Microsoft-Extractor-Suite

Data collector

A PowerShell module designed to collect data from Microsoft 365 and Azure for incident response and cyber security purposes.

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

GitHub

480 stars
19 watching
68 forks
Language: PowerShell
last commit: 9 days ago
microsoftmicrosoft365

Related projects:

Repository Description Stars
invoke-ir/ace A suite of tools for automating data collection and enrichment across multiple operating systems. 322
anssi-fr/dfir-o365rc A PowerShell module for collecting and analyzing logs from Microsoft 365 and Azure systems 250
securityjoes/forensicminer Automates evidence collection and analysis from Windows machines using PowerShell. 148
invoke-ir/powerforensics A C#-based framework for analyzing and investigating hard drive forensic data 1,385
inquest/omnibus A command-line tool for collecting and managing open-source intelligence data 327
op7ic/unix_collector A tool for collecting forensic data from various UNIX-like systems 32
fox-it/dissect.target Provides a programming API and command line tools to access various data sources inside disk images or file collections. 44
sekoialab/fastir_collector A tool for collecting and analyzing Windows system artefacts on live systems 506
nyxgeek/o365recon Retrieves information from O365 and AzureAD using valid credentials. 691
t0pcyber/hawk A PowerShell-based tool designed to facilitate forensic analysis in O365 environments by gathering and organizing relevant data. 708
mdecrevoisier/splunk-input-windows-baseline Provides an advanced Splunk configuration for collecting Windows log data relevant to threat detection, incident response, and forensic analysis. 81
deadtrickster/prometheus.ex A set of tools and integrations for Elixir applications to collect and report metrics to Prometheus. 411
omenscan/achoir A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. 183
f3eev/sharkexec A C# toolkit designed to extract credentials and browsing history from Windows systems. 295
orlikoski/cylr A tool that collects and preserves forensic artifacts from NTFS file systems without impacting the host system. 645