secureworks / dceptLinks
A tool for deploying and detecting use of Active Directory honeytokens
☆507Updated 3 years ago
Alternatives and similar repositories for dcept
Users that are interested in dcept are comparing it to the libraries listed below
Sorting:
- Incident Response Forensic Framework☆602Updated 5 years ago
- PSRecon gathers data from a remote Windows host using PowerShell (v2 or later), organizes the data into folders, hashes all extracted da…☆487Updated 7 years ago
- ☆509Updated 4 years ago
- Honeypot Intelligence with Splunk☆254Updated 6 years ago
- (extensible) Data Exfiltration Toolkit (DET)☆829Updated 7 years ago
- DPS' Lightweight Investigation Notebook☆432Updated last year
- RWMC is no longer supported. Please use PowerMemory.☆164Updated 9 years ago
- A PowerShell TCP/IP swiss army knife.☆567Updated 8 years ago
- Currently not updated for WMIEvent module...☆262Updated 9 years ago
- Automated deployment scripts for the RockNSM network hunting distribution.☆455Updated 2 years ago
- Powershell-based Windows Security Auditing Toolbox☆576Updated 6 years ago
- Remote forensics meta tool☆467Updated 3 months ago
- MozDef: The Mozilla Defense Platform☆68Updated 5 years ago
- Configuration guidance for implementing Pass-the-Hash mitigations. #nsacyber☆199Updated 8 years ago
- DARKSURGEON is a Windows packer project to empower incident response, digital forensics, malware analysis, and network defense.☆468Updated 4 years ago
- Laika BOSS: Object Scanning System☆747Updated 6 months ago
- A tool for security professionals to access and interact with remote Microsoft Windows based systems.☆432Updated 7 years ago
- ☆100Updated 6 years ago
- Lair is a reactive attack collaboration framework and web application built with meteor.☆383Updated 5 years ago
- Sandia Cyber Omni Tracker (SCOT)☆248Updated 8 months ago
- Kvasir: Penetration Test Data Management☆430Updated 6 years ago
- Documentation for the GRR Rapid Reponse framework☆303Updated 9 months ago
- Web App for Volatility framework☆382Updated 7 months ago
- dionaea low interaction honeypot (forked from dionaea.carnivore.it)☆153Updated 10 years ago
- CimSweep is a suite of CIM/WMI-based tools that enable the ability to perform incident response and hunting operations remotely across al…☆655Updated 5 years ago
- Protocol Analysis/Decoder Framework☆494Updated 2 years ago
- The Correlated CVE Vulnerability And Threat Intelligence Database API☆946Updated 4 years ago
- The Artillery Project is an open-source blue team tool designed to protect Linux and Windows operating systems through multiple methods.☆331Updated 4 years ago
- A Simple QUEry and Report Tool☆142Updated 5 years ago
- Web interface for the Volatility Memory Forensics Framework☆259Updated 7 years ago