
fixing-google-secops-detections
Tuning and refactoring Google Chronicle Curated Detections to eliminate alert fatigue and fix logic gaps/bugs.

Tuning and refactoring Google Chronicle Curated Detections to eliminate alert fatigue and fix logic gaps/bugs.

Open-source XDR and SIEM platform for threat detection, log analysis, file integrity monitoring, vulnerability assessment, and compliance management…

Automation to assess the state of your M365 tenant against CISA's baselines

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out…

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

All-in-one penetration testing toolkit aggregating 185+ tools across 20 categories including information gathering, web & wireless attacks, phishing,…

A fork of the great TokenTactics with support for CAE and token endpoint v2

Orbis is an full spectrum automated external attack surface intelligent toolkit.

A collection of awesome penetration testing resources, tools and other shiny things

Entra ID user enumeration and auth method discovery via the public GetCredentialType API

290+ Automated checks across 14 compliance frameworks, interactive HTML report, no data leaves your machine.

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

Azure RedOps is a offensive security toolkit for assessing the security posture of Microsoft Entra ID

Kali365 - EvilTokens Replica

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

Repository of attack and defensive information for Business Email Compromise investigations

🔐 Learn authentication by building it right. An extensible, standards-compliant reference implementation for Cloudflare Workers with Hono, Turso,…

Collection of offensive tools targeting Microsoft Azure