cato's starred repositories

Language:TSQLStargazers:265Issues:0Issues:0

Microsoft-Defender-for-Cloud

Welcome to the Microsoft Defender for Cloud community repository

Language:PowerShellLicense:MITStargazers:1700Issues:0Issues:0

Microsoft-365-Defender-Hunting-Queries

Sample queries for Advanced hunting in Microsoft 365 Defender

Language:Jupyter NotebookLicense:MITStargazers:1934Issues:0Issues:0

Microsoft365DSC

Manages, configures, extracts and monitors Microsoft 365 tenant configurations

Language:PowerShellLicense:MITStargazers:1602Issues:0Issues:0

unifios-utilities

A collection of enhancements for UnifiOS based devices

Language:ShellLicense:GPL-3.0Stargazers:3933Issues:0Issues:0

IntroLabs

These are the labs for my Intro class. Yes, this is public. Yes, this is intentional.

Language:HTMLStargazers:1508Issues:0Issues:0

cyberchef-recipes

A list of cyber-chef recipes and curated links

Stargazers:2022Issues:0Issues:0

awesome-red-teaming

List of red team resources

License:MITStargazers:90Issues:0Issues:0

LazyAdmin

SysAdmin scripts for you to use.

Language:JavaScriptLicense:MITStargazers:613Issues:0Issues:0

Red-Teaming-Toolkit

This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.

License:GPL-3.0Stargazers:9086Issues:0Issues:0

Starkiller

Starkiller is a Frontend for PowerShell Empire.

Language:VueLicense:MITStargazers:1373Issues:0Issues:0
Language:HCLLicense:Apache-2.0Stargazers:608Issues:0Issues:0

winget-cli

WinGet is the Windows Package Manager. This project includes a CLI (Command Line Interface), PowerShell modules, and a COM (Component Object Model) API (Application Programming Interface).

Language:C++License:MITStargazers:23221Issues:0Issues:0

Hunting-Queries-Detection-Rules

KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.

Language:PythonLicense:BSD-3-ClauseStargazers:1242Issues:0Issues:0

FalconFriday

Hunting queries and detections

License:BSD-3-ClauseStargazers:725Issues:0Issues:0

MDATP

MDATP

Language:PowerShellLicense:MITStargazers:455Issues:0Issues:0

KQL

KQL queries for Advanced Hunting

License:MITStargazers:166Issues:0Issues:0

MustLearnKQL

Code included as part of the MustLearnKQL blog series

License:MITStargazers:980Issues:0Issues:0

Sentinel-Queries

Collection of KQL queries

License:MITStargazers:1419Issues:0Issues:0

SOC-OpenSource

This is a Project Designed for Security Analysts and all SOC audiences who wants to play with implementation and explore the Modern SOC architecture.

License:CC0-1.0Stargazers:625Issues:0Issues:0
Language:PowerShellLicense:GPL-3.0Stargazers:2185Issues:0Issues:0

powershell-intune-samples

This repository of PowerShell sample scripts show how to access Intune service resources. They demonstrate this by making HTTPS RESTful API requests to the Microsoft Graph API from PowerShell.

Language:PowerShellLicense:MITStargazers:1359Issues:0Issues:0
Stargazers:436Issues:0Issues:0

grr

GRR Rapid Response: remote live forensics for incident response

Language:PythonLicense:Apache-2.0Stargazers:4773Issues:0Issues:0

DFIR-Reference-Frameworks

Repository of public reference frameworks for the DFIR community.

License:GPL-3.0Stargazers:108Issues:0Issues:0

awesome-incident-response

A curated list of tools for incident response

License:Apache-2.0Stargazers:7648Issues:0Issues:0

atomic-red-team

Small and highly portable detection tests based on MITRE's ATT&CK.

Language:CLicense:MITStargazers:9756Issues:0Issues:0

Azure-Sentinel

Cloud-native SIEM for intelligent security analytics for your entire enterprise.

Language:Jupyter NotebookLicense:MITStargazers:4589Issues:0Issues:0

MFASweep

A tool for checking if MFA is enabled on multiple Microsoft Services

Language:PowerShellLicense:MITStargazers:1374Issues:0Issues:0

sof-elk

Configuration files for the SOF-ELK VM

Language:ShellLicense:GPL-3.0Stargazers:1493Issues:0Issues:0