Stars
This repository contains an organized collection of queries (CQL) designed to facilitate Threat Hunting tasks, incident investigation, and proactive detection of anomalous or malicious activities i…
Sanctum is an experimental proof-of-concept EDR, designed to detect modern malware techniques, above and beyond the capabilities of antivirus. Built in Rust.
Detect whether a service is installed (blindly) and/or running (if exposing named pipes) on a remote machine without using local admin privileges.
k4nfr3 / panos-scanner
Forked from noperator/panos-scannerDetermine the Palo Alto PAN-OS software version of a remote GlobalProtect portal or management interface.
Real Intelligence Threat Analytics - Python addon scripts