Microsoft-Extractor-Suite

Data collector

A PowerShell module designed to collect data from Microsoft 365 and Azure for incident response and cyber security purposes.

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

GitHub

501 stars
21 watching
74 forks
Language: PowerShell
last commit: about 1 month ago
microsoftmicrosoft365

Related projects:

Repository Description Stars
invoke-ir/ace A suite of tools for automating data collection and enrichment across multiple operating systems. 322
anssi-fr/dfir-o365rc A PowerShell module for collecting and analyzing logs from Microsoft 365 and Azure systems 252
securityjoes/forensicminer Automates evidence collection and analysis from Windows machines using PowerShell. 149
invoke-ir/powerforensics A C#-based framework for analyzing and investigating hard drive forensic data 1,389
inquest/omnibus A command-line tool for collecting and managing open-source intelligence data 329
op7ic/unix_collector A script designed to automatically collect various system artifacts and data from Unix-like systems without the need for manual intervention or external dependencies. 33
fox-it/dissect.target Provides a programming API and command line tools to access various data sources inside disk images or file collections. 48
sekoialab/fastir_collector A tool for collecting and analyzing Windows system artefacts on live systems 507
nyxgeek/o365recon Retrieves information from O365 and AzureAD using valid credentials. 695
t0pcyber/hawk A PowerShell-based tool to gather information on O365 intrusions and potential breaches. 722
mdecrevoisier/splunk-input-windows-baseline Provides an advanced Splunk configuration for collecting Windows log data relevant to threat detection, incident response, and forensic analysis. 85
deadtrickster/prometheus.ex A set of tools and integrations for Elixir applications to collect and report metrics to Prometheus. 413
omenscan/achoir A scripting framework to simplify the process of gathering forensic artifacts from Windows devices. 184
f3eev/sharkexec A C# toolkit designed to extract credentials and browsing history from Windows systems. 295
orlikoski/cylr A tool that collects and preserves forensic artifacts from NTFS file systems without impacting the host system. 652