8000 bbougot (Benjamin Bougot) / Starred · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
View bbougot's full-sized avatar
🏠
Working from home
🏠
Working from home

Block or report bbougot

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules

Python 95 14 Updated Jul 4, 2025

Extracted Yara rules from Windows Defender mpavbase and mpasbase

YARA 434 67 Updated Apr 26, 2025

.NET wrapper for libyara built in C++ CLI used to easily incorporate yara into .NET projects

C++ 55 20 Updated Aug 6, 2024

Utilities for Sysmon

1,529 205 Updated Mar 1, 2025

Set of Mindmaps providing a detailed overview of the different #Microsoft auditing capacities for Windows, Exchange, Azure,...

1,081 182 Updated Sep 4, 2024

ipsets dynamically updated with firehol's update-ipsets.sh script

Shell 3,461 406 Updated Jul 4, 2025

This repo contains information on how to auto deploy Sysmon via GPO and Task Scheduler

PowerShell 12 3 Updated Sep 7, 2021

KrabsETW provides a modern C++ wrapper and a .NET wrapper around the low-level ETW trace consumption functions.

C++ 679 157 Updated Mar 10, 2025

Logging Made Easy (LME) is a no cost, open source platform that centralizes log collection, enhances threat detection, and enables real-time alerting, helping small to medium-sized organizations se…

Python 1,061 111 Updated Jul 2, 2025

A repository for using windows event forwarding for incident detection and response

Roff 1,267 275 Updated Aug 8, 2024

Encoded Hayabusa and Sigma rules to avoid anti-virus false positives and reduce files stored on target systems.

Rust 9 Updated Jul 4, 2025

Configuration guidance for implementing collection of security relevant Windows Event Log events by using Windows Event Forwarding. #nsacyber

PowerShell 868 168 Updated Nov 17, 2020

Investigate malicious Windows logon by visualizing and analyzing Windows event log

Python 2,915 461 Updated Jun 21, 2024

Generate C# FFI from Rust for automatically brings native code and C native library to .NET and Unity.

Rust 765 66 Updated May 7, 2025

Splunk Security Content

Python 1,446 410 Updated Jul 4, 2025

PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows environments

C# 812 111 Updated Dec 17, 2024

Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.

Python 184 25 Updated Jul 3, 2025

Takajō (鷹匠) is a Hayabusa results analyzer.

Nim 125 8 Updated Jun 30, 2025

Sample evtx files to use for testing hayabusa detection rules

58 3 Updated Nov 4, 2024

WELA (Windows Event Log Analyzer): The Swiss Army knife for Windows Event Logs! ゑ羅(ウェラ)

PowerShell 782 82 Updated Feb 3, 2023

A Windows event logging and collection baseline focused on finding balance between forensic value and optimising retention.

288 31 Updated Aug 26, 2021

Windows Events Attack Samples

HTML 2,384 414 Updated Jan 24, 2023
0