Pinned Repositories
adversary_emulation_library
An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.
at-ps
Adversary Tactics - PowerShell Training
azure-openai-in-a-day-workshop
Azure-Sentinel
Cloud-native SIEM for intelligent security analytics for your entire enterprise.
CBR-Queries
Collection of useful, up to date, Carbon Black Response Queries
decoding
Key and Lock Decoding Tools
detection-rules
Collection of YARA-L 2.0 sample rules for the Chronicle Detection API
DetectionLab
Vagrant & Packer scripts to build a lab environment complete with security tooling and logging best practices
dfir-toolset
Dump of organized knowledge on DFIR
DidierStevensSuite
Please no pull requests for this repository. Thanks!
ThisGrrlBytes's Repositories
ThisGrrlBytes/detection-rules
Collection of YARA-L 2.0 sample rules for the Chronicle Detection API
ThisGrrlBytes/adversary_emulation_library
An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.
ThisGrrlBytes/at-ps
Adversary Tactics - PowerShell Training
ThisGrrlBytes/azure-openai-in-a-day-workshop
ThisGrrlBytes/Azure-Sentinel
Cloud-native SIEM for intelligent security analytics for your entire enterprise.
ThisGrrlBytes/CBR-Queries
Collection of useful, up to date, Carbon Black Response Queries
ThisGrrlBytes/decoding
Key and Lock Decoding Tools
ThisGrrlBytes/DetectionLab
Vagrant & Packer scripts to build a lab environment complete with security tooling and logging best practices
ThisGrrlBytes/dfir-toolset
Dump of organized knowledge on DFIR
ThisGrrlBytes/DidierStevensSuite
Please no pull requests for this repository. Thanks!
ThisGrrlBytes/Event-Forwarding-Guidance
Configuration guidance for implementing collection of security relevant Windows Event Log events by using Windows Event Forwarding. #nsacyber
ThisGrrlBytes/EvilURL
Generate unicode evil domains for IDN Homograph Attack and detect them.
ThisGrrlBytes/EVTX-ATTACK-SAMPLES
Windows Events Attack Samples
ThisGrrlBytes/KQL
Kusto Query Language
ThisGrrlBytes/Microsoft-Defender-for-Cloud
Welcome to the Microsoft Defender for Cloud community repository
ThisGrrlBytes/physical-docs
This is a collection of legal wording and documentation used for physical security assessments. The goal is to hopefully allow this as a template for other companies to use and to protect themselves when conducting physical security assessments.
ThisGrrlBytes/Ransomware-Simulator
ThisGrrlBytes/red_team_tool_countermeasures
ThisGrrlBytes/RedTeam-Tactics-and-Techniques
Red Teaming Tactics and Techniques
ThisGrrlBytes/SysmonCommunityGuide
TrustedSec Sysinternals Sysmon Community Guide
ThisGrrlBytes/windows-event-forwarding
A repository for using windows event forwarding for incident detection and response
ThisGrrlBytes/WindowsDefenderATP-Hunting-Queries
Sample queries for Advanced hunting in Windows Defender ATP