Meerkat

Endpoint analysis tool

A collection of PowerShell modules for gathering and analyzing Windows-based endpoint artifacts.

A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.

GitHub

435 stars
31 watching
82 forks
Language: PowerShell
last commit: 6 days ago
Linked from 2 awesome lists

analysisbaselineblueforensicshuntincidentlogmonitorpurplereconredresponsescansecuritysiemsocteamthreatthreat-huntingtriage

Backlinks from these awesome lists:

Related projects:

Repository Description Stars
infocyte/pshunt A Powershell Threat Hunting Module designed to scan and survey remote endpoints for indicators of compromise or comprehensive system information. 279
mandiant/capa An executable file analysis tool that identifies capabilities and potential malicious behaviors. 4,873
fabian-jung/tsmp Tool to generate meta-programming capabilities from source code analysis 95
tcopeland/pippi Analyzes runtime behavior of Ruby class API usage in test suites to detect suboptimal usage patterns 287
dissectmalware/officeforensictools A Python-based collection of tools for gathering forensic information from Office documents 26
sentinelabs/sentinellabs_revcore_tools A suite of PowerShell scripts and tools for reverse engineering Windows malware analysis. 89
joeavanzato/trawler A PowerShell script designed to help Incident Responders discover potential indicators of compromise on Windows hosts by scanning for various persistence techniques. 308
hatriot/zarp A network attack tool designed to manage and analyze local networks 1,446
johnlatwc/pypowershellxray Decodes and analyzes encoded PowerShell scripts to identify potential shellcode and reverse-engineered APIs. 215
zer0yu/aggressorscripts A collection of PowerShell scripts providing tools and techniques for exploring and analyzing Windows systems 7
netspi/pesecurity A PowerShell module to analyze Windows binary files for various security features and compilation settings. 626
pdaian/mev A toolset for modeling and analyzing the extractable value of mining operations using Python. 126
mingyuan-xia/patdroid An Android-specific toolkit for analyzing and understanding APK files 118
mpast/mobileaudit An application that performs static analysis and malware detection on Android APKs to identify security vulnerabilities. 204
joxeankoret/pyew A command-line tool for analyzing malware and disassembling binary files 383