secureworks / dceptLinks
A tool for deploying and detecting use of Active Directory honeytokens
☆509Updated 3 years ago
Alternatives and similar repositories for dcept
Users that are interested in dcept are comparing it to the libraries listed below
Sorting:
- PSRecon gathers data from a remote Windows host using PowerShell (v2 or later), organizes the data into folders, hashes all extracted da…☆489Updated 8 years ago
- Incident Response Forensic Framework☆609Updated 6 years ago
- ☆519Updated 4 years ago
- Honeypot Intelligence with Splunk☆257Updated 7 years ago
- DPS' Lightweight Investigation Notebook☆434Updated 2 years ago
- Laika BOSS: Object Scanning System☆748Updated last year
- Documentation for the GRR Rapid Reponse framework☆309Updated last year
- DEPRECATED - USE v3 (bearded-avenger)☆229Updated 7 years ago
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆472Updated 6 years ago
- RWMC is no longer supported. Please use PowerMemory.☆164Updated 9 years ago
- Configuration guidance for implementing Pass-the-Hash mitigations. #nsacyber☆201Updated 9 years ago
- A PowerShell TCP/IP swiss army knife.☆570Updated 8 years ago
- Modular file scanning/analysis framework☆624Updated 6 years ago
- Malicious HTTP traffic explorer☆724Updated 2 years ago
- Automated deployment scripts for the RockNSM network hunting distribution.☆456Updated 2 years ago
- Currently not updated for WMIEvent module...☆263Updated 9 years ago
- Protocol Analysis/Decoder Framework☆496Updated 3 years ago
- MozDef: The Mozilla Defense Platform☆68Updated 5 years ago
- (extensible) Data Exfiltration Toolkit (DET)☆831Updated 8 years ago
- dionaea low interaction honeypot (forked from dionaea.carnivore.it)☆151Updated 10 years ago
- Remote forensics meta tool☆474Updated 9 months ago
- SIFT Bootstrap Script☆145Updated 8 years ago
- Web interface for the Volatility Memory Forensics Framework☆260Updated 8 years ago
- CimSweep is a suite of CIM/WMI-based tools that enable the ability to perform incident response and hunting operations remotely across al…☆659Updated 6 years ago
- A tool to retrieve malware directly from the source for security researchers.☆564Updated 8 years ago
- Sandia Cyber Omni Tracker (SCOT)☆253Updated last year
- The Artillery Project is an open-source blue team tool designed to protect Linux and Windows operating systems through multiple methods.☆335Updated 5 years ago
- Powershell-based Windows Security Auditing Toolbox☆575Updated 6 years ago
- ☆307Updated 8 years ago
- Web App for Volatility framework☆389Updated 5 months ago