PowerGRR is an API client library in PowerShell working on Windows, Linux and macOS for GRR automation and scripting.
☆57Mar 18, 2022Updated 4 years ago
Alternatives and similar repositories for PowerGRR
Users that are interested in PowerGRR are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.☆40Mar 18, 2022Updated 4 years ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Jan 16, 2018Updated 8 years ago
- A multi-platform .Net wrapper library for the native Yara library.☆39Jun 30, 2023Updated 3 years ago
- Check Sigma rules for easy-to-bypass whitelists to make them more robust (https://github.com/SigmaHQ/sigma)☆16Feb 1, 2021Updated 5 years ago
- Windows privileges add to the complexity of Windows user permissions. Each additional user added to a group could lead to a domain compro…☆10Mar 2, 2018Updated 8 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Collection of malware persistence and hunting information. Be a persistent persistence hunter!☆187Mar 31, 2026Updated 4 months ago
- This package allows the use of a custom Elastalert Alert which creates alerts with observables in TheHive using TheHive4Py.☆26May 18, 2021Updated 5 years ago
- PowerKrabsEtw is a PowerShell interface for doing real-time ETW tracing.☆102Nov 17, 2020Updated 5 years ago
- Some IR notes☆72Jul 23, 2016Updated 10 years ago
- A YARA Rule Performance Measurement Tool☆64Feb 26, 2024Updated 2 years ago
- Network detector for Winnti malware☆21Mar 6, 2018Updated 8 years ago
- Parses KAPE module files and downloads binaries referenced by BinaryURL☆18Oct 2, 2019Updated 6 years ago
- SQL scripts for querying event logs☆23Jul 12, 2017Updated 9 years ago
- Binaries for the log2timeline projects and dependencies☆40Aug 1, 2026Updated last week
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- my MSTICpy practice and custom tools repository☆11Apr 23, 2025Updated last year
- Auxiliary scripts for Incident Response with ELK☆11Oct 7, 2015Updated 10 years ago
- A repository to share contributions related to TheHive Project☆22Sep 15, 2021Updated 4 years ago
- Volatility plugin to extract X screenshots from a memory dump☆37May 15, 2018Updated 8 years ago
- Digital Forensics artifact repository☆1,259Jul 31, 2026Updated last week
- A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.☆483Nov 15, 2024Updated last year
- Notify Alert to Google Chat Gsuite☆11Mar 31, 2022Updated 4 years ago
- PowerShell No Agent Hunting☆111Apr 23, 2018Updated 8 years ago
- A portable console aimed at making pentesting with PowerShell a little easier.☆49Apr 4, 2017Updated 9 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- "Evolving AppCompat/AmCache data analysis beyond grep"☆213Sep 15, 2021Updated 4 years ago
- ForGe Forensic test image generator☆35Mar 19, 2015Updated 11 years ago
- Collaborative, web-based case management for incident response☆24Jan 23, 2024Updated 2 years ago
- Oriana is a threat hunting tool that leverages a subset of Windows events to build relationships, calculate totals and run analytics. The…☆174Jun 10, 2021Updated 5 years ago
- Query and report user logons relations from MS Windows Security Events☆241Aug 9, 2018Updated 8 years ago
- Code for the DIMVA 2018 paper: "MemScrimper: Time- and Space-Efficient Storage of Malware Sandbox Memory Dumps"☆26Jul 22, 2019Updated 7 years ago
- Dettectinator - The Python library to your DeTT&CT YAML files.☆117Jan 22, 2026Updated 6 months ago
- Forensic Artifact Collection Tool Matrix☆97Nov 9, 2024Updated last year
- LNK to JSON☆14Mar 7, 2019Updated 7 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A GC link parser for both linkfiles and jumplists.☆18Oct 28, 2016Updated 9 years ago
- An Incident Response tool that visualizes historic process execution evidence (based on Event ID 4688 - Process Creation Event) in a tree…☆60Jan 30, 2018Updated 8 years ago
- Allows you to quickly query a Windows machine for RAM artifacts☆219Jul 17, 2020Updated 6 years ago
- Import AbuseCH IOC Feeds into MISP☆12Feb 17, 2021Updated 5 years ago
- A PowerShell module to assist in parsing and managing catalog files.☆22Jan 12, 2017Updated 9 years ago
- The Cold Disk Quick Response (CDQR) tool is a fast and easy to use forensic artifact parsing tool that works on disk images, mounted driv…☆345Jun 25, 2022Updated 4 years ago
- The Seeker of IOC☆131Oct 2, 2020Updated 5 years ago