
macos-collector
macos-collector - Automated Collection of macOS Forensic Artifacts for DFIR
digital-forensicsforensicsincident-response+2
52

macos-collector - Automated Collection of macOS Forensic Artifacts for DFIR

Creates invisible Windows accounts with administrative privileges via direct SAM manipulation and RID hijacking, bypassing standard user management…

PowerShell tool for red teamers that clears execution evidence by stopping event logging, removing file and registry artifacts, and saving timestamps…

RedSails is a Python based post-exploitation project aimed at bypassing host based security monitoring and logging. DerbyCon 2017 Talk:…