Phill Moore (randomaccess3)

randomaccess3

Geek Repo

Location:Sydney, Australia

Home Page:http://linktr.ee/phillmoore

Github PK Tool:Github PK Tool

Phill Moore's starred repositories

prowler

Prowler is an Open Source Security tool for AWS, Azure, GCP and Kubernetes to do security assessments, audits, incident response, compliance, continuous monitoring, hardening and forensics readiness. Includes CIS, NIST 800, NIST CSF, CISA, FedRAMP, PCI-DSS, GDPR, HIPAA, FFIEC, SOC2, GXP, Well-Architected Security, ENS and more

Language:PythonLicense:Apache-2.0Stargazers:10430Issues:127Issues:891

lnav

Log file navigator

Language:C++License:BSD-2-ClauseStargazers:7288Issues:80Issues:935

TotalRecall

This tool extracts and displays data from the Recall feature in Windows 11, providing an easy way to access information about your PC's activity snapshots.

Language:PythonLicense:NOASSERTIONStargazers:1872Issues:89Issues:1509

GraphRunner

A Post-exploitation Toolset for Interacting with the Microsoft Graph API

Language:PowerShellLicense:MITStargazers:824Issues:18Issues:11

Elevator

UAC bypass by abusing RPC and debug objects.

Language:C++License:MITStargazers:596Issues:11Issues:7

superdump

A service for automated crash-dump analysis

Language:C#License:NOASSERTIONStargazers:507Issues:36Issues:37

Incident-Response-Powershell

PowerShell Digital Forensics & Incident Response Scripts.

Language:PowerShellLicense:BSD-3-ClauseStargazers:451Issues:10Issues:5

Microsoft-Analyzer-Suite

A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID

Language:PowerShellLicense:GPL-3.0Stargazers:244Issues:10Issues:1

concierge

Repo for Concierge AI dev work

Language:PythonLicense:Apache-2.0Stargazers:154Issues:13Issues:32

mlget

A golang CLI tool to download malware from a variety of sources.

LevelDBDumper

Dumps all of the Key/Value pairs from a LevelDB database

Language:GoLicense:GPL-3.0Stargazers:59Issues:6Issues:10
Language:PowerShellStargazers:59Issues:6Issues:0

COATHANGER

IOCs and detection script for COATHANGER malware

Language:PythonLicense:Apache-2.0Stargazers:49Issues:5Issues:3

minusone

Script deobfuscator

Language:RustLicense:MITStargazers:45Issues:5Issues:0

TheThreatHuntLibrary

Library of threat hunts to get any user started!

Language:PythonLicense:UnlicenseStargazers:40Issues:5Issues:0

Rapid7-Labs

Rapid7 Labs operates as the division of Rapid7 focused on threat research. It is renowned for providing comprehensive threat intelligence, research and analytics.

Language:YARALicense:MITStargazers:35Issues:7Issues:1

seads

Search Engines ADs scanner - spotting malvertising in search engines has never been easier!

Language:GoLicense:Apache-2.0Stargazers:31Issues:2Issues:0

TCHunt

Quickly find encrypted files and files made-up of random data

Language:C++License:GPL-3.0Stargazers:22Issues:3Issues:0

MSEntraIDProtectionGuidance

MS Entra ID Protection Guidance

License:MITStargazers:18Issues:3Issues:0

Crowdstrike-Deploy

The ultimate solution for remotely deploying Crowdstrike sensors quickly and discreetly on any other EDR platform.

Language:PowerShellLicense:MITStargazers:17Issues:0Issues:0

mal2csv

Malformed Access Log to CSV - Convert Web Server Access Logs to CSV

Language:PythonLicense:AGPL-3.0Stargazers:15Issues:2Issues:0

velociraptor-timeline-creator

VTC - Velociraptor Timeline Creator

Language:GoLicense:MITStargazers:8Issues:0Issues:0

ocspcryptneturlcache

How to extract subject names from OCSP responses cached in Windows leveraging crt.sh

Language:Jupyter NotebookLicense:BSD-3-ClauseStargazers:8Issues:0Issues:0

CTF

Cyber Security CTF Challenges

SQLite_Forensics

A series of python scripts to extract information from SQLite Data Files

Language:PythonLicense:GPL-3.0Stargazers:6Issues:0Issues:0

yaradbg-container

A docker config file to run yaradbg in a container

Language:DockerfileLicense:Apache-2.0Stargazers:5Issues:1Issues:1
Language:PythonLicense:BSD-3-ClauseStargazers:5Issues:1Issues:1

okta-threat-hunting

Notebook from my "Guardians of Identity: OKTA’s Underworld" talk at Jupyterthon

Language:Jupyter NotebookLicense:MITStargazers:4Issues:1Issues:0

wiskess_rust

WISKESS automates the Windows evidence processing for Incident Response investigations. Rust version.

Language:PythonStargazers:4Issues:0Issues:0