Bquanman's starred repositories
veeam-creds
Collection of scripts to retrieve stored passwords from Veeam Backup
deepdarkCTI
Collection of Cyber Threat Intelligence sources from the deep and dark web
PassTheChallenge
Recovering NTLM hashes from Credential Guard
PowerShell-for-Hackers
This repository is a collection of powershell functions every hacker should know
MasterParser
MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs
MemProcFS-Analyzer
MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR
.NET-Deobfuscator
Lists of .NET Deobfuscator and Unpacker (Open Source)
pyinstxtractor-ng
PyInstaller Extractor Next Generation
awesome-volatility
A curated list of ressources for Volatility 2 & 3
Digital-Forensics-Script-for-Linux
Advanced Bash script designed for conducting digital forensics on Linux systems
Infosec_Reference
An Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.
VISION-ProcMon
A ProcessMonitor visualization application written in rust.
volatility_plugins
Volatility 3 Plugins
VBA-Macro-Reverse-Shell
Fully functioning reverse shell written entirely in VBA.
ransomware_notes
An Archive of Ransomware Notes Past and Present Collected by Zscaler ThreatLabz
ExtensionSpoofer
Spoof file icons and extensions in Windows
ThunderShell
Python / C# Unmanaged PowerShell based RAT
yetAnotherObfuscator
C# obfuscator that bypass windows defender
PersistenceSniper
Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines. Official Twitter/X account @PersistSniper. Made with ❤️ by @last0x00 and @dottor_morte
volatility3-symbols
Memory mapping profiles for forensic analysis using volatility 3
volatility2-profiles
Memory mapping profiles for forensic analysis using volatility 2
regexplore
Regexplore is a Volatility plugin designed to mimic the functionality of the Registry Explorer plugins in EZsuite
linux_coredump
Volatility plugin that attempts to create a core dump file starting from the memory of a Linux process