Microsoft-Extractor-Suite

Data collector

A PowerShell module designed to collect data from Microsoft 365 and Azure for incident response and cyber security purposes.

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

GitHub

501 stars
21 watching
74 forks
Language: PowerShell
last commit: over 1 year ago
microsoftmicrosoft365

Related projects:

RepositoryDescriptionStars
invoke-ir/aceA suite of tools for automating data collection and enrichment across multiple operating systems.322
anssi-fr/dfir-o365rcA PowerShell module for collecting and analyzing logs from Microsoft 365 and Azure systems252
securityjoes/forensicminerAutomates evidence collection and analysis from Windows machines using PowerShell.149
invoke-ir/powerforensicsA C#-based framework for analyzing and investigating hard drive forensic data1,389
inquest/omnibusA command-line tool for collecting and managing open-source intelligence data329
op7ic/unix_collectorA script designed to automatically collect various system artifacts and data from Unix-like systems without the need for manual intervention or external dependencies.33
fox-it/dissect.targetProvides a programming API and command line tools to access various data sources inside disk images or file collections.48
sekoialab/fastir_collectorA tool for collecting and analyzing Windows system artefacts on live systems507
nyxgeek/o365reconRetrieves information from O365 and AzureAD using valid credentials.695
t0pcyber/hawkA PowerShell-based tool to gather information on O365 intrusions and potential breaches.722
mdecrevoisier/splunk-input-windows-baselineProvides an advanced Splunk configuration for collecting Windows log data relevant to threat detection, incident response, and forensic analysis.85
deadtrickster/prometheus.exA set of tools and integrations for Elixir applications to collect and report metrics to Prometheus.413
omenscan/achoirA scripting framework to simplify the process of gathering forensic artifacts from Windows devices.184
f3eev/sharkexecA C# toolkit designed to extract credentials and browsing history from Windows systems.295
orlikoski/cylrA tool that collects and preserves forensic artifacts from NTFS file systems without impacting the host system.652