Michael Haag

Results 9 repositories owned by Michael Haag

sysmon-dfir

891
Stars
185
Forks
Watchers

Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.

hunt-detect-prevent

156
Stars
44
Forks
Watchers

Lists of sources and utilities utilized to hunt, detect and prevent evildoers.

app_splunk_sysmon_hunter

38
Stars
7
Forks
Watchers

Splunk App to assist Sysmon Threat Hunting

bookish-happiness

28
Stars
6
Forks
Watchers

OG Atomic Red Team

CBR-Queries

82
Stars
21
Forks
Watchers

Collection of useful, up to date, Carbon Black Response Queries

notes

75
Stars
11
Forks
Watchers

Full of public notes and Utilities

sysmon-splunk-app

45
Stars
16
Forks
Watchers

Sysmon Splunk App

ASRGEN

33
Stars
5
Forks
Watchers

ASR Configurator, Essentials and Atomic Testing

ShellSweep

49
Stars
6
Forks
Watchers

ShellSweeping the evil.