asnblock's Stars
asnblock/Crescendo
Crescendo is a swift based, real time event viewer for macOS. It utilizes Apple's Endpoint Security Framework.
sfakiana/SANS-CTI-Summit-2021
Resources for SANS CTI Summit 2021 presentation
google/grr
GRR Rapid Response: remote live forensics for incident response
jipegit/OSXAuditor
OS X Auditor is a free Mac OS X computer forensics tool
mellow-hype/santa-bypass
A Santa bypass using in-memory binary loading and execution + Python ctypes for stealth
eset/malware-ioc
Indicators of Compromises (IOC) of our various investigations
google/santa
A binary authorization and monitoring system for macOS
csvoss/onelinerizer
Shamelessly convert any Python 2 script into a terrible single line of code
arkime/arkime
Arkime is an open source, large scale, full packet capturing, indexing, and database system.
mitre/caldera
Automated Adversary Emulation Platform
meteatamel/knative-tutorial
A collection of samples for Knative Serving, Knative Eventing and Knative-GCP projects.
signalapp/libsignal-protocol-java
upx/upx
UPX - the Ultimate Packer for eXecutables
apple/darwin-xnu
Legacy mirror of Darwin Kernel. Replaced by https://github.com/apple-oss-distributions/xnu
redcanaryco/atomic-red-team
Small and highly portable detection tests based on MITRE's ATT&CK.
lsjrepo/IotConverter
byte array to entity and entity to byte array tool