Build a fast, free, and effective Threat Hunting/Incident Response Console with Windows Event Forwarding and PowerBI
-
Updated
Dec 11, 2017 - PowerShell
Build a fast, free, and effective Threat Hunting/Incident Response Console with Windows Event Forwarding and PowerBI
FalconGaze SecureTower DLP incident response scripts
Windows digital forensics and incident response scripts
incident response scripts
A PowerShell script for remotely disabling active Windows 10/2016 device network interfaces.
A collection of PowerShell scripts for querying Active Directory (AD) and Office 365 resources for security data.
Gets events from event logs and event tracing log files on local and remote computers enhances them with details from their XML representation.
ThreatHunt is a PowerShell repository that allows you to train your threat hunting skills.
a Forensic Script to remotely obtain information from a target machine.
This script allows for incident responders to scope specific indicators of compromise
Useful documents and utilities utilized in incident handling process to identify,contain and eradicate those who where illegally inside
Powering Up Incident Response with Power-Response
Small Incident Response Powershell script that collects various data from the system.Good alternative to run on a system while waiting for an approved AV scan( or instead of a scan)
Crowdstrike response script containing various functions for IR/triage
Manage loki scans over a large network.
Gets events from the Office 365 unified audit log and outputs their details into the pipeline
Custom program by LIFARS Incident Reponse Team to remove Dridex infection
A powershell tool that automate the remote forensic evidence adquisitions (triage) from Remote windows machines, using KAPE tool.
Incident Response tools and scripts
Add a description, image, and links to the incident-response topic page so that developers can more easily learn about it.
To associate your repository with the incident-response topic, visit your repo's landing page and select "manage topics."