Skip to content
View Qazeer's full-sized avatar

Block or report Qazeer

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

USN Journal full path builder

Python 42 4 Updated Sep 16, 2024

Local & remote Windows DLL Proxying

Python 160 23 Updated Jun 17, 2024

Digital Forensics Investigation Platform

JavaScript 789 116 Updated Oct 12, 2024

MemProcFS

C 3,278 403 Updated Dec 28, 2024

Automated YARA Rule Standardization and Quality Assurance Tool

Python 177 18 Updated Jan 5, 2025

Yet Another Memory Analyzer for malware detection

C++ 175 89 Updated May 31, 2024

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

PowerShell 509 74 Updated Dec 22, 2024

HVNC for Cobalt Strike

C 1,178 184 Updated Dec 7, 2023

AADInternals PowerShell module for administering Azure AD and Office 365

PowerShell 1,335 219 Updated Dec 13, 2024

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

Python 1,346 173 Updated Jul 31, 2024

Public script from SANS FOR509 Enterprise Cloud Incident Response

Python 184 40 Updated Sep 13, 2024

Configuration files for the SOF-ELK VM

Shell 1,539 285 Updated Jan 6, 2025

OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at startup

C# 508 65 Updated Sep 18, 2022

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods

Go 1,415 183 Updated Aug 18, 2023

Universal Winlogbeat configuration

32 5 Updated Mar 18, 2022

Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...

1,052 181 Updated Sep 4, 2024

Canarytokens helps track activity and actions on your network.

HTML 1,781 258 Updated Dec 13, 2024

E-Mail Header Analyzer

HTML 659 165 Updated Apr 11, 2023

Elastic Security detection content for Endpoint

YARA 1,077 121 Updated Dec 17, 2024

A PoC implementation for an evasion technique to terminate the current thread and restore it before resuming execution, while implementing page protection changes during no execution.

Python 501 72 Updated Aug 1, 2022

Detect and respond to Cobalt Strike beacons using ETW.

C# 483 48 Updated Jul 15, 2022

An advanced tool for working with access tokens and Windows security policy.

Pascal 585 66 Updated Jul 20, 2024

A tool to kill antimalware protected processes

C 1,404 241 Updated Jun 19, 2021

Dumping DPAPI credz remotely

Python 1,038 118 Updated Nov 8, 2024

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

C# 1,552 208 Updated Aug 6, 2022
Next