syne0 / ospreyLinks
Powershell Based tool for gathering information related to O365 intrusions and potential Breaches
☆17Updated last year
Alternatives and similar repositories for osprey
Users that are interested in osprey are comparing it to the libraries listed below
Sorting:
- When good OAuth apps go rogue. Documents observed OAuth application tradecraft☆82Updated 2 weeks ago
- Mapping of open-source detection rules and atomic tests.☆193Updated 11 months ago
- Repository with supporting materials for Invictus Academy/Training☆43Updated 11 months ago
- Security Scripts and Sources for daily usage.☆69Updated last month
- BlackCat is a PowerShell module designed to validate the security of Microsoft Azure. It provides a set of functions to identify potentia…☆152Updated last month
- Generate a matrix based on an inventory of InfoSec tools☆23Updated last year
- An index of publicly available and open-source threat detection rulesets.☆132Updated 8 months ago
- This project aims to bridge the gap between Microsoft Attack Surface Reduction (ASR) rules and MITRE ATT&CK by mapping ASR rules to their…☆29Updated last year
- Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools…☆136Updated last month
- ☆45Updated last year
- ADXFlowmaster helps SecOps teams Threat Hunt suspicious network traffic inside & outside of Azure.☆40Updated last year
- ☆74Updated last week
- An automated Adversary Emulation lab with terraform and MCP server. Build Caldera techniques and operations assisted with LLMs. Built f…☆204Updated last month
- A collection of various SIEM rules relating to malware family groups.☆70Updated last year
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆101Updated last year
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆67Updated 3 weeks ago
- Playbook-NG is a stateless web-based application used to match incident findings with countermeasures for adversary containment and evict…☆152Updated 3 weeks ago
- Azure Activity Log Axe is a continually developing tool that simplifies the transactional log format provided by Microsoft. The tool leve…☆34Updated last year
- Miscellaneous stuff I create☆43Updated this week
- Sentinel Logic Apps, Playbooks and Workbooks to automate enrichment, incident analysis and more.☆111Updated last month
- Visualize Microsoft Defender XDR process trees and security events☆34Updated 4 months ago
- A starter pack of resources to help you get started in Detection Engineering.☆177Updated 4 months ago
- VirtualGHOST Detection Tool☆101Updated 3 weeks ago
- An automated deployment tool that creates instrumented Azure environments with vulnerable systems for simulating attacks and testing Micr…☆60Updated 5 months ago
- KQL queries for Incident Response☆14Updated 2 years ago
- A cheatsheet containing AWS CloudTrail events that can be used for Incident Response purposes or Detection Engineering.☆81Updated last year
- A small security playground implementation of GHOSTS User Simulation framework with an Active Directory deployment and Elastic.☆19Updated last year
- M365/Azure adversary simulation tool that generates realistic attack telemetry to help blue teams improve their detection and response ca…☆321Updated 2 months ago
- A collection of ARM-based detections for Azure/AzureAD based TTPs