strozfriedberg / Velociraptor_LMDALinks
Lateral Movement and Data Access artifacts for Velociraptor
☆17Updated this week
Alternatives and similar repositories for Velociraptor_LMDA
Users that are interested in Velociraptor_LMDA are comparing it to the libraries listed below
Sorting:
- Public script from SANS FOR509 Enterprise Cloud Incident Response☆211Updated this week
- Tools for simulating threats☆193Updated 2 years ago
- A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon☆212Updated 5 years ago
- Indexes for SANS Courses and GIAC Certifications☆264Updated last year
- Scripts to facilitate filtering with Plaso☆127Updated 5 years ago
- Real-time Response scripts and schema☆119Updated last week
- Atomic Purple Team Framework and Lifecycle☆298Updated 4 years ago
- 2021 SANS DFIR Summit: Greppin' Logs☆20Updated this week
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters …☆281Updated this week
- Incident Response documents and tooling☆106Updated last month
- Repository of attack and defensive information for Business Email Compromise investigations☆265Updated 5 months ago
- Repository of SentinelOne Deep Visibility queries.☆134Updated 4 years ago
- Beacon Kibana Executable Report. Aggregates Sysmon Network Events With Elasticsearch and Kibana☆299Updated this week
- ☆13Updated last year
- Collection of scripts provided for public use☆37Updated 2 weeks ago
- Notes on responding to security breaches relating to Azure AD☆117Updated 3 years ago
- ☆42Updated last year
- Scripts for rapid Windows endpoint "tactical triage" and investigations with Velociraptor and KAPE☆162Updated last month
- This is a repository for freq.py and freq_server.py☆211Updated 5 years ago
- ☆65Updated 2 years ago
- A cross-platform baselining, threat hunting, and attack surface analysis tool for security teams.☆238Updated 6 months ago
- A port of BHIS's Backdoors & Breaches for playingcards.io☆64Updated 2 years ago
- Tools to automatically create a SANS index based off the course pdf files.☆109Updated 5 years ago
- Useful network monitoring, analysis, and active response tools used or mentioned in the SANS SEC503 course (https://www.sans.org/course/i…☆241Updated 10 months ago
- Web application to create indexes for GIAC certification examinations.☆146Updated 2 years ago
- The Business Email Compromise Guide sets out to describe 10 steps for performing a Business Email Compromise (BEC) investigation in an Of…☆264Updated 4 years ago
- Threat Hunting Toolkit is a Swiss Army knife for threat hunting, log processing, and security-focused data science☆145Updated 2 weeks ago
- This repository contains helper scripts and custom configs to get the best out of Google's Timesketch project.☆116Updated 2 years ago
- Jupyter notebooks for threat hunting☆59Updated 7 months ago
- DigitalShadows Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform☆44Updated 6 years ago