Meerkat

Endpoint analysis tool

A collection of PowerShell modules for gathering and analyzing Windows-based endpoint artifacts.

A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.

GitHub

436 stars
31 watching
82 forks
Language: PowerShell
last commit: almost 2 years ago
Linked from 2 awesome lists

analysisbaselineblueforensicshuntincidentlogmonitorpurplereconredresponsescansecuritysiemsocteamthreatthreat-huntingtriage

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
infocyte/pshuntA Powershell Threat Hunting Module designed to scan and survey remote endpoints for indicators of compromise or comprehensive system information.280
mandiant/capaAn executable file analysis tool that identifies capabilities and potential malicious behaviors.4,944
fabian-jung/tsmpTool to generate meta-programming capabilities from source code analysis97
tcopeland/pippiAnalyzes runtime behavior of Ruby class API usage in test suites to detect suboptimal usage patterns287
dissectmalware/officeforensictoolsA Python-based collection of tools for gathering forensic information from Office documents26
sentinelabs/sentinellabs_revcore_toolsA suite of PowerShell scripts and tools for reverse engineering Windows malware analysis.90
joeavanzato/trawlerA PowerShell script designed to help Incident Responders discover potential indicators of compromise on Windows hosts by scanning for various persistence techniques.310
hatriot/zarpA network attack tool designed to manage and analyze local networks1,449
johnlatwc/pypowershellxrayDecodes and analyzes encoded PowerShell scripts to identify potential shellcode and reverse-engineered APIs.215
zer0yu/aggressorscriptsA collection of PowerShell scripts providing tools and techniques for exploring and analyzing Windows systems7
netspi/pesecurityA PowerShell module to analyze Windows binary files for various security features and compilation settings.626
pdaian/mevA toolset for modeling and analyzing the extractable value of mining operations using Python.125
mingyuan-xia/patdroidAn Android-specific toolkit for analyzing and understanding APK files118
mpast/mobileauditAn application that performs static analysis and malware detection on Android APKs to identify security vulnerabilities.206
joxeankoret/pyewA command-line tool for analyzing malware and disassembling binary files386