0xSeanG's Stars
JPCERTCC/LogonTracer
Investigate malicious Windows logon by visualizing and analyzing Windows event log
cea-sec/usbsas
Tool and framework for securely reading untrusted USB mass storage devices.
cisagov/ScubaGear
Automation to assess the state of your M365 tenant against CISA's baselines
trustedsec/Zoinks
Manage Engine Decrypter
NetSPI/PowerHunt
PowerHunt is a modular threat hunting framework written in PowerShell that leverages PowerShell Remoting for data collection on scale.
NetSPI/PowerHuntShares
PowerHuntShares is an audit script designed in inventory, analyze, and report excessive privileges configured on Active Directory domains.
cisagov/RedEye
RedEye is a visual analytic tool supporting Red & Blue Team operations
microsoft/aka
Doc page listing all public aka.ms links for Microsoft admin portals
wealthsimple/odef
This is a public template repository for the Open Detection Engineering Framework
blacklanternsecurity/MANSPIDER
Spider entire networks for juicy files sitting on SMB shares. Search filenames or file content - regex supported!
SnaffCon/Snaffler
a tool for pentesters to help find delicious candy, by @l0ss and @Sh3r4 ( Twitter: @/mikeloss and @/sh3r4_hax )
BishopFox/cloudfox
Automating situational awareness for cloud penetration tests.
WhiteOakSecurity/GoAWSConsoleSpray
Tool to spray AWS Console IAM Logins
wiz-sec-public/cloud-middleware-dataset
dhoelzer/ShowMeThePackets
Useful network monitoring, analysis, and active response tools used or mentioned in the SANS SEC503 course (https://www.sans.org/course/intrusion-detection-in-depth)
firefart/hijagger
Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration
DataDog/stratus-red-team
:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
hexa-org/policy-orchestrator
Hexa Policy Orchestrator enables you to manage all of your access policies consistently across software providers.
punk-security/smbeagle
SMBeagle - Fileshare auditing tool.
skahwah/wordsmith
The aim of Wordsmith is to assist with creating tailored wordlists. This is mostly based on geolocation.
iknowjason/edge
Recon tool for cloud provider attribution. Supports AWS, Azure, Google, Cloudflare, and Digital Ocean.
dafthack/CloudPentestCheatsheets
This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage cloud providers.
RhinoSecurityLabs/pacu
The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.
RhinoSecurityLabs/GCP-IAM-Privilege-Escalation
A collection of GCP IAM privilege escalation methods documented by the Rhino Security Labs team.
carnal0wnage/weirdAAL
WeirdAAL (AWS Attack Library)
LOLBAS-Project/LOLBAS
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
matterpreter/DefenderCheck
Identifies the bytes that Microsoft Defender flags on.
Velocidex/velociraptor
Digging Deeper....
CravateRouge/bloodyAD
BloodyAD is an Active Directory Privilege Escalation Framework
iknowjason/PurpleCloud
A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-183b7df7a2f4