
reportly
AzureAD/EntraID user activity reporter for blue teams. Input a suspicious user and time frame to receive a detailed report of user info, actions, and…
cloud-securityidentity-access-managementincident-response+2
96

AzureAD/EntraID user activity reporter for blue teams. Input a suspicious user and time frame to receive a detailed report of user info, actions, and…

A tool to assist with network-based hunting for GRU's Drovorub malware c2

Digital Forensics Intelligence Framework

A collection of Tools and Rules for decoding Brute Ratel C4 badgers

SSH-based Linux incident response tool that executes diagnostic commands to collect network configs, logs, user accounts, and processes, then…

Threat intelligence report analyzing the xz-utils backdoor vulnerability (CVE-2024-3094)