Skip to content
View elhoim's full-sized avatar

Organizations

@MISP

Block or report elhoim

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
941 results for source starred repositories
Clear filter

Collection of example YARA-L rules for use within Google Security Operations

Python 368 86 Updated Mar 20, 2025

CF-Hero is a reconnaissance tool that uses multiple data sources to discover the origin IP addresses of Cloudflare-protected web applications

Go 722 30 Updated Jan 2, 2025

CISO Assistant is a one-stop-shop for GRC, covering Risk, AppSec and Compliance/Audit Management and supporting +70 frameworks worldwide with auto-mapping: NIST CSF, ISO 27001, SOC2, CIS, PCI DSS, …

Python 2,777 334 Updated Mar 21, 2025

Open YARA scan- and search engine

Python 22 2 Updated Feb 23, 2025

No-code multi-agent framework to build LLM Agents, workflows and applications with your data

Python 1,888 273 Updated Dec 11, 2024

An implementation of a Windows Event Collector server running on GNU/Linux.

Rust 70 22 Updated Mar 20, 2025

AV/EDR Lab environment setup references to help in Malware development

369 25 Updated Feb 19, 2025

MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs

PowerShell 717 59 Updated May 30, 2024

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

PowerShell 588 88 Updated Mar 14, 2025

ADXFlowmaster helps SecOps teams Threat Hunt suspicious network traffic inside & outside of Azure.

Bicep 35 Updated Oct 30, 2024

A tool for auditing network shares in an Active Directory environment

C# 42 15 Updated Apr 29, 2019

Remote access and Antivirus Logging Database

Python 42 4 Updated Apr 28, 2024

Sentinel Logic Apps, Playbooks and Workbooks to automate enrichment, incident analysis and more.

90 12 Updated Mar 3, 2025

Harden Windows Safely, Securely using Official Supported Microsoft methods and proper explanation | Always up-to-date and works with the latest build of Windows | Provides tools and Guides for Pers…

C# 2,311 181 Updated Mar 21, 2025

ShellSweeping the evil.

YARA 163 16 Updated Nov 25, 2024

A collection of PowerShell scripts for analyzing data from Microsoft 365 and Microsoft Entra ID

PowerShell 445 51 Updated Mar 7, 2025

Collection of Microsoft Identity Threat Detection and Response resources.

PowerShell 40 7 Updated Mar 1, 2025

An analytical challenge created to test junior analysts looking to try performing proactive and reactive cyber threat intelligence.

195 19 Updated Jul 3, 2024

Sample queries and data as part of the Microsoft Press book, The Definitive Guide to KQL

240 31 Updated Aug 28, 2024

Cover various security approaches to attack techniques and also provides new discoveries about security breaches.

PowerShell 469 74 Updated Jan 19, 2025

Takajō (鷹匠) is a Hayabusa results analyzer.

Nim 109 7 Updated Feb 27, 2025
Python 42 4 Updated Oct 22, 2024

This repo contains all my personal Sublime Security detection rules.

YARA 6 2 Updated Feb 25, 2025

A python utility for creating timestamp heatmaps in ploty

Python 5 Updated May 14, 2024

Using plotly to perfom data visualization of ransomware leak site data

Jupyter Notebook 13 3 Updated Feb 15, 2024

C2 Active Scanner

Go 55 7 Updated Jun 19, 2024

An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and security implications

Python 146 13 Updated Feb 22, 2025

Splunk Docker GitHub Repository

Python 481 260 Updated Feb 27, 2025

A repository of curated lists with elements such as IoCs to use for threat hunting & detection queries.

34 7 Updated Jul 23, 2024

Collection of Remote Management Monitoring tool artifacts, for assisting forensics and investigations

PowerShell 84 9 Updated Aug 2, 2024
Next