FalconForce
FalconForce
FalconFriday
Hunting queries and detections
BOF2shellcode
POC tool to convert CobaltStrike BOF files to raw shellcode
SysWhispers2BOF
Script to use SysWhispers2 direct system calls from Cobalt Strike BOFs
SOAPHound
SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Directory Web Services (ADWS) protocol.
FalconHound
FalconHound is a blue team multi-tool. It allows you to utilize and enhance the power of BloodHound in a more automated fashion. It is designed to be used in conjunction with a SIEM or other log aggre...
KQLAnalyzer
REST server that can analyze Kusto KQL queries against the Sentinel and Microsoft 365 Defender schemas.