Thao Vo's starred repositories

Intrusion_data

This repository is created to store the artifacts for any intrusions I share publicly.

License:GPL-3.0Stargazers:23Issues:0Issues:0

chamber

CLI for managing secrets

Language:GoLicense:MITStargazers:2411Issues:0Issues:0

gcploit

These are tools we released with our 2020 defcon/blackhat talk https://www.youtube.com/watch?v=Ml09R38jpok

Language:PythonLicense:GPL-3.0Stargazers:158Issues:0Issues:0
Language:GoLicense:Apache-2.0Stargazers:57Issues:0Issues:0

sans-indexes

Indexes for SANS Courses and GIAC Certifications

Language:TeXStargazers:210Issues:0Issues:0

CRT

Contact: CRT@crowdstrike.com

Language:PowerShellLicense:MITStargazers:685Issues:0Issues:0

AzureAD-incident-response

Notes on responding to security breaches relating to Azure AD

Language:PythonStargazers:88Issues:0Issues:0

o365-attack-toolkit

A toolkit to attack Office365

Language:GoStargazers:1003Issues:0Issues:0

powershell-o365

PowerShell for O365

Language:PowerShellStargazers:5Issues:0Issues:0
Language:PythonLicense:MITStargazers:166Issues:0Issues:0

ALFA

ALFA stands for Automated Audit Log Forensic Analysis for Google Workspace. You can use this tool to acquire all Google Workspace audit logs and to perform automated forensic analysis on the audit logs using statistics and the MITRE ATT&CK Cloud Framework

Language:PythonLicense:MITStargazers:135Issues:0Issues:0

Microsoft-Extractor-Suite

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

Language:PowerShellLicense:GPL-2.0Stargazers:400Issues:0Issues:0

sansfor509

Public script from SANS FOR509 Enterprise Cloud Incident Response

Language:PythonLicense:GPL-2.0Stargazers:163Issues:0Issues:0

LinuxCmdLine

Create lab environment for Linux Command Line course

Language:ShellStargazers:33Issues:0Issues:0

canarytokens

Canarytokens helps track activity and actions on your network.

Language:PythonLicense:NOASSERTIONStargazers:1675Issues:0Issues:0

car

Cyber Analytics Repository

Language:PythonLicense:Apache-2.0Stargazers:870Issues:0Issues:0
Language:PythonLicense:MITStargazers:65Issues:0Issues:0

flame

Flame is self-hosted startpage for your server. Easily manage your apps and bookmarks with built-in editors.

Language:TypeScriptLicense:MITStargazers:4878Issues:0Issues:0

linkding

Self-hosted bookmark manager that is designed be to be minimal, fast, and easy to set up using Docker.

Language:PythonLicense:MITStargazers:5169Issues:0Issues:0

attackgen

AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK framework. The tool generates tailored incident response scenarios based on user-selected threat actor groups and your organisation's details.

Language:PythonLicense:GPL-3.0Stargazers:776Issues:0Issues:0

uac

UAC is a Live Response collection script for Incident Response that makes use of native binaries and tools to automate the collection of AIX, Android, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris systems artifacts.

Language:ShellLicense:Apache-2.0Stargazers:652Issues:0Issues:0

learning-malware-analysis

This repository contains sample programs that mimick behavior found in real-world malware. The goal is to provide source code that can be compiled and used for learning purposes, without having to worry about handling live malware.

Language:CStargazers:542Issues:0Issues:0

deepdarkCTI

Collection of Cyber Threat Intelligence sources from the deep and dark web

License:GPL-3.0Stargazers:3942Issues:0Issues:0

OpenFace

OpenFace – a state-of-the art tool intended for facial landmark detection, head pose estimation, facial action unit recognition, and eye-gaze estimation.

Language:MATLABLicense:NOASSERTIONStargazers:6656Issues:0Issues:0

chasing_your_tail

Tool for using wireless signals to see if you're being followed.

Language:PythonStargazers:629Issues:0Issues:0

InfoSecCreators

This is a RSS feed collection for all the InfoSec Content Creators

Stargazers:28Issues:0Issues:0
Language:HCLLicense:MITStargazers:2Issues:0Issues:0

snyk-scm-contributors-count

Count distinct contributor of Snyk watched repos across several SCM

Language:TypeScriptStargazers:30Issues:0Issues:0

Elasticsearch_rules

Elastic version of SOC prime watcher rules

License:BSD-3-ClauseStargazers:27Issues:0Issues:0

GOAD

game of active directory

Language:PowerShellLicense:GPL-3.0Stargazers:4487Issues:0Issues:0