
infosec-interview-questions
🗒️ A [work-in-progress] collection for interview questions for Information Security roles

🗒️ A [work-in-progress] collection for interview questions for Information Security roles

Parses Apple Unified Logs to extract process, thread, activity, timestamp, and message metadata from logarchives or live macOS systems into JSONL/CSV…

A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.

A Repository to Track Anti-Forensic Techniques

HTB OneTwoSeven full walkthrough: deterministic creds, chroot symlink escape, rewrite-rule bypass RCE, CVE-2024-1086 to root

Autopsy® is a digital forensics platform and graphical interface to The Sleuth Kit® and other digital forensics tools. It can be used by law…

🚨 Threat intel & incident response research on SharePoint "ToolShell" RCE zero-day (CVE-2025-53770). 🕵️♂️ Covers root-cause deserialization flaws,…

A repository hosting example goodware evtx logs containing sample software installation and basic user interaction

PowerShellProfiler

Basic log analysis tool to detect impossible travel via IP address geographic information


A collection of scripts for processing network forensics type data and intelligence, mainly into a postgres database.

Experimental Windows .text section Patch Detector

Tools to enumerate Windows Firewall Hook Drivers on Windows 2000, XP and 2003

This repository contains Velociraptor artifact and Chainsaw rules to help detect Microsoft Remote Access VPN activity

Some of my publicly available Malware analysis and Reverse engineering.

Proof-of-concept Velociraptor artifacts pack to showcase a remote Veeam forensics pipeline.