surya4n6 / dc29-btv-2021Links
☆15Updated 4 years ago
Alternatives and similar repositories for dc29-btv-2021
Users that are interested in dc29-btv-2021 are comparing it to the libraries listed below
Sorting:
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆78Updated 4 years ago
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆96Updated 2 years ago
- Baseline a Windows System against LOLBAS☆27Updated last year
- This repo is where I store my Threat Hunting ideas/content☆88Updated 2 years ago
- The Github project for The Defender's Guide by Luke Paine and Jonathan Johnson☆154Updated 2 years ago
- A repo to support the book☆108Updated 4 years ago
- ☆47Updated 3 months ago
- ☆26Updated 2 years ago
- Slides of my public talks☆56Updated last year
- Open Threat Hunting Framework☆118Updated 2 years ago
- Active Directory Purple Team Playbook☆110Updated 2 years ago
- ☆53Updated 3 months ago
- Cloud-based AD lab created to help you test real attacks in a controlled environment and create detection rules for them☆28Updated last year
- ☆64Updated 4 years ago
- ☆74Updated last month
- BSidesRoc 2022 Linux Malware/Forensics Course☆76Updated 3 years ago
- Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so on☆82Updated last year
- Jupyter Notebooks for the Blue Team☆144Updated 4 months ago
- Full of public notes and Utilities☆127Updated 6 months ago
- Creation of a laboratory for malware analysis in AWS☆101Updated 2 years ago
- Supporting materials for my "Intelligence-Led Adversarial Threat Modelling with VECTR" workshop☆68Updated this week
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- Understanding and analyzing carrier files workshop repo☆50Updated 5 years ago
- This repository contains procedures found in the Feb 2022 conti leaks. They were taken from the "manual_teams_c" rocketchat channel in th…☆87Updated 3 years ago
- Completely Risky Active-Directory Simulation Hub☆103Updated last year
- Active C&C Detector☆155Updated last year
- CarbonBlack EDR detection rules and response actions☆71Updated 11 months ago
- MITRE ATT&CK mapped queries for SentinelOne Deep Visiblity☆92Updated 4 years ago
- A list of RMMs designed to be used in automation to build alerts☆112Updated 3 months ago
- A collection of Powershell scripts that will help automate the build process for a Marvel domain.☆147Updated last year