
HAFNIUM-IOC
A PowerShell script to identify indicators of exploitation of CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, and CVE-2021-26865

A PowerShell script to identify indicators of exploitation of CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, and CVE-2021-26865

Powershell module that can be used by Blue Teams, Incident Responders and System Administrators to hunt persistences implanted in Windows machines.…

AI-powered Windows diagnostic & auto-repair tool using Google Gemini. Detect crashes, optimize performance, scan for malware, and generate PowerShell…

PowerShell toolkit for AMSI/Defender detection-boundary analysis and static malware triage maps byte offsets to detection triggers, plus YARA,…

Script to check for IOC's created by ProxyNotShell (CVE-2022-41040 & CVE-2022-41082)

PowerShell tool for red teamers that clears execution evidence by stopping event logging, removing file and registry artifacts, and saving timestamps…

Audix is a PowerShell tool to quickly configure the Windows Event Audit Policies for security monitoring

A personal Windows SOC suite built in PowerShell — monitors network connections, resource usage, scheduled tasks and power events with severity…

My musings with PowerShell

A PowerShell Module Dedicated to Reverse Engineering

Quick One Line Powershell scripts to detect for webshells, possible zips, and logs.

Scanner for the Mini Shai-Hulud npm/PyPI supply chain worm (NHS CC-4781 · CVE-2026-45321). Detects gh-token-monitor persistence, payload artefacts,…

A collection of PowerShell modules designed for artifact gathering and reconnaisance of Windows-based endpoints.

Powershell module for VMWare vSphere forensics

Detection and analysis toolkit for CVE-2026-31431 Linux LPE, providing Python and PowerShell scanners, YARA rules, and forensic analysis for active…

Scans Windows IIS logs for signs of CVE-2025-53770 & CVE-2025-53771

PowerShell-based incident response toolkit that collects 25+ forensic artifacts (processes, network connections, registry, browser history) and…

MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs