Stars
Quickly search for references to a GUID in DLLs, EXEs, and drivers
FileTrove indexes files and creates metadata from them.
Native Mac APIs for Go. Previously known as MacDriver
Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-time alerting, helping small to medium-sized organizations se…
Diffusion Bee is the easiest way to run Stable Diffusion locally on your M1 Mac. Comes with a one-click installer. No dependencies or technical knowledge needed.
ESF modular ingestion tool for development and research.
Machine Interrogation To Identify Gaps & Techniques for Execution
This repository was created to aid in the deployment/maintenance of the Sysmon service on a large number of computers.
An Active Defense and EDR software to empower Blue Teams
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
A tool for parsing breached passwords
[⛔️ Deprecated] Venator is a python tool used to gather data for proactive detection of malicious activity on macOS devices.
Timeline of Active Directory changes with replication metadata
ATT&CK Remote Threat Hunting Incident Response
Random security related items such as scripts, regex, config files, etc...
PowerShell rebuilt in C# for Red Teaming purposes
Aggressor scripts I've made for Cobalt Strike
Collection of Aggressor scripts for Cobalt Strike 3.0+ pulled from multiple sources
Collection of Aggressor Scripts for Cobalt Strike
All materials from our Black Hat 2018 "Subverting Sysmon" talk
Small and highly portable detection tests based on MITRE's ATT&CK.
D3 Force Directed visualization for Splunk.




