
Blue-Team-Notes
You didn't think I'd go and leave the blue team out, right?

You didn't think I'd go and leave the blue team out, right?

Resources for DFIR Professionals Responding to the REvil Ransomware Kaseya Supply Chain Attack

Curated repository of threat intelligence feeds, IoC lists, YARA rules, and DFIR tool references for SOC/CERT/CTI detection and incident response.

Scalable threat intelligence platform that enriches observables and files using 200+ analyzers, with built-in GUI, REST API, and automated workflows…

Curated collection of Windows EVTX attack samples mapped to MITRE ATT&CK techniques, designed for testing detection scripts, DFIR training, and…

A curated collection of DFIR skills and workflows for InfoSec practitioners.

Curated index of incident response and DFIR tools, including memory and disk forensics, evidence collection, log analysis, playbooks, and educational…

YARA signature and IOC database for my scanners and tools

Awesome list of keywords and artifacts for Threat Hunting sessions

Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)

The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifact…

Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.

A list of cyber-chef recipes and curated links

Everything related to Linux Forensics

This page is a result of the ongoing hands-on research around advanced Linux attacks, detection and forensics techniques and tools.

🔬 Jupyter notebook to help automate some of the forensic analysis related to Citrix Netscalers compromised via CVE-2019-19781

Curated collection of detection rules and IOCs extracted from DFIR engagements and malware analyses to support threat hunting, incident response, and…

My Citrix ADC NetScaler CVE-2019-19781 Vulnerability DFIR notes.