Skip to content
View james-baud's full-sized avatar

Block or report james-baud

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Sentinel is a language and framework for policy built to be embedded in existing software to enable fine-grained, logic-based policy decisions. This repository contains a library of Sentinel polici…

HCL 236 174 Updated Feb 1, 2023

Automated Adversary Emulation Platform

Python 5,807 1,102 Updated Jan 27, 2025

CyLR - Live Response Collection Tool

C# 662 90 Updated Jun 1, 2022

Six Degrees of Domain Admin

PowerShell 10,011 1,744 Updated Jun 28, 2024

🚀 PSRecon gathers data from a remote Windows host using PowerShell (v2 or later), organizes the data into folders, hashes all extracted data, hashes PowerShell and various system properties, and se…

PowerShell 483 104 Updated Jul 29, 2017

Cloud Native Runtime Security

C++ 7,562 912 Updated Jan 29, 2025

Collaborative forensic timeline analysis

Python 2,673 595 Updated Jan 27, 2025

CimSweep is a suite of CIM/WMI-based tools that enable the ability to perform incident response and hunting operations remotely across all versions of Windows.

PowerShell 653 145 Updated Aug 19, 2019

Distributed & real time digital forensics at the speed of the cloud

Go 1,203 234 Updated Sep 13, 2019

Empire is a PowerShell and Python post-exploitation agent.

PowerShell 7,522 2,824 Updated Jan 19, 2020
Lua 48 20 Updated Sep 28, 2015

A Powershell incident response framework

PowerShell 1,579 268 Updated Nov 22, 2022

Rekall Memory Forensic Framework

Python 1 Updated Sep 9, 2015

A forensic evidence collection & analysis toolkit for OS X

Python 1 Updated Jun 26, 2015

[Project ended] rkt is a pod-native container engine for Linux. It is composable, secure, and built on standards.

Go 8,820 882 Updated Feb 24, 2020

The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production.

Shell 9,244 1,023 Updated Oct 21, 2024

Dockerfiles to be used to create Dockerhub trusted builds of NetflixOSS

Python 407 100 Updated Dec 15, 2018

Laika BOSS: Object Scanning System

Python 744 156 Updated Dec 16, 2024

SQL powered operating system instrumentation, monitoring, and analytics.

C++ 22,183 2,470 Updated Jan 28, 2025

Various public documents, whitepapers and articles about APT campaigns

3,534 881 Updated Jan 1, 2024

PoshSec PowerShell Module

PowerShell 160 37 Updated May 27, 2018

PowerShell scripts for the PoshSec Framework

PowerShell 22 6 Updated Aug 18, 2014

Digital Forensics and Incident Response

1 Updated Jul 30, 2012

DEPRECATED - replaced with "monitor"

C 122 82 Updated Dec 14, 2015

The Sleuth Kit (TSK) is a library and collection of command line tools that allow you to investigate volume and file system data. The library can be incorporated into larger digital forensics tools…

C 4 Updated Sep 2, 2013

Cross-platform, open-source shellbag parser

Python 150 36 Updated Jan 31, 2023

Tool suite for inspecting NTFS artifacts.

Python 217 42 Updated Nov 1, 2023

Pure Python parser for Windows Registry hives.

Python 426 102 Updated Jan 27, 2025

Timeline visualization application

Java 451 74 Updated Jul 30, 2010

My utils written for Reverse Engineering, mainly in python

Python 48 21 Updated Feb 11, 2014