
CVE-2020-1350-Fix
A registry-based workaround can be used to help protect an affected Windows server, and it can be implemented without requiring an administrator to…

A registry-based workaround can be used to help protect an affected Windows server, and it can be implemented without requiring an administrator to…

Python tool that parses the NTFS $MFT to copy locked files during incident response, bypassing OS locks by reading raw disk locations. Supports…

A Cloud Forensics Powershell module to run threat hunting playbooks on data from Azure and O365

Deploy a FullStack Prodo-Typing Agent into your AWS Account (KiroCrew,OpenClaw, Hermes, Claude Code, Codex)

Recognizing the most likely APT groups responsible for an incident


Welcome to the NCC Group Threat Intelligence Alert repo, here you will find the alerts which we have raised to our customers regarding intelligence…

CyberResponders is a terminal-based cybersecurity training game that enables players to respond to different cyber incident scenarios. Here, they…

Portable Linux RAM acquisition tool for forensics and incident response, capturing LiME-compatible images with optional compression and remote…

Picking up processes that have triggered ASR related to CVE-2022-30190

Cortex: a Powerful Observable Analysis and Active Response Engine

Zeek package for tracking long connections to report them before they have completed.

Anti-Virus for K8s. Protect your Applications running on Kubernetes from malicious attacks with pre-registered source code, runtime processes…

A Smart Log4Shell/Log4j/CVE-2021-44228 Scanner

general purpose workaround for the log4j CVE-2021-44228 vulnerability

This repository contains a list of new remediation scripts.

Real-time guardrails for Claude Code tool calls.

KQL Hunting for WinRAR CVE-2023-38831