xg5-simon / MS-Graph-BlueTeam
MS Graph Commands and Tools for Blue Teamers
β49Updated last year
Alternatives and similar repositories for MS-Graph-BlueTeam:
Users that are interested in MS-Graph-BlueTeam are comparing it to the libraries listed below
- A repository of curated lists with elements such as IoCs to use for threat hunting & detection queries.β34Updated 6 months ago
- Advanced Email Threat Hunting w/ Detection as Codeβ49Updated 2 weeks ago
- π§° ESXi Testing Tookit is a command-line utility designed to help security teams test ESXi detections.β68Updated last month
- Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so onβ81Updated 9 months ago
- Invoke-AtomicAssessment is a powerful tool designed to facilitate adversary emulation by leveraging Atomic Red Team.β33Updated 3 weeks ago
- Providing Azure pipelines to create an infrastructure and run Atomic tests.β50Updated last year
- This is a simulation of attack by Fancy Bear group (APT28) targeting high-ranking government officials Western Asia and Eastern Europeβ32Updated 8 months ago
- β32Updated 10 months ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data wβ¦β51Updated 2 months ago
- DEFCON 31 slide deck and video linkβ58Updated 7 months ago
- This project aims to bridge the gap between Microsoft Attack Surface Reduction (ASR) rules and MITRE ATT&CK by mapping ASR rules to theirβ¦β24Updated 3 months ago
- The ultimate solution for remotely deploying Crowdstrike sensors quickly and discreetly on any other EDR platform.β22Updated 5 months ago
- This repository contains a comprehensive testing designed for evaluating the performance and resilience of Endpoint Detection and Responsβ¦β51Updated 4 months ago
- Simulation of Akira Ransomware with Invoke-AtomicTestβ14Updated 7 months ago
- A practical resource on using open-source tools for Incident Response. This repo shares workflows, tool setups, and steps for responding β¦β27Updated 3 months ago
- β32Updated last year
- ASR Configurator, Essentials and Atomic Testingβ36Updated 3 months ago
- Repo that hold write-ups of various research projects I did and/or overall InfoSec things I investigated/researched.β19Updated last month
- create a "simulated internet" cyber range environmentβ15Updated 2 weeks ago
- Expose a lot of MDE telemetry that is not easily accessible in any searchable formβ103Updated 2 months ago
- A simple tool designed to create Atomic Red Team tests with ease.β36Updated 2 months ago
- Living Off Security Toolsβ44Updated 3 months ago
- Table of AD and Azure assets and whether they belong to Tier Zeroβ25Updated last year
- Baseline a Windows System against LOLBASβ25Updated 9 months ago
- PowerShell script designed to help Incident Responders collect forensic evidence from local and remote Windows devices.β98Updated 5 months ago
- β49Updated last year
- β74Updated last week
- β53Updated 6 months ago