Skip to content
View elhoim's full-sized avatar

Organizations

@MISP

Block or report elhoim

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Collection of example YARA-L rules for use within Google Security Operations

Python 366 86 Updated Mar 12, 2025

CF-Hero is a reconnaissance tool that uses multiple data sources to discover the origin IP addresses of Cloudflare-protected web applications

Go 721 30 Updated Jan 2, 2025

CISO Assistant is a one-stop-shop for GRC, covering Risk, AppSec and Compliance/Audit Management and supporting +70 frameworks worldwide with auto-mapping: NIST CSF, ISO 27001, SOC2, CIS, PCI DSS, …

Python 2,755 331 Updated Mar 16, 2025

Open YARA scan- and search engine

Python 21 2 Updated Feb 23, 2025

No-code multi-agent framework to build LLM Agents, workflows and applications with your data

Python 1,880 271 Updated Dec 11, 2024

An implementation of a Windows Event Collector server running on GNU/Linux.

Rust 70 22 Updated Mar 14, 2025

AV/EDR Lab environment setup references to help in Malware development

368 25 Updated Feb 19, 2025

MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs

PowerShell 717 59 Updated May 30, 2024

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

PowerShell 584 87 Updated Mar 14, 2025

ADXFlowmaster helps SecOps teams Threat Hunt suspicious network traffic inside & outside of Azure.

Bicep 34 Updated Oct 30, 2024

A tool for auditing network shares in an Active Directory environment

C# 42 15 Updated Apr 29, 2019

Remote access and Antivirus Logging Database

Python 42 4 Updated Apr 28, 2024

Sentinel Logic Apps, Playbooks and Workbooks to automate enrichment, incident analysis and more.

89 12 Updated Mar 3, 2025

Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build of Windows | Provides tools and Guides for Pers…

C# 2,300 182 Updated Mar 15, 2025

ShellSweeping the evil.

YARA 163 16 Updated Nov 25, 2024

A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID

PowerShell 438 51 Updated Mar 7, 2025

Collection of Microsoft Identity Threat Detection and Response resources.

PowerShell 40 7 Updated Mar 1, 2025

An analytical challenge created to test junior analysts looking to try performing proactive and reactive cyber threat intelligence.

193 19 Updated Jul 3, 2024

Sample queries and data as part of the Microsoft Press book, The Definitive Guide to KQL

239 31 Updated Aug 28, 2024

Cover various security approaches to attack techniques and also provides new discoveries about security breaches.

PowerShell 469 74 Updated Jan 19, 2025

Takajō (鷹匠) is a Hayabusa results analyzer.

Nim 108 7 Updated Feb 27, 2025

know the rules that have changed between 2 Sigma rules folder

Python 2 Updated May 27, 2022
Python 42 4 Updated Oct 22, 2024

This repo contains all my personal Sublime Security detection rules.

YARA 6 2 Updated Feb 25, 2025

A python utility for creating timestamp heatmaps in ploty

Python 5 Updated May 14, 2024

Using plotly to perfom data visualization of ransomware leak site data

Jupyter Notebook 13 3 Updated Feb 15, 2024

C2 Active Scanner

Go 55 7 Updated Jun 19, 2024

An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and security implications

Python 146 13 Updated Feb 22, 2025

Splunk Docker GitHub Repository

Python 481 260 Updated Feb 27, 2025

A repository of curated lists with elements such as IoCs to use for threat hunting & detection queries.

34 7 Updated Jul 23, 2024
Next