Skip to content
View aaronherman's full-sized avatar

Block or report aaronherman

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A collection of tools and detections for the Sliver C2 Frameworj

Python 115 10 Updated Apr 24, 2023

A local-first personal finance app

TypeScript 17,348 1,345 Updated Feb 12, 2025

Information Assurance and Security (CS460)

Python 6 7 Updated Feb 5, 2025

Useful network monitoring, analysis, and active response tools used or mentioned in the SANS SEC503 course (https://www.sans.org/course/intrusion-detection-in-depth)

Jupyter Notebook 220 43 Updated Dec 29, 2024

UI, API, and Scanner (Rules Engine) services for Merry Maker

TypeScript 123 15 Updated Jul 17, 2024

Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.

Jupyter Notebook 200 28 Updated Jul 21, 2022

A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.

Python 4,108 821 Updated Feb 15, 2024

Main Sigma Rule Repository

Python 8,684 2,262 Updated Feb 7, 2025

GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems

HTML 11,217 1,355 Updated Oct 28, 2024

✨ A curated list of awesome threat detection and hunting resources 🕵️‍♂️

4,013 675 Updated Jul 15, 2024

A command-line tool and Rust library with Python bindings for generating regular expressions from user-provided test cases

Rust 7,386 173 Updated Feb 12, 2025

The Hunting ELK

Jupyter Notebook 3,792 689 Updated Jun 1, 2024

Zeek Analysis Tools (ZAT): Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark

Jupyter Notebook 432 110 Updated Jan 16, 2024

Scapy: the Python-based interactive packet manipulation program & library.

Python 11,066 2,062 Updated Feb 6, 2025

Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs and Suricata alerts.

Python 2,046 341 Updated Jan 20, 2025

Contains Logstash related content including tons of Logstash configurations

Python 253 54 Updated Aug 25, 2021

Open EDR public repository

C++ 2,340 456 Updated Jan 13, 2024

Identifies the bytes that Microsoft Defender flags on.

C# 2,393 424 Updated Sep 14, 2023

Automatically create YARA rules from malicious documents.

Python 208 32 Updated May 16, 2022

Re-play Security Events

PowerShell 1,621 238 Updated Mar 20, 2024

A forensics tool to convert the data in the Windows srum (System Resource Usage Monitor) database to an xlsx spreadsheet.

Python 602 99 Updated Nov 12, 2024

SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

Python 13,691 2,362 Updated Dec 15, 2024

GRR Rapid Response: remote live forensics for incident response

Python 4,838 768 Updated Nov 19, 2024

Performant type-checking for python.

OCaml 6,916 444 Updated Feb 13, 2025

Tsunami is a general purpose network security scanner with an extensible plugin system for detecting high severity vulnerabilities with high confidence.

Java 8,344 896 Updated Feb 12, 2025

GeoIP update client code

Go 761 141 Updated Feb 13, 2025

Guidance for mitigation web shells. #nsacyber

YARA 972 204 Updated Jun 18, 2023

A community version of the Open Decision Framework - A flexible, open approach to making decisions and leading projects

811 123 Updated Dec 5, 2024

Script to perform bulk local GeoIP lookups (ASN and geo) for IP addresses

Python 98 26 Updated Jan 16, 2020

Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis.

Go 2,508 362 Updated Jul 10, 2024
Next