svch0stz's repositories

TheThreatHuntLibrary

Library of threat hunts to get any user started!

Language:PythonLicense:UnlicenseStargazers:39Issues:5Issues:0
Language:PythonLicense:NOASSERTIONStargazers:3Issues:1Issues:0

Abused-Legitimate-Services

Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups

Stargazers:1Issues:0Issues:0

commons

A Collection of Python Utilities and Libraries I have developed to achieve common tasks which I use.

Language:PythonLicense:NOASSERTIONStargazers:1Issues:0Issues:0

HELK

The Hunting ELK

Language:Jupyter NotebookLicense:GPL-3.0Stargazers:1Issues:1Issues:0

mordor

Re-play Adversarial Techniques

Language:PythonLicense:GPL-3.0Stargazers:1Issues:1Issues:0

Azure

Azure AD Scripts

License:MITStargazers:0Issues:0Issues:0

Beta

Beta versions of my software

Stargazers:0Issues:0Issues:0

CVE-2022-22947

poc for CVE-2022-22947

Stargazers:0Issues:0Issues:0

detection

Detection in the form of Yara, Snort and ClamAV signatures.

Language:YARALicense:NOASSERTIONStargazers:0Issues:0Issues:0

DetectRaptor

A repository to share publicly available Velociraptor detection content

Language:YARAStargazers:0Issues:0Issues:0

go-recyclebin

Go parser for $I files in $Recycle.bin

Stargazers:0Issues:1Issues:0

Grafiki

Threat Hunting tool about Sysmon and graphs

Language:PythonLicense:LGPL-3.0Stargazers:0Issues:0Issues:0

KapeFiles

This repository serves as a place for community created Targets and Modules for use with KAPE.

License:MITStargazers:0Issues:0Issues:0
Language:HTMLStargazers:0Issues:0Issues:0

plaso_filters

Scripts to facilitate filtering with Plaso

Stargazers:0Issues:0Issues:0

RECmd

Command line access to the Registry

License:MITStargazers:0Issues:0Issues:0

sigma

Generic Signature Format for SIEM Systems

Language:PythonStargazers:0Issues:0Issues:0

signature-base

Signature base for my scanner tools

License:NOASSERTIONStargazers:0Issues:0Issues:0

SQLiteHunter

Hunt for SQLite files used by various applications

License:AGPL-3.0Stargazers:0Issues:0Issues:0

sysmon-config

Sysmon configuration file template with default high-quality event tracing

Stargazers:0Issues:0Issues:0

ThreatIngestor

Extract and aggregate threat intelligence.

Language:PythonLicense:GPL-2.0Stargazers:0Issues:0Issues:0

velociraptor

Digging Deeper....

Language:GoLicense:NOASSERTIONStargazers:0Issues:0Issues:0

velociraptor-docs

Documentation site for Velociraptor

Language:HTMLLicense:NOASSERTIONStargazers:0Issues:0Issues:0
Language:ShellStargazers:0Issues:0Issues:0
Language:PowerShellLicense:Apache-2.0Stargazers:0Issues:0Issues:0

Zircolite

A standalone SIGMA-based detection tool for EVTX.

Stargazers:0Issues:0Issues:0