Here are
53 public repositories
matching this topic...
Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into Forensic Artifact Events for UEBA, Detect Exploitation events with wide CVE Coverage, and Risk Scoring of CVE, UEBA, Forensic, and MITRE ATT&CK Events.
Updated
Nov 5, 2023
PowerShell
WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)
Updated
Feb 3, 2023
PowerShell
Practical Windows Forensics Training
Updated
Feb 29, 2024
PowerShell
SIEM Tactics, Techiques, and Procedures
Updated
Jan 7, 2025
PowerShell
Timeline of Active Directory changes with replication metadata
Updated
Jan 10, 2025
PowerShell
A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.
Updated
Nov 15, 2024
PowerShell
PowerShell module for Office 365 and Azure log collection
Updated
Nov 15, 2024
PowerShell
A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.
Updated
May 21, 2024
PowerShell
Updated
Feb 22, 2022
PowerShell
Powershell module for VMWare vSphere forensics
Updated
Nov 8, 2024
PowerShell
Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.
Updated
Nov 28, 2023
PowerShell
PowerShell script designed to help Incident Responders collect forensic evidence from local and remote Windows devices.
Updated
Aug 26, 2024
PowerShell
Provides various Windows Server Active Directory (AD) security-focused reports.
Updated
Dec 22, 2024
PowerShell
A PowerShell incident response script for quick triage
Updated
Jul 18, 2022
PowerShell
Powershell scripts for automating common system administration, blue team, and digital forensics tasks
Updated
Dec 28, 2022
PowerShell
Powershell script to help Speed up Threat hunting incident response processes
Updated
Feb 3, 2024
PowerShell
Tiny proof-of-concept PowerShell script to do threat hunting using ChatGPT (text-davinci-003)
Updated
Feb 14, 2023
PowerShell
An open source project aimed to replicate the Windows SIFT Machine and tools used during SANS Courses minus any payware software.
Updated
Oct 18, 2023
PowerShell
incident response scripts
Updated
Mar 4, 2019
PowerShell
A PS forensics tool for Scraping, Filtering and Exporting Windows Event Logs
Updated
Sep 4, 2019
PowerShell
Improve this page
Add a description, image, and links to the
forensics
topic page so that developers can more easily learn about it.
Curate this topic
Add this topic to your repo
To associate your repository with the
forensics
topic, visit your repo's landing page and select "manage topics."
Learn more
You can’t perform that action at this time.