panscan's repositories

Trawler

PowerShell script to help Incident Responders discover potential adversary persistence mechanisms.

Language:PowerShellLicense:MITStargazers:305Issues:2Issues:11

LogBoost

Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indicator matches.

Language:GoLicense:MITStargazers:91Issues:3Issues:1

RetrievIR

PowerShell script designed to help Incident Responders collect forensic evidence from local and remote Windows devices.

Language:PowerShellLicense:MITStargazers:84Issues:4Issues:2

crackdown

Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.

Language:GoLicense:MITStargazers:15Issues:2Issues:0

velociraptor-timeline-creator

VTC - Velociraptor Timeline Creator

Language:GoLicense:MITStargazers:15Issues:1Issues:0

ThreatSim

Threat Simulator for Enterprise Networks

Language:PythonLicense:MITStargazers:13Issues:2Issues:0

WMIHunter

Asynchronous Remote Evidence Retrieval for rapid network-wide threat hunting

Language:PowerShellLicense:MITStargazers:7Issues:2Issues:0

demo-react-flask-mui-auth

Example React app utilizing MaterialUI with Flask JWT-authed API backend.

Language:JavaScriptLicense:MITStargazers:5Issues:2Issues:0

MalCommands

Documenting Suspicious Command Lines

Language:HTMLStargazers:5Issues:2Issues:0

RAID

Rapid Acqusition of Interesting Data

Language:PowerShellStargazers:5Issues:2Issues:0

YARACheck

Update and use YARA rules from across the Internet against targeted files or directories.

Language:PythonLicense:MITStargazers:5Issues:0Issues:0

awesome-threat-intelligence

A curated list of Awesome Threat Intelligence resources

License:Apache-2.0Stargazers:4Issues:1Issues:0

PyShares

SharpShares..but in Python!

Language:PythonLicense:MITStargazers:4Issues:2Issues:0

LogonGrabber

Remote retrieval, filtering and analysis of Security.evtx logs for user activity analysis.

Language:PythonStargazers:3Issues:0Issues:0

SimpleScanner

Basic XSS, SQLi and LFI Vulnerability Scanner

Language:PythonStargazers:3Issues:2Issues:0

WinGraph

Graph Visualizer for Windows Event Logs

Language:PythonStargazers:3Issues:2Issues:0

AuthMap

Authentication Mapper - helping blue-teams analyze authentication activity in Active Directory networks.

Language:PowerShellLicense:MITStargazers:2Issues:0Issues:0
Language:PythonLicense:MITStargazers:2Issues:2Issues:0

NetPeek

TCP Port Scanner, FTP Anonymous Login Query, UDP Flooding

Language:PythonStargazers:2Issues:2Issues:0

PortCheck

Use TCP or UDP to check connection availability for remote hosts

Language:PythonStargazers:2Issues:2Issues:0
Language:BatchfileStargazers:1Issues:0Issues:0

Outlooked-IOC

Tool for scanning an Outlook Inbox in order to discover Indicators of Compromise - intelligence dissemination/bulletins, *-ISAC Threads, etc,

Language:PythonStargazers:1Issues:2Issues:0
Language:PythonStargazers:1Issues:0Issues:0

PMATCH

Recursive file-hasher and string-matcher

Language:PythonStargazers:1Issues:1Issues:0

QuickScan

Hunting for Abnormalities

Language:PythonLicense:MITStargazers:1Issues:0Issues:0
License:MITStargazers:0Issues:0Issues:0

velociraptor-docs

Documentation site for Velociraptor

Language:HTMLLicense:NOASSERTIONStargazers:0Issues:0Issues:0

WARD

Windows Artifact Retrieval and Discovery

Language:PythonLicense:MITStargazers:0Issues:0Issues:0