide deck and video link☆63Updated 3 weeks ago
- Rebuild of portspoof in GO with additional features.☆18Updated this week
- In-Memory Rootkit For Linux☆70Updated 2 weeks ago