DFIRJoe

DFIRJoe

Geek Repo

0

followers

0

following

Github PK Tool:Github PK Tool

DFIRJoe's starred repositories

ClickHouse

ClickHouse® is a real-time analytics DBMS

Language:C++License:Apache-2.0Stargazers:37064Issues:688Issues:21395

osquery

SQL powered operating system instrumentation, monitoring, and analytics.

Language:C++License:NOASSERTIONStargazers:21801Issues:678Issues:3334

ILSpy

.NET Decompiler with support for PDB generation, ReadyToRun, Metadata (&more) - cross-platform!

nuclei

Fast and customizable vulnerability scanner based on simple YAML based DSL.

trufflehog

Find, verify, and analyze leaked credentials

Language:GoLicense:AGPL-3.0Stargazers:15880Issues:169Issues:645

chisel

A fast TCP/UDP tunnel over HTTP

evilginx2

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication

Language:GoLicense:BSD-3-ClauseStargazers:10741Issues:301Issues:879

subfinder

Fast passive subdomain enumeration tool.

nuclei-templates

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Language:JavaScriptLicense:MITStargazers:9123Issues:197Issues:1518

kbd-audio

🎤⌨️ Acoustic keyboard eavesdropping

Language:C++License:MITStargazers:8490Issues:133Issues:36

awesome-hacker-search-engines

A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more

Language:ShellLicense:MITStargazers:7580Issues:118Issues:109

Havoc

The Havoc Framework.

Language:GoLicense:GPL-3.0Stargazers:6735Issues:102Issues:336

flare-vm

A collection of software installations scripts for Windows systems that allows you to easily setup and maintain a reverse engineering environment on a VM.

Language:PowerShellLicense:Apache-2.0Stargazers:6459Issues:199Issues:509

sshfs-win

SSHFS For Windows

Language:CLicense:NOASSERTIONStargazers:5083Issues:75Issues:416

hoaxshell

A Windows reverse shell payload generator and handler that abuses the http(s) protocol to establish a beacon-like reverse shell.

Language:PythonLicense:BSD-2-ClauseStargazers:3008Issues:45Issues:46

APTSimulator

A toolset to make a system look as if it was the victim of an APT attack

Language:BatchfileLicense:MITStargazers:2459Issues:122Issues:9

EVTX-ATTACK-SAMPLES

Windows Events Attack Samples

Language:HTMLLicense:GPL-3.0Stargazers:2215Issues:144Issues:12
Language:PowerShellLicense:GPL-3.0Stargazers:2167Issues:129Issues:15
Language:PythonLicense:NOASSERTIONStargazers:1918Issues:92Issues:1553

speakeasy

Windows kernel and user mode emulation.

Language:PythonLicense:MITStargazers:1485Issues:57Issues:74

bulk_extractor

This is the development tree. Production downloads are at:

Language:C++License:NOASSERTIONStargazers:1091Issues:75Issues:291

dissect

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from various disk and file formats, developed by Fox-IT (part of NCC Group).

magento-malware-scanner

Scanner, signatures and the largest collection of Magento malware

Language:HTMLLicense:GPL-3.0Stargazers:680Issues:82Issues:50

DFIRArtifactMuseum

The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifact validation processes as well as increase access to artifacts that may no longer be readily available anymore.

Language:HTMLLicense:MITStargazers:546Issues:30Issues:18

ntfstool

Forensics tool for NTFS (parser, mft, bitlocker, deleted files)

Language:C++License:MITStargazers:470Issues:24Issues:23

pySigma

Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)

Language:PythonLicense:LGPL-2.1Stargazers:389Issues:27Issues:81

RITA-J

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

Language:Jupyter NotebookLicense:GPL-3.0Stargazers:192Issues:18Issues:1

hayabusa-rules

Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.

Language:PythonLicense:NOASSERTIONStargazers:133Issues:9Issues:75

sigma-cli

The Sigma command line interface based on pySigma

EvtxHussar

Initial triage of Windows Event logs

Language:GoLicense:MITStargazers:86Issues:5Issues:4