Tony M Lambert (ForensicITGuy)

ForensicITGuy

Geek Repo

Company:@redcanaryco

Location:Greater Nashville Area, TN

Home Page:https://forensicitguy.github.io

Twitter:@ForensicITGuy

Github PK Tool:Github PK Tool

Tony M Lambert's repositories

libpreloadvaccine

Whitelisting LD_PRELOAD libraries using LD_AUDIT

Language:CLicense:MITStargazers:60Issues:4Issues:1

handy-cti

Resources I've found useful for my CTI work

License:MITStargazers:11Issues:5Issues:0

forensicitguy.github.io

ForensicITGuy Blog

Language:ShellLicense:MITStargazers:6Issues:2Issues:0

Invoke-PartyParrot

Bringing the Party Parrot to PowerShell

Language:PowerShellLicense:MITStargazers:6Issues:2Issues:0

Find-Logons

PowerShell tool to lookup AD user info and track down account lockouts in AD domain

Language:PowerShellStargazers:4Issues:3Issues:2

rhh-md5

Calculate the PE Rich Header MD5 hash

Language:PythonLicense:MITStargazers:3Issues:3Issues:0

atomic-red-team

Small and highly portable detection tests based on MITRE's ATT&CK.

Language:PowerShellLicense:MITStargazers:1Issues:1Issues:0

Clean-IISLogs

PowerShell tools to remove IIS logs according to retention policy

Language:PowerShellStargazers:1Issues:2Issues:0

CSharp-RunPE

Hide malware behind a legit process C#

Language:C#Stargazers:1Issues:1Issues:0
Language:PowerShellLicense:MITStargazers:1Issues:0Issues:0

malware-analyst-crash-course

Malware Analyst Crash Course

clth-study-group

Scripts used for a Jupiter Broadcasting Command-Line Threat Hunting Study Group

Language:ShellLicense:MITStargazers:0Issues:2Issues:0
Language:GoStargazers:0Issues:1Issues:0
Language:PowerShellStargazers:0Issues:0Issues:0
Language:PythonStargazers:0Issues:1Issues:0

reverse-bytes

A simple Python 3 script to reverse the order of bytes in a file and write the result to a second.

Language:PythonLicense:MITStargazers:0Issues:2Issues:0

salt-states

This repository maintains the SaltStack state files for the REMnux distro.

Language:SaltStackStargazers:0Issues:1Issues:0

tools

Scripts and tools accompanying HP Threat Research blog posts and reports.

Language:PythonLicense:MITStargazers:0Issues:1Issues:0

vscode-attack

Visual Studio Code extension for MITRE ATT&CK

Language:TypeScriptLicense:BSD-3-ClauseStargazers:0Issues:1Issues:0

yara

The pattern matching swiss knife

Language:CLicense:BSD-3-ClauseStargazers:0Issues:0Issues:0