These are the labs for my Intro class. Yes, this is public. Yes, this is intentional.
☆1,810Jul 21, 2026Updated this week
Alternatives and similar repositories for IntroLabs
Users that are interested in IntroLabs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆69May 5, 2021Updated 5 years ago
- ☆2,420Oct 14, 2023Updated 2 years ago
- ☆132Mar 10, 2021Updated 5 years ago
- Small and highly portable detection tests based on MITRE's ATT&CK.☆12,258Updated this week
- links collected from SOC Core Skills class☆86Dec 17, 2020Updated 5 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,511Jan 12, 2026Updated 6 months ago
- Scripts for rapid Windows endpoint "tactical triage" and investigations with Velociraptor and KAPE☆201Apr 1, 2026Updated 3 months ago
- Practical Windows Forensics Training☆777Feb 16, 2026Updated 5 months ago
- Tools for simulating threats☆203Oct 27, 2023Updated 2 years ago
- Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.☆491Nov 21, 2024Updated last year
- Main Sigma Rule Repository☆10,789Updated this week
- Beacon Kibana Executable Report. Aggregates Sysmon Network Events With Elasticsearch and Kibana☆300Mar 19, 2026Updated 4 months ago
- A repository of sysmon configuration modules☆3,090Jul 13, 2026Updated last week
- Rapidly Search and Hunt through Windows Forensic Artefacts☆3,609Updated this week
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage clou…☆2,828Apr 6, 2026Updated 3 months ago
- game of active directory☆8,066Mar 12, 2026Updated 4 months ago
- Automate the creation of a lab environment complete with security tooling and logging best practices☆5,007Jul 6, 2024Updated 2 years ago
- Bloodhound Reporting for Blue and Purple Teams☆1,301Nov 15, 2025Updated 8 months ago
- A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering env…☆8,878Jun 23, 2026Updated last month
- Sysmon configuration file template with default high-quality event tracing☆5,601Jul 3, 2024Updated 2 years ago
- A Post-exploitation Toolset for Interacting with the Microsoft Graph API☆1,326Apr 9, 2026Updated 3 months ago
- An Active Defense and EDR software to empower Blue Teams☆1,335Mar 31, 2026Updated 3 months ago
- Investigate malicious Windows logon by visualizing and analyzing Windows event log☆3,196Apr 22, 2026Updated 3 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunt…☆1,721Updated this week
- Digging Deeper....☆4,119Updated this week
- A Powershell incident response framework☆1,656Nov 22, 2022Updated 3 years ago
- Threat Hunting Toolkit is a Swiss Army knife for threat hunting, log processing, and security-focused data science☆155Jul 1, 2026Updated 3 weeks ago
- A tool that allows you to create vulnerable instrumented local or cloud environments to simulate attacks against and collect the data int…☆2,525Updated this week
- You didn't think I'd go and leave the blue team out, right?☆1,757Apr 14, 2026Updated 3 months ago
- Automated Adversary Emulation Platform☆7,135Updated this week
- DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will auto…☆2,066Jul 11, 2024Updated 2 years ago
- DDTTX Tabletop Trainings☆28Sep 23, 2021Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Intro Labs Remastered☆35Mar 7, 2025Updated last year
- Traps web spiders☆78Jun 24, 2020Updated 6 years ago
- TrustedSec Sysinternals Sysmon Community Guide☆1,427Jun 30, 2026Updated 3 weeks ago
- Six Degrees of Domain Admin☆10,579Mar 2, 2026Updated 4 months ago
- A curated knowledge base to build, run and mature a SOC (including CSIRT).☆1,782Updated this week
- Dashboard for conducting Backdoors and Breaches sessions over Zoom.☆121Oct 17, 2024Updated last year
- Invoke-AtomicRedTeam is a PowerShell module to execute tests as defined in the [atomics folder](https://github.com/redcanaryco/atomic-red…☆1,058Sep 8, 2025Updated 10 months ago