Meerkat
Endpoint analysis tool
A collection of PowerShell modules for gathering and analyzing Windows-based endpoint artifacts.
A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.
435 stars
31 watching
82 forks
Language: PowerShell
last commit: 6 days ago
Linked from 2 awesome lists
analysisbaselineblueforensicshuntincidentlogmonitorpurplereconredresponsescansecuritysiemsocteamthreatthreat-huntingtriage
Related projects:
Repository | Description | Stars |
---|---|---|
infocyte/pshunt | A Powershell Threat Hunting Module designed to scan and survey remote endpoints for indicators of compromise or comprehensive system information. | 279 |
mandiant/capa | An executable file analysis tool that identifies capabilities and potential malicious behaviors. | 4,873 |
fabian-jung/tsmp | Tool to generate meta-programming capabilities from source code analysis | 95 |
tcopeland/pippi | Analyzes runtime behavior of Ruby class API usage in test suites to detect suboptimal usage patterns | 287 |
dissectmalware/officeforensictools | A Python-based collection of tools for gathering forensic information from Office documents | 26 |
sentinelabs/sentinellabs_revcore_tools | A suite of PowerShell scripts and tools for reverse engineering Windows malware analysis. | 89 |
joeavanzato/trawler | A PowerShell script designed to help Incident Responders discover potential indicators of compromise on Windows hosts by scanning for various persistence techniques. | 308 |
hatriot/zarp | A network attack tool designed to manage and analyze local networks | 1,446 |
johnlatwc/pypowershellxray | Decodes and analyzes encoded PowerShell scripts to identify potential shellcode and reverse-engineered APIs. | 215 |
zer0yu/aggressorscripts | A collection of PowerShell scripts providing tools and techniques for exploring and analyzing Windows systems | 7 |
netspi/pesecurity | A PowerShell module to analyze Windows binary files for various security features and compilation settings. | 626 |
pdaian/mev | A toolset for modeling and analyzing the extractable value of mining operations using Python. | 126 |
mingyuan-xia/patdroid | An Android-specific toolkit for analyzing and understanding APK files | 118 |
mpast/mobileaudit | An application that performs static analysis and malware detection on Android APKs to identify security vulnerabilities. | 204 |
joxeankoret/pyew | A command-line tool for analyzing malware and disassembling binary files | 383 |