dstaulcu's starred repositories
ScreenToGif
🎬 ScreenToGif allows you to record a selected area of your screen, edit and save it as a gif or video.
sysmon-modular
A repository of sysmon configuration modules
SysmonTools
Utilities for Sysmon
ThreatHunting
A Splunk app mapped to MITRE ATT&CK to guide your threat hunts
SysmonCommunityGuide
TrustedSec Sysinternals Sysmon Community Guide
SysmonSimulator
Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detections and correlation rules by Blue teams.
Posh-VirusTotal
PowerShell Module to interact with VirusTotal
Sigma-Hunting-App
A Splunk App containing Sigma detection rules, which can be updated from a Git repository.
Sigma2SplunkAlert
Converts Sigma detection rules to a Splunk alert configuration.
Rapid7Nexpose
The most feature complete PowerShell module available for the Rapid7 Nexpose/InsightVM APIv3
WindowsEventLogMetadata
Event metadata collected across all manifest-based ETW providers on Window 10 1903
Get-ADGroupMemberRecursive
Get AD group members recursively, tagged with root group DN and direct parent group DN
splunk-dashboard-framework-custom-inputs
Conf22 demo showing a flight price dashboard with SUI and Dashboard Framework
McAfee-ePO-PowerShell-API
Interact with McAfee ePO with PowerShell!
poolmon-powershell
Powershell script to view kernel memory pool information