DFIRJoe's starred repositories
ClickHouse
ClickHouse® is a real-time analytics DBMS
trufflehog
Find, verify, and analyze leaked credentials
nuclei-templates
Community curated list of templates for the nuclei engine to find security vulnerabilities.
awesome-hacker-search-engines
A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more
APTSimulator
A toolset to make a system look as if it was the victim of an APT attack
EVTX-ATTACK-SAMPLES
Windows Events Attack Samples
bulk_extractor
This is the development tree. Production downloads are at:
magento-malware-scanner
Scanner, signatures and the largest collection of Magento malware
DFIRArtifactMuseum
The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifact validation processes as well as increase access to artifacts that may no longer be readily available anymore.
hayabusa-rules
Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.
EvtxHussar
Initial triage of Windows Event logs