simeononsecurity / Blue-Team-Tools
A collection of scripts, tools. and configs for various OS'es and applications, all free and or open-source, to assist in impromptu Blue-Team defense under an active threat.
☆95Updated 3 months ago
Related projects ⓘ
Alternatives and complementary repositories for Blue-Team-Tools
- A list of resources to build a information security team.☆13Updated 3 years ago
- Collection of PowerShell functinos and scripts a Blue Teamer might use☆83Updated last year
- A python script to turn Ubuntu Desktop in a one stop security platform. The InfoSec Fortress installs the packages,tools, and resources t…☆50Updated 2 years ago
- Blue Team detection lab created with Terraform and Ansible in Azure.☆143Updated this week
- Some Threat Hunting queries useful for blue teamers☆123Updated 2 years ago
- Domain Response is a tool that is designed to help you automate the investigation for a domain. This tool is specificly designed to autom…☆45Updated 7 months ago
- A series of PowerShell scripts to automate collection of forensic artefacts in most Incident Response environments☆64Updated 2 years ago
- A collection of scripts, tools. and configs for various OS'es and applications, all free and or open-source, to assist in impromptu Blue-…☆96Updated last year
- ☆63Updated last year
- Purpleteam scripts simulation & Detection - trigger events for SOC detections☆158Updated 2 weeks ago
- Full of public notes and Utilities☆87Updated last week
- A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub☆64Updated last year
- an awesome list of active defense resources☆113Updated 4 years ago
- A collection of various SIEM rules relating to malware family groups.☆62Updated 5 months ago
- Windows Forensics Environment Builder☆112Updated 2 weeks ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆67Updated last year
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆148Updated 6 months ago
- Import CrowdStrike Threat Intelligence into your instance of MISP☆42Updated last month
- This repository contains a collection of PowerShell tools that can be utilized to protect and defend an environment based on the recommen…☆48Updated 4 months ago
- Repository of public reference frameworks for the DFIR community.☆109Updated last year
- ☆64Updated 3 years ago
- MITRE ATT&CK mapped queries for SentinelOne Deep Visiblity☆86Updated 3 years ago
- This repo is where I store my Threat Hunting ideas/content☆85Updated last year
- ☆54Updated 3 years ago
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆125Updated 2 years ago
- A curated list of KAPE-related resources☆157Updated 6 months ago
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆75Updated 3 years ago
- Assess Windows OS for security misconfigurations and hardening opportunities.☆31Updated 4 months ago
- Harness the power of Splunk for your investigations☆77Updated last week
- Security Operation Center Lab☆15Updated last month