trustedsec / defensive-scripts
☆45Updated 2 years ago
Alternatives and similar repositories for defensive-scripts:
Users that are interested in defensive-scripts are comparing it to the libraries listed below
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆51Updated last year
- Build a domain with three quick PowerShell scripts!☆29Updated 4 years ago
- PowerHunt is a modular threat hunting framework written in PowerShell that leverages PowerShell Remoting for data collection on scale.☆70Updated 4 months ago
- Defence Against the Dark Arts☆34Updated 5 years ago
- PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.☆38Updated 3 years ago
- A collection of modifed PowerShell Scripts for CrackMapExec (https://github.com/byt3bl33d3r/CrackMapExec)☆52Updated 6 years ago
- Community Tasks/Plans for PlumHound Queueing☆23Updated 2 years ago
- Useful access control entries (ACE) on system access control list (SACL) of securable objects to find potential adversarial activity☆90Updated 3 years ago
- Bloodhound Portable for Windows☆51Updated 2 years ago
- A tool for auditing network shares in an Active Directory environment☆42Updated 6 years ago
- Enumerate Microsoft 365 Groups in a tenant with their metadata☆53Updated 4 years ago
- Finds event logs between two time points. Useful for helpdesk/support/malware analysis.☆47Updated 6 years ago
- RisingSun: Decoding SUNBURST C2 to identify infected hosts without network telemetry.☆10Updated 4 years ago
- These are some of the commands which I use frequently during Malware Analysis and DFIR.☆24Updated last year
- LLMNR/NBNS/mDNS Spoofing Detection Toolkit☆59Updated 3 years ago
- Microsoft GPO Readiness Lateral Movement Detection Tool☆16Updated 2 years ago
- Analyze ARP requests to identify hosts that are communicating with one another.☆19Updated 5 years ago
- ☆41Updated 2 years ago
- Post-exploitation NTLM password hash extractor☆20Updated 4 years ago
- PowerShellUtilities provides various utility commandlets.☆51Updated 4 years ago
- A tool to modify timestamps in a packet capture to a user selected date☆31Updated 3 years ago
- Cypher for Defenders: Leveraging Bloodhound Data Beyond the UI☆25Updated last year
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆53Updated 2 years ago
- gundog - guided hunting in Microsoft Defender☆52Updated 4 years ago
- Purple Team Security☆75Updated 3 years ago
- Defensive-oriented Active Directory enumeration☆23Updated 9 years ago
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆36Updated last year
- A repository of compiled and ready-to-use shells for Windows restricted environments.☆36Updated 5 years ago
- Veil-PowerView is a powershell tool to gain network situational awareness on Windows domains.☆57Updated 10 years ago
- Parses Nessus .nessus files for exploitable vulnerabilities and outputs a report file in format MM-DD-YYYY-nessus.csv☆39Updated last year