Fabian Bader (f-bader)

f-bader

Geek Repo

Company:glueckkanja AG

Location:Hamburg, Germany

Home Page:https://cloudbrothers.info/en/

Twitter:@fabian_bader

Github PK Tool:Github PK Tool

Fabian Bader's starred repositories

theZoo

A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.

Language:PythonLicense:NOASSERTIONStargazers:11199Issues:811Issues:154

awesome-incident-response

A curated list of tools for incident response

usbipd-win

Windows software for sharing locally connected USB devices to other machines, including Hyper-V guests and WSL 2.

Language:C#License:GPL-3.0Stargazers:3568Issues:51Issues:474

timesketch

Collaborative forensic timeline analysis

Language:PythonLicense:Apache-2.0Stargazers:2586Issues:136Issues:1321

ascii-image-converter

A cross-platform command-line tool to convert images into ascii art and print them on the console. Now supports braille art!

Language:GoLicense:Apache-2.0Stargazers:2174Issues:22Issues:31

EDRSilencer

A tool uses Windows Filtering Platform (WFP) to block Endpoint Detection and Response (EDR) agents from reporting security events to the server.

ADACLScanner

Repo for ADACLScan.ps1 - Your number one script for ACL's in Active Directory

Language:PowerShellLicense:MS-PLStargazers:954Issues:54Issues:39

PoolParty

A set of fully-undetectable process injection techniques abusing Windows Thread Pools

Language:C++License:BSD-3-ClauseStargazers:925Issues:13Issues:3

LME

Logging Made Easy (LME) is a no-cost and open logging and protective monitoring solution serving all organizations.

Language:PythonLicense:NOASSERTIONStargazers:827Issues:20Issues:277

OrgKit

Provision a brand-new company with proper defaults in Windows, Offic365, and Azure

GraphStrike

Cobalt Strike HTTPS beaconing over Microsoft Graph API

Incident-Response-Powershell

PowerShell Digital Forensics & Incident Response Scripts.

Language:PowerShellLicense:BSD-3-ClauseStargazers:460Issues:10Issues:5

powershell-yaml

PowerShell CmdLets for YAML format manipulation

Language:PowerShellLicense:Apache-2.0Stargazers:424Issues:13Issues:101

XLL_Phishing

XLL Phishing Tradecraft

Language:CLicense:MITStargazers:390Issues:8Issues:0

maester

The core repository for the Maester module with helper cmdlets that will be called from the Pester tests.

Language:HTMLLicense:MITStargazers:299Issues:11Issues:171

passkey-authenticator-aaguids

This repo contains a community sourced list of AAGUIDs for passkey authenticators to help with naming in end user management UIs

AntimalwareBlight

Execute PowerShell code at the antimalware-light protection level.

Language:PowerShellLicense:BSD-3-ClauseStargazers:135Issues:4Issues:0

DefenderATPQueries

Hunting Queries for Defender ATP

License:GPL-3.0Stargazers:71Issues:2Issues:0

AzureADJoinedMachinePTC

Tool to perform lateral movement between AAD joined devices

Language:PythonLicense:MITStargazers:52Issues:4Issues:1

Tier0-User-Management

Maintain Tier 0 users. This script take care all Tier 0 users are in the correct OU or in the default user container and add the Kerberos Authentication policy to the user

WDACme

A WDAC configuration repository with the sole intention of enriching MDE

License:MITStargazers:27Issues:4Issues:0
Language:PowerShellLicense:MITStargazers:18Issues:3Issues:0

AzureAiTMFunction

Azure AiTM Function PoC to phish Entra ID Credentials

Language:PowerShellStargazers:16Issues:2Issues:0

intune-change-tracking

Track changes to Microsoft Intune via git and RSS

Language:PythonLicense:MITStargazers:9Issues:2Issues:1

lilo-pulse-secure-decrypt

LILO based Pulse Secure appliance disk image decryptor

PSMSGraphBatchRequest

This Module assists the creation of Batch Requests for Microsoft Graph by converting PSObjects to JSON with proper schema validation

Language:PowerShellLicense:MITStargazers:6Issues:1Issues:0
Language:PowerShellStargazers:1Issues:0Issues:0