Andrew Rathbun (AndrewRathbun)

AndrewRathbun

Geek Repo

Company:@krollcyber

Location:Michigan

Home Page:https://aboutdfir.com/

Twitter:@bunsofwrath12

Github PK Tool:Github PK Tool


Organizations
Digital-Forensics-Discord-Server

Andrew Rathbun's starred repositories

hugo

The world’s fastest framework for building websites.

Language:GoLicense:Apache-2.0Stargazers:72423Issues:1066Issues:7130

Avalonia

Develop Desktop, Embedded, Mobile and WebAssembly apps with C# and XAML. The most popular .NET Foundation community project.

unifios-utilities

A collection of enhancements for UnifiOS based devices

Language:ShellLicense:GPL-3.0Stargazers:3749Issues:144Issues:326

MemProcFS

MemProcFS

Language:CLicense:AGPL-3.0Stargazers:2638Issues:76Issues:265

EmuDeck

Emulator configurator for Steam Deck

Language:ShellLicense:GPL-3.0Stargazers:2622Issues:37Issues:615

DSInternals

Directory Services Internals (DSInternals) PowerShell Module and Framework

Language:C#License:Apache-2.0Stargazers:1301Issues:41Issues:1

SharpUp

SharpUp is a C# port of various PowerUp functionality.

Language:C#License:NOASSERTIONStargazers:1121Issues:43Issues:5

PMAT-labs

Labs for Practical Malware Analysis & Triage

NetPad

A cross-platform C# editor and playground.

Language:TypeScriptLicense:MITStargazers:748Issues:14Issues:85

LoadingIndicators.WPF

A collection of loading indicators for WPF

Language:C#License:UnlicenseStargazers:694Issues:35Issues:15
Language:C#License:Apache-2.0Stargazers:672Issues:42Issues:14

SQLRecon

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

Language:C#License:BSD-3-ClauseStargazers:569Issues:5Issues:11

Incident-Response-Powershell

PowerShell Digital Forensics & Incident Response Scripts.

Language:PowerShellLicense:BSD-3-ClauseStargazers:401Issues:9Issues:3

NtdsAudit

An Active Directory audit utility

Language:C#License:MITStargazers:375Issues:31Issues:17

MasterParser

MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs

Language:PowerShellLicense:MITStargazers:236Issues:8Issues:2

god-mode-rules

God Mode Detection Rules

Language:YARALicense:Apache-2.0Stargazers:123Issues:7Issues:0

droid-hole

Pi-hole® client made with Flutter

Language:DartLicense:Apache-2.0Stargazers:113Issues:2Issues:39

windows-insider

Technical documentation for the Windows Insider Program

Language:PowerShellLicense:CC-BY-4.0Stargazers:113Issues:28Issues:0

LogBoost

Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, Domain, ASN, DNS and Threat Indicator matches.

Language:GoLicense:MITStargazers:77Issues:2Issues:1

DriveFS-Sleuth

DriveFS Sleuth is a Python tool that automates investigating Google Drive File Stream disk artifacts, the tool has been developed based on research that has been performed by mounting different scenarios and noting down the changes in the Google Drive File Stream disk artifacts.

Language:PythonLicense:EPL-2.0Stargazers:53Issues:0Issues:0

ruler-project

Remote access and Antivirus Logging Database

Language:PythonLicense:Apache-2.0Stargazers:30Issues:0Issues:0

Jumplist-Browser

Automatic/Custom Destinations & LNK (MS-SHLLINK) Browser

Language:PowerShellLicense:GPL-2.0Stargazers:25Issues:2Issues:0

RingRecordingDownload

Console Application for Windows, Raspberry Pi, Linux and macOS which allows for downloading of Ring recorded events

Language:C#License:Apache-2.0Stargazers:19Issues:8Issues:15

RingSnapshotDownload

Console Application for Windows, Raspberry Pi, Linux and macOS which allows for downloading of snapshots from Ring devices

Language:C#License:Apache-2.0Stargazers:18Issues:5Issues:11

volatility-binaries

Contains compiled binaries of Volatility

Language:BatchfileStargazers:18Issues:4Issues:0

SharpAbeebus

A GeoIP lookup utility utilizing ipinfo.io services.

Language:C#License:MITStargazers:13Issues:2Issues:0

100daysoflc

A repository for all things that come out of the 100 Days of LC series. D&R rules, screenshots, logs, etc.

License:MITStargazers:1Issues:0Issues:0