trustedsec / defensive-scripts
☆45Updated 2 years ago
Alternatives and similar repositories for defensive-scripts:
Users that are interested in defensive-scripts are comparing it to the libraries listed below
- A tool for auditing network shares in an Active Directory environment☆42Updated 5 years ago
- Build a domain with three quick PowerShell scripts!☆29Updated 4 years ago
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆51Updated last year
- Defence Against the Dark Arts☆34Updated 5 years ago
- Bloodhound Portable for Windows☆51Updated last year
- A quick and easy PowerShell script to collect a packet trace with option to convert .etl to .pcap.☆40Updated 2 years ago
- Microsoft GPO Readiness Lateral Movement Detection Tool☆16Updated 2 years ago
- PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.☆38Updated 3 years ago
- Community Tasks/Plans for PlumHound Queueing☆23Updated 2 years ago
- Veil-PowerView is a powershell tool to gain network situational awareness on Windows domains.☆55Updated 10 years ago
- This repository contains a collection of PowerShell tools that can be utilized to protect and defend an environment based on the recommen…☆51Updated 8 months ago
- Enumerate Microsoft 365 Groups in a tenant with their metadata☆52Updated 4 years ago
- Tony's collection of powershell scripts, typically geared toward cybersec☆32Updated last week
- PowerShell Script for Agentless Incident Response☆25Updated 6 years ago
- ☆41Updated last year
- Finds event logs between two time points. Useful for helpdesk/support/malware analysis.☆47Updated 6 years ago
- A collection of modifed PowerShell Scripts for CrackMapExec (https://github.com/byt3bl33d3r/CrackMapExec)☆51Updated 5 years ago
- Defensive-oriented Active Directory enumeration☆23Updated 9 years ago
- gundog - guided hunting in Microsoft Defender☆52Updated 3 years ago
- Useful access control entries (ACE) on system access control list (SACL) of securable objects to find potential adversarial activity☆90Updated 3 years ago
- A collection of searches, interesting events and tables on Crowdstrike Splunk.☆29Updated 4 years ago
- PowerHunt is a modular threat hunting framework written in PowerShell that leverages PowerShell Remoting for data collection on scale.☆65Updated 3 months ago
- Pushes Sysmon Configs☆88Updated 3 years ago
- Defensive Origins Training Schedule☆38Updated last year
- List of PowerShell commands and commandlets that should be in your Powershel watchlist☆37Updated 3 years ago
- ☆50Updated 2 months ago
- ☆31Updated 4 months ago
- PowerShell script useful for Incident Response and security/configuration baselines for Windows Vista and later☆20Updated 9 years ago
- PowerShell tool to triage systems☆12Updated last year
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆36Updated last year