Splunk Technology Add-On (TA) for collecting ETW events from Windows systems
☆15Dec 8, 2022Updated 3 years ago
Alternatives and similar repositories for TA_ETW
Users that are interested in TA_ETW are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Powershell to read ETL file on an interval and convert it to an EVTX (so Windows Event Forwarding can 'subscribe')☆11May 16, 2017Updated 9 years ago
- ☆14Jan 8, 2026Updated 7 months ago
- Splunk app for Threat hunting☆15Nov 15, 2018Updated 7 years ago
- AdHoc solutions☆49Aug 29, 2023Updated 2 years ago
- Simple C++ cryptolocker Blowfish CBC☆17Apr 13, 2019Updated 7 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A collection of threat intelligence data such as IOC, Yara and Snort/Suricata Rules etc.☆10Sep 17, 2019Updated 6 years ago
- ☆14Aug 8, 2017Updated 9 years ago
- ☆12Nov 3, 2020Updated 5 years ago
- Cybersecurity Incidents Mind Maps☆34Sep 29, 2021Updated 4 years ago
- BlueKeep powershell scanner (based on c# code)☆38Nov 11, 2019Updated 6 years ago
- Matt's DFIR blog☆14Jun 23, 2026Updated last month
- A tool for finding similar text files☆15Mar 27, 2015Updated 11 years ago
- SMB Named Pipe shell☆69Nov 19, 2024Updated last year
- How to run cluster of Splunk Enterprise in Docker. Examples.☆34Oct 27, 2016Updated 9 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆52Mar 4, 2019Updated 7 years ago
- A MITRE Caldera plugin written in Python 3 used to convert Red Canary Atomic Red Team Tests to MITRE Caldera Stockpile YAML ability files…☆74Oct 14, 2021Updated 4 years ago
- ☆32Aug 10, 2019Updated 7 years ago
- ☆12Sep 4, 2013Updated 12 years ago
- A simple Script which tests for LFI (Local File Inclusion) via Curl☆15Mar 11, 2019Updated 7 years ago
- ☆42Sep 16, 2022Updated 3 years ago
- Automatically exported from code.google.com/p/lfimap☆16Mar 5, 2016Updated 10 years ago
- An Alexa Skills Kit app that lets you find out what shows are in your Kodi library by voice with the Amazon Echo☆13Aug 22, 2015Updated 10 years ago
- LFI (Local File Inclusion) Exploitation Tool☆17Jan 4, 2021Updated 5 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆60Aug 3, 2019Updated 7 years ago
- A simple utility to check the status of and/or disable SMBv1 on Windows system via Cb Response's Live Response functionality.☆15May 28, 2019Updated 7 years ago
- Generate ATT&CK Navigator layer file from PowerShell Empire agent logs☆47Sep 4, 2018Updated 7 years ago
- Quick script to build host or investigation timelines using Carbon Black Response☆12Sep 25, 2018Updated 7 years ago
- Trigger vulnerability assessments for containers which are active in a Lacework account/organization☆22Nov 30, 2023Updated 2 years ago
- A serverless framework plugin to install multiple lambda functions written in python.☆25Mar 29, 2024Updated 2 years ago
- A browser extension that seamlessly integrates your yara match notifications into VirusTotal Intelligence.☆17Feb 8, 2015Updated 11 years ago
- Code and Slides of my BSides London 2019 presentation about Attacker Emulation using CALDERA☆22Jun 9, 2019Updated 7 years ago
- Application Pattern Orchestrator (APO) is an AWS Solution that helps customers to establish and manage an internal catalog of reusable, r…☆20Feb 19, 2025Updated last year
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- LOCAL AND REMOTE HOOK msv1_0!SpAcceptCredentials from LSASS.exe and DUMP DOMAIN/LOGIN/PASSWORD IN CLEARTEXT to text file.☆121Jan 27, 2020Updated 6 years ago
- Splunk App for MITRE Att&CK Navigator(TM)☆23Mar 25, 2021Updated 5 years ago
- ☆16Jan 31, 2015Updated 11 years ago
- Scan GitHub repositories for potentially infected MSBuild project files☆17May 27, 2025Updated last year
- yaa - yaml search for humans☆12Dec 8, 2025Updated 8 months ago
- Sigma detection rules for AI agent security monitoring☆15Jul 28, 2026Updated 2 weeks ago
- Debian package for lazygit☆15Sep 5, 2023Updated 2 years ago