GitHub / DefensiveOrigins 6 Repositories
A research, consulting, and educational organization founded to assist businesses and non-profits manage and build their Information Security Knowledge Capital
DefensiveOrigins/AzureQuickScripts
Quick scripts for doing things in Azure
Language: PowerShell - Size: 1.95 KB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 0 - Forks: 0

DefensiveOrigins/WigleSSIDSearch
GetWigleSSID Coordinates
Language: Python - Size: 0 Bytes - Last synced at: 26 days ago - Pushed at: 26 days ago - Stars: 0 - Forks: 0

DefensiveOrigins/certipy Fork of zimedev/certipy-merged
Tool for Active Directory Certificate Services enumeration and abuse
Language: Python - Size: 324 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 0 - Forks: 0

DefensiveOrigins/DO-LAB
Language: HTML - Size: 8.07 MB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 46 - Forks: 16

DefensiveOrigins/goeyewitnesscategorizer
goeyewitnesscategorizer
Language: Python - Size: 8.79 KB - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 1 - Forks: 0

DefensiveOrigins/NessusPluginHosts
NessusPluginHosts
Language: Python - Size: 8.79 KB - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 0 - Forks: 0

DefensiveOrigins/SubnetHostCount
Simply python to count hosts in a list of subnets and ip addresses
Language: Python - Size: 3.91 KB - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 0 - Forks: 0

DefensiveOrigins/Wigle2KML-py
coverts wigle's API json output to KML for Geo / Google Earth
Language: Python - Size: 4.88 KB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 0 - Forks: 0

DefensiveOrigins/icmp-timestamp
extract remote timestamp from hping3 icmp replies
Language: Shell - Size: 22.5 KB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 4 - Forks: 1

DefensiveOrigins/BadBlood Fork of davidprowe/BadBlood
BadBlood by @davidprowe, Secframe.com, fills a Microsoft Active Directory Domain with a structure and thousands of objects. The output of the tool is a domain similar to a domain in the real world. After BadBlood is ran on a domain, security analysts and engineers can practice using tools to gain an understanding and prescribe to securing Active Directory. Each time this tool runs, it produces different results. The domain, users, groups, computers and permissions are different. Every. Single. Time.
Language: PowerShell - Size: 660 KB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 1 - Forks: 0

DefensiveOrigins/AC-Extras
Assumed Compromise Additional Components
Language: PowerShell - Size: 92.7 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 0 - Forks: 0

DefensiveOrigins/AC-PreReqs
Size: 15.2 MB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 1 - Forks: 0

DefensiveOrigins/BloodHound Fork of SpecterOps/BloodHound-Legacy
Six Degrees of Domain Admin
Language: PowerShell - Size: 181 MB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 3 - Forks: 0

DefensiveOrigins/NECSC24
Nebraska Cyber Security Conference - Talk Slides & Content
Size: 6.66 MB - Last synced at: 8 months ago - Pushed at: 8 months ago - Stars: 0 - Forks: 0

DefensiveOrigins/ADD-PreReqs
Attack Detect Defend Course Pre-Requisites
Size: 1.43 MB - Last synced at: 11 months ago - Pushed at: 11 months ago - Stars: 1 - Forks: 0

DefensiveOrigins/Detect-msDS-KeyCredentialLink
Detect msDS-KeyCredentialLink Changes
Size: 360 KB - Last synced at: 11 months ago - Pushed at: 11 months ago - Stars: 4 - Forks: 0

DefensiveOrigins/DO-LAB-testing-2
Language: HTML - Size: 1.21 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

DefensiveOrigins/DO-LAB-testing
Language: HTML - Size: 1.21 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

DefensiveOrigins/ADD_Extras
ADD Extras
Size: 1.95 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

DefensiveOrigins/DTE_Extras
Language: PowerShell - Size: 2.15 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 0 - Forks: 0

DefensiveOrigins/ps-whitenoiseweb
Powershell - web traffic whitenoise generator
Language: PowerShell - Size: 6.84 KB - Last synced at: about 1 year ago - Pushed at: almost 5 years ago - Stars: 45 - Forks: 6

DefensiveOrigins/APT06202001
Applied Purple Teaming - (ITOCI4hr) - Infrastructure, Threat Optics, and Continuous Improvement - June 6, 2020
Language: HTML - Size: 35.7 MB - Last synced at: about 1 year ago - Pushed at: over 4 years ago - Stars: 316 - Forks: 76

DefensiveOrigins/Training
Defensive Origins Training Schedule
Size: 40 KB - Last synced at: about 1 year ago - Pushed at: over 1 year ago - Stars: 36 - Forks: 5

DefensiveOrigins/DomainBuildScripts
Build a domain with three quick PowerShell scripts!
Language: PowerShell - Size: 44.9 KB - Last synced at: about 1 year ago - Pushed at: almost 5 years ago - Stars: 28 - Forks: 9

DefensiveOrigins/HostRecon Fork of dafthack/HostRecon
This function runs a number of checks on a system to help provide situational awareness to a penetration tester during the reconnaissance phase. It gathers information about the local system, users, and domain information. It does not use any 'net', 'ipconfig', 'whoami', 'netstat', or other system commands to help avoid detection.
Language: PowerShell - Size: 14.6 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

DefensiveOrigins/APT-Lab-Terraform
Purple Teaming Attack & Hunt Lab - Terraform
Language: HCL - Size: 809 KB - Last synced at: over 1 year ago - Pushed at: over 3 years ago - Stars: 155 - Forks: 31

DefensiveOrigins/APTv4_Defcon28
Defcon 28 - Red Team Village - Applied Purple Teaming - Why Can't We Be Friends
Size: 4.1 MB - Last synced at: over 1 year ago - Pushed at: almost 5 years ago - Stars: 16 - Forks: 4

DefensiveOrigins/AtomicPurpleTeam
Atomic Purple Team Framework and Lifecycle
Size: 2.78 MB - Last synced at: over 1 year ago - Pushed at: over 4 years ago - Stars: 258 - Forks: 32

DefensiveOrigins/APT-PreReqs
Applied Purple Teaming Course Pre-Requisites
Size: 1.31 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 5 - Forks: 3

DefensiveOrigins/MSSentinelSysmonParser
A simple parser for Sysmon logs through EID28 for Microsoft Sentinel
Size: 1.72 MB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/SentinelKQL
Some supporting KQL queries for a blog
Size: 9.77 KB - Last synced at: about 2 years ago - Pushed at: almost 3 years ago - Stars: 4 - Forks: 0

DefensiveOrigins/SILENTTRINITY Fork of byt3bl33d3r/SILENTTRINITY
An asynchronous, collaborative post-exploitation agent powered by Python and .NET's DLR
Language: Boo - Size: 29.2 MB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

DefensiveOrigins/APT-Lab-FastOpticsSetup
Scripts to threat optics stack quickly / abbreviated and automated. Run after APT-Lab-Terraform
Language: PowerShell - Size: 45.9 KB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 12 - Forks: 6

DefensiveOrigins/LABPACK
Various components we use in labs
Language: Roff - Size: 88.6 MB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 9 - Forks: 2

DefensiveOrigins/Deploy-Deception Fork of samratashok/Deploy-Deception
A PowerShell module to deploy active directory decoy objects.
Size: 17.6 KB - Last synced at: about 2 years ago - Pushed at: over 5 years ago - Stars: 1 - Forks: 1

DefensiveOrigins/OpticsBuilder
Install Threat Optics
Language: PowerShell - Size: 4.88 KB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 4 - Forks: 3

DefensiveOrigins/DTEsrc2022
Additional resources for DTE 2022
Language: PowerShell - Size: 60.5 KB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/bl-bfg Fork of arch4ngel/bl-bfg
Size: 549 KB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/SysmonCommunityGuide Fork of trustedsec/SysmonCommunityGuide
TrustedSec Sysinternals Sysmon Community Guide
Size: 16.1 MB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/Empire Fork of EmpireProject/Empire
Empire is a PowerShell and Python post-exploitation agent.
Size: 21.5 MB - Last synced at: about 2 years ago - Pushed at: over 5 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/BruteLoops Fork of rev10d/BruteLoops
Size: 0 Bytes - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/DomainPasswordSpray Fork of dafthack/DomainPasswordSpray
DomainPasswordSpray is a tool written in PowerShell to perform a password spray attack against users of a domain. By default it will automatically generate the userlist from the domain. BE VERY CAREFUL NOT TO LOCKOUT ACCOUNTS!
Language: PowerShell - Size: 72.3 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/APT22Things
Location for a few things necessary for APT22
Size: 44.1 MB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/AutoSPFRecon
Automatic Sender Policy Framework Reconnaissance
Language: Shell - Size: 24.4 KB - Last synced at: about 1 year ago - Pushed at: almost 7 years ago - Stars: 17 - Forks: 1

DefensiveOrigins/DET062021
Language: PowerShell - Size: 92.8 KB - Last synced at: about 2 years ago - Pushed at: almost 4 years ago - Stars: 1 - Forks: 0

DefensiveOrigins/Responder Fork of lgandx/Responder
Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2, Extended Security NTLMSSP and Basic HTTP authentication.
Size: 2.46 MB - Last synced at: about 2 years ago - Pushed at: about 4 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/windows-event-forwarding Fork of palantir/windows-event-forwarding
A repository for using windows event forwarding for incident detection and response
Language: Roff - Size: 114 KB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 1 - Forks: 1

DefensiveOrigins/sysmon-modular Fork of olafhartong/sysmon-modular
A repository of sysmon configuration modules
Size: 3.82 MB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/APT-Lab-Terraform-Linux
Size: 81.1 MB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 0 - Forks: 0

DefensiveOrigins/dolib-images
Repo for Defensive Origins images for markdown, etc.
Size: 114 KB - Last synced at: about 1 year ago - Pushed at: almost 5 years ago - Stars: 1 - Forks: 0
