Collect-MemoryDump
AzureHunter
Collect-MemoryDump | AzureHunter | |
---|---|---|
2 | 2 | |
211 | 764 | |
- | - | |
4.5 | 0.0 | |
2 months ago | over 1 year ago | |
PowerShell | PowerShell | |
GNU General Public License v3.0 only | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
Collect-MemoryDump
AzureHunter
What are some alternatives?
MemProcFS-Analyzer - MemProcFS-Analyzer - Automated Forensic Analysis of Windows Memory Dumps for DFIR
DetectionLabELK - DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.
sysmon-modular - A repository of sysmon configuration modules
CloudShell - Container Image for Azure Cloud Shell (https://azure.microsoft.com/en-us/features/cloud-shell/)
beagle - Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.
ARI - Azure Resource Inventory - It's a Powerful tool to create EXCEL inventory from Azure Resources with low effort
Hunting-Queries-Detection-Rules - KQL Queries. Defender For Endpoint and Azure Sentinel Hunting and Detection Queries in KQL. Out of the box KQL queries for: Advanced Hunting, Custom Detection, Analytics Rules & Hunting Rules.
Trawler - PowerShell script to help Incident Responders discover potential adversary persistence mechanisms.
CloudAdoptionFramework - Code samples and extended documentation to support the guidance provided in the Microsoft Cloud Adoption Framework
CyberThreatHunting - A collection of resources for Threat Hunters - Sponsored by Falcon Guard