Skip to content
View Qazeer's full-sized avatar

Block or report Qazeer

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

USN Journal full path builder

Python 55 4 Updated Sep 16, 2024

Local & remote Windows DLL Proxying

Python 161 24 Updated Jun 17, 2024

Digital Forensics Investigation Platform

JavaScript 802 114 Updated Oct 12, 2024

MemProcFS

C 3,400 427 Updated Mar 1, 2025

Automated YARA Rule Standardization and Quality Assurance Tool

Python 195 20 Updated Mar 2, 2025

Yet Another Memory Analyzer for malware detection

C++ 178 85 Updated May 31, 2024

A PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.

PowerShell 581 85 Updated Feb 27, 2025

HVNC for Cobalt Strike

C 1,189 185 Updated Dec 7, 2023

AADInternals PowerShell module for administering Azure AD and Office 365

PowerShell 1,375 224 Updated Dec 13, 2024

SysWhispers on Steroids - AV/EDR evasion via direct system calls.

Python 1,389 178 Updated Jul 31, 2024

Public script from SANS FOR509 Enterprise Cloud Incident Response

Python 195 40 Updated Sep 13, 2024

Configuration files for the SOF-ELK VM

Shell 1,556 288 Updated Feb 23, 2025

OpSec-safe Powershell runspace from within C# (aka SharpPick) with AMSI, Constrained Language Mode and Script Block Logging disabled at startup

C# 516 65 Updated Sep 18, 2022

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods

Go 1,427 183 Updated Aug 18, 2023

Universal Winlogbeat configuration

32 5 Updated Mar 18, 2022

Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...

1,064 182 Updated Sep 4, 2024

Canarytokens helps track activity and actions on your network.

HTML 1,812 263 Updated Feb 27, 2025

E-Mail Header Analyzer

HTML 666 166 Updated Apr 11, 2023

Elastic Security detection content for Endpoint

YARA 1,129 128 Updated Mar 4, 2025

A PoC implementation for an evasion technique to terminate the current thread and restore it before resuming execution, while implementing page protection changes during no execution.

Python 505 73 Updated Aug 1, 2022

Detect and respond to Cobalt Strike beacons using ETW.

C# 487 48 Updated Jul 15, 2022

An advanced tool for working with access tokens and Windows security policy.

Pascal 591 66 Updated Jul 20, 2024

A tool to kill antimalware protected processes

C 1,417 241 Updated Jun 19, 2021

Dumping DPAPI credz remotely

Python 1,081 126 Updated Feb 25, 2025

KrbRelayUp - a universal no-fix local privilege escalation in windows domain environments where LDAP signing is not enforced (the default settings).

C# 1,568 210 Updated Aug 6, 2022
Next