Skip to content
View joeavanzato's full-sized avatar

Block or report joeavanzato

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and security implications

Python 145 12 Updated Feb 22, 2025

Fully functional, from-scratch alternative to the Cobalt Strike Beacon (red teaming tool), offering transparency and flexibility for security professionals and enthusiasts.

C 213 38 Updated Mar 13, 2024

Extracted Yara rules from Windows Defender mpavbase and mpasbase

YARA 372 60 Updated Feb 24, 2025

An easy-to-use, cross-platform utility for capturing and diffing file system metadata snapshots.

Go 4 2 Updated Oct 8, 2024

LotL RMM

MDX 130 24 Updated Mar 4, 2025

PowerShell script designed to help Incident Responders collect forensic evidence from local and remote Windows devices.

PowerShell 100 14 Updated Aug 26, 2024

Authentication Mapper - helping blue-teams analyze authentication activity in Active Directory networks.

PowerShell 2 Updated Jul 24, 2024

Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indicator matches.

Go 102 2 Updated Oct 11, 2024

VTC - Velociraptor Timeline Creator

Go 15 2 Updated May 15, 2024

SharpShares..but in Python!

Python 4 Updated Sep 1, 2022

Make texture/icon from 3D object in Unity

C# 10 1 Updated Feb 22, 2022

A background jobs library for Go that allows pluggable brokers/store for distribution.

Go 408 22 Updated Feb 24, 2025

Converts Bohemia edds to png

C# 15 2 Updated Feb 10, 2024

Documentation for https://ipapi.is/ and repository for the Geolocation, ASN and Hosting Ranges databases.

95 3 Updated Mar 5, 2025

MaxMind DB Reader for Go

Go 632 102 Updated Mar 5, 2025

IP subnet iterator for Go

Go 19 4 Updated May 19, 2021

Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.

Go 15 3 Updated Oct 28, 2023

Tooling to generate metadata for Win32 APIs in the Windows Driver Kit (WDK).

C++ 98 10 Updated Feb 4, 2025

Update and use YARA rules from across the Internet against targeted files or directories.

Python 5 Updated Jun 29, 2023

Fileless Command Execution for Lateral Movement in Nim

Nim 367 38 Updated Dec 12, 2023

</> htmx - high power tools for HTML

JavaScript 43,791 1,416 Updated Feb 25, 2025

Asynchronous Remote Evidence Retrieval for rapid network-wide threat hunting

PowerShell 8 2 Updated Oct 4, 2022

A lightweight shared library for Rimworld modding.

C# 250 58 Updated Jul 24, 2024

Invoke-AtomicRedTeam is a PowerShell module to execute tests as defined in the [atomics folder](https://github.com/redcanaryco/atomic-red-team/tree/master/atomics) of Red Canary's Atomic Red Team p…

PowerShell 885 205 Updated Feb 28, 2025

HASH (HTTP Agnostic Software Honeypot)

JavaScript 137 8 Updated May 1, 2024

Pester is the ubiquitous test and mock framework for PowerShell.

PowerShell 3,145 476 Updated Feb 22, 2025

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines. Official Twitter/X account @PersistSniper. Made w…

PowerShell 1,970 196 Updated Dec 11, 2024

Various ways to execute shellcode

C# 483 78 Updated Mar 13, 2024
Next