frigidaire's Stars
halpomeranz/lmg
Script for automating Linux memory capture and analysis
coderforlife/ms-compress
Open source implementations of Microsoft compression algorithms
herrbischoff/awesome-macos-command-line
Use your macOS terminal shell to do awesome things.
miekg/lean
Pretty, minimal, one-line, fast ZSH prompt
CrowdStrike/CrowdDetox
The CrowdDetox plugin for Hex-Rays automatically removes junk code and variables from Hex-Rays function decompilations.
CrowdStrike/ember-timetree
Visualize hierarchical timeline data. Built with Ember.js and D3.js
CrowdStrike/Forensics
Scripts and code referenced in CrowdStrike blog posts
CrowdStrike/travel-laptop
Auxiliary documentation and scripts around "A Reasonably Safe Travel Burner Laptop"
MichaelGrafnetter/DSInternals
Directory Services Internals (DSInternals) PowerShell Module and Framework
appnexus/pyrobuf
A Cython alternative to Google's Python Protobuf library
gchq/Gaffer
A large-scale entity and relation database supporting aggregation of properties
valpackett/freepass
[DEPRECATED] password manager thing
volatilityfoundation/community
Volatility plugins developed and maintained by the community
PoorBillionaire/USN-Journal-Parser
Python script to parse the NTFS USN Journal
microsoft/microsoft-pdb
Information from Microsoft about the PDB format. We'll try to keep this up to date. Just trying to help the CLANG/LLVM community get onto Windows.
strozfriedberg/ntfs-linker
An NTFS journal parser
lolnate/vt-hunter
Automation for VirusTotal
etalab/croquemort
A micro service to check dead links efficiently and asynchronously. In use at https://www.data.gouv.fr/
gfoss/PSRecon
:rocket: PSRecon gathers data from a remote Windows host using PowerShell (v2 or later), organizes the data into folders, hashes all extracted data, hashes PowerShell and various system properties, and sends the data off to the security team. The data can be pushed to a share, sent over email, or retained locally.
lfit/ssh-gpg-smartcard-config
Configuration to use gpg smartcards for ssh authentication
googlearchive/simian
Simian is an enterprise-class Mac OS X software deployment solution. Google App Engine hosted server, with a client powered by the Munki open-source project.
munki/munki
Managed software installation for macOS —
mozilla-services/heka
DEPRECATED: Data collection and processing made easy.
google/santa
A binary authorization and monitoring system for macOS
google/testimony
Testimony is a single-machine, multi-process architecture for sharing AF_PACKET data across processes, allowsing packets to be copied from NICs into memory a single time, then shared across multiple processes.
drduh/macOS-Security-and-Privacy-Guide
Guide to securing and improving privacy on macOS
MITRECND/snugglefish
Simple NGram Fast Indexer & Searcher
MITRECND/chopshop
Protocol Analysis/Decoder Framework
google/codesearch
Fast, indexed regexp search over large file trees
BayshoreNetworks/yextend
Yara integrated software to handle archive file data.