Repository navigation

#

purpleteam

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

XSLT
7465
4 天前

The goal of this repository is to document the most common techniques to bypass AppLocker.

PowerShell
1966
2 年前

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

XSLT
1603
6 年前

A collection of sources of documentation, as well as field best practices, to build/run a SOC

1364
2 个月前

APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the sea of windows event logs to decrease the time to uncover suspicious activity

Python
1329
5 个月前

Purple Team Exercise Framework

696
1 年前

Practical Windows Forensics Training

PowerShell
656
1 年前

Purple Team Resources for Enterprise Purple Teaming: An Exploratory Qualitative Study by Xena Olsen.

649
2 年前

A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-purple-teaming-183b7df7a2f4

Python
564
1 个月前

Uses Sharphound, Bloodhound and Neo4j to produce an actionable list of attack paths for targeted remediation.

Python
460
9 个月前

This page is a result of the ongoing hands-on research around advanced Linux attacks, detection and forensics techniques and tools.

281
2 年前

FudgeC2 - a command and control framework designed for team collaboration and post-exploitation activities.

Python
252
2 年前

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to extract juicy information such as LAPS passwords or any sensitive information on the screen. Blue Team member can reconstruct PNG files to see what an attacker did on a compromised host. It is extremely useful for a forensics team to extract timestamps after an attack on a host to collect evidences and perform further analysis.

Python
215
7 年前