Nicolas 'Neeko' Prigent's starred repositories
markdown-here
Google Chrome, Firefox, and Thunderbird extension that lets you write email in Markdown and render it before sending.
BloodHound
Six Degrees of Domain Admin
sysmon-modular
A repository of sysmon configuration modules
BadBlood
BadBlood by @davidprowe, Secframe.com, fills a Microsoft Active Directory Domain with a structure and thousands of objects. The output of the tool is a domain similar to a domain in the real world. After BadBlood is ran on a domain, security analysts and engineers can practice using tools to gain an understanding and prescribe to securing Active Directory. Each time this tool runs, it produces different results. The domain, users, groups, computers and permissions are different. Every. Single. Time.
malware_training_vol1
Materials for Windows Malware Analysis training (volume 1)
Diamorphine
LKM rootkit for Linux Kernels 2.6.x/3.x/4.x/5.x/6.x (x86/x86_64 and ARM64)
LiME
LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices, such as those powered by Android. The tool supports acquiring memory either to the file system of the device or over the network. LiME is unique in that it is the first tool that allows full memory captures from Android devices. It also minimizes its interaction between user and kernel space processes during acquisition, which allows it to produce memory captures that are more forensically sound than those of other tools designed for Linux memory acquisition.
Aurora-Incident-Response
Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders
CortexDocs
Documentation of Cortex
dissect.cobaltstrike
Python library for dissecting and parsing Cobalt Strike related data such as Beacon payloads and Malleable C2 Profiles
rulesfinder
Machine-learn password mangling rules
Log4j_Detector
Detection of Log4j in memory
yara-rules
Repository of own YARA rules
sysmon-config
https://github.com/Swiftonsecurity/sysmon-config
iphrestore
Restore pictures and videos from iPhone backup