Repository navigation

#

purpleteam

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

XSLT
7856
1 个月前

The goal of this repository is to document the most common techniques to bypass AppLocker.

PowerShell
2010
2 年前

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

XSLT
1614
7 年前

A collection of sources of documentation, as well as field best practices, to build/run a SOC

1475
15 天前

APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover suspicious activity

Python
1366
9 个月前

Purple Team Exercise Framework

728
2 年前

Practical Windows Forensics Training

PowerShell
682
1 年前

Purple Team Resources for Enterprise Purple Teaming: An Exploratory Qualitative Study by Xena Olsen.

663
2 年前

A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-183b7df7a2f4

Python
586
5 个月前

Uses Sharphound, Bloodhound and Neo4j to produce an actionable list of attack paths for targeted remediation.

Python
469
1 年前

This page is a result of the ongoing hands-on research around advanced Linux attacks, detection and forensics techniques and tools.

295
3 年前

FudgeC2 - a command and control framework designed for team collaboration and post-exploitation activities.

Python
256
2 年前

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to extract juicy information such as LAPS passwords or any sensitive information on the screen. Blue Team member can reconstruct PNG files to see what an attacker did on a compromised host. It is extremely useful for a forensics team to extract timestamps after an attack on a host to collect evidences and perform further analysis.

Python
217
7 年前