AzureHunter

Cloud forensics analyzer

A tool to analyze and mine cloud forensic data from Azure and O365 audit logs.

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

GitHub

771 stars
22 watching
85 forks
Language: PowerShell
last commit: almost 4 years ago
azforensicsazureazure-forensicsazuresearchercloud-forensicscybersecuritydfirdigital-forensicsincident-responsepowershellv5threat-huntingthreathuntingunifiedauditlog

Related projects:

RepositoryDescriptionStars
securityjoes/forensicminerAutomates evidence collection and analysis from Windows machines using PowerShell.149
t0pcyber/hawkA PowerShell-based tool to gather information on O365 intrusions and potential breaches.722
azure/cloud-katanaAutomates security assessment and research in cloud-native environments using event-driven serverless computing250
google/cloud-forensics-utilsTools for collecting and analyzing evidence from cloud platforms during incident response.467
deepfence/threatmapperAn application protection platform that monitors and analyzes cloud-native applications for vulnerabilities and threats.4,861
azure/stormspotterA tool for analyzing and visualizing Azure objects to help security teams understand potential attack surfaces.1,555
cmendible/azqrAnalyzes Azure resources to ensure compliance with best practices and recommendations0
azure/microsoft-defender-for-cloudProvides tools and resources for programmatically managing cloud security with Microsoft Defender1,717
deepfence/yarahunterAutomated malware scanning tool for containers and filesystems using YARA ruleset1,275
fsecurelabs/azuriteAssists in auditing and penetration testing of Microsoft Azure cloud environments by collecting and visualizing deployment information.250
netevert/sentinel-attackA tool to quickly deploy a threat hunting capability on Azure Sentinel using Sysmon and MITRE ATT&CK1,062
orlikoski/cdqrA tool for analyzing forensic data from various devices and platforms334
mandiant/mandiant-azure-ad-investigatorA PowerShell module designed to detect potential security threats in Azure AD environments617
hausec/powerzureA framework to assess and exploit resources within Azure cloud platform1,119
dark-kinga/cloudtoolsA cloud asset management tool for detecting and managing cloud security vulnerabilities in various cloud services915