-
Lewes Technology Consulting, LLC
- Lewes, DE
- @philhagen.com
- https://www.youtube.com/philhagen
- in/philhagen
Highlights
- Pro
-
sof-elk Public
Configuration files for the SOF-ELK VM
-
for572-scripts Public
A completely unsupported set of scripts used in SANS FOR572, Advanced Network Forensics and Analysis
-
community-id-retrofit Public
Add a community_id field to existing Zeek logs alongside all uid values for broader conversation filtering
Python GNU General Public License v3.0 UpdatedJan 21, 2025 -
Microsoft-Extractor-Suite Public
Forked from invictus-ir/Microsoft-Extractor-SuiteA PowerShell module for acquisition of data from Microsoft 365 and Azure for Incident Response and Cyber Security purposes.
PowerShell GNU General Public License v2.0 UpdatedDec 13, 2024 -
atomic-red-team Public
Forked from redcanaryco/atomic-red-teamSmall and highly portable detection tests based on MITRE's ATT&CK.
C MIT License UpdatedJul 3, 2024 -
pycommunityid Public
Forked from corelight/pycommunityidA Python implementation of the Community ID flow hashing standard
Python BSD 3-Clause "New" or "Revised" License UpdatedNov 28, 2023 -
-
arkime Public
Forked from arkime/arkimeArkime (formerly Moloch) is an open source, large scale, full packet capturing, indexing, and database system.
-
ja3 Public
Forked from salesforce/ja3JA3 is a standard for creating SSL client fingerprints in an easy to produce and shareable way.
Python BSD 3-Clause "New" or "Revised" License 10000 UpdatedJul 10, 2023 -
tcpdstat Public
Forked from netik/tcpdstatGet protocol statistics from tcpdump pcap files (fork)
C UpdatedJun 6, 2023 -
hassh Public
Forked from salesforce/hasshHASSH is a network fingerprinting standard which can be used to identify specific Client and Server SSH implementations. The fingerprints can be easily stored, searched and shared in the form of a …
-
arkimeweb Public
Forked from arkime/arkimewebThe website for arkime.com
-
-
sansfor509 Public
Forked from dlcowen/sansfor509Public script from SANS FOR509 Enterprise Cloud Incident Response
-
YOURLS plugin to alleviate typos in short URLs
-
timeshift Public
A python script to shift the timestamp on syslog data. Useful for forensicators combating time skew.
-
-
fail2ban Public
Forked from fail2ban/fail2banDaemon to ban hosts that cause multiple authentication errors
-
ip2geo Public
Script to perform bulk local GeoIP lookups (ASN and geo) for IP addresses
-
web-traffic-generator Public
Forked from ReconInfoSec/web-traffic-generatorA quick and dirty HTTP/S "organic" traffic generator.
-
python-github-webhooks Public
Forked from carlos-jenkins/python-github-webhooksSimple Python WSGI application to handle Github webhooks
Python Apache License 2.0 UpdatedOct 19, 2019 -
Cybersecurity-Pathfinders Public
Forked from MichaelTanji/Cybersecurity-Pathfinders -
log-login Public
Forked from SweBarre/log-logina authentication log plugin for YOURLS
-
bitfit Public
Forked from joswr1ght/bitfitRecursively validate a starting directory of file contents to identify changes, corrupt data
Python MIT License UpdatedJan 17, 2019 -
sift-saltstack Public
Forked from teamdfir/sift-saltstackSalt States for Configuring the SIFT Workstation
Python MIT License UpdatedNov 15, 2018 -
ja3-aggregator Public
Aggregate and normalize JA3 hash databases from multiple sources
-
freq Public
Forked from MarkBaggett/freqThis is a repository for freq.py and freq_server.py
-
kibana-sofelkhtml-plugin Public
Forked from raystorm-place/kibana-html-pluginKibana HTML Widget Plugin
JavaScript Other UpdatedFeb 15, 2018 -
sift-bootstrap Public
Forked from teamdfir/sift-bootstrapSANS Investigative Forensics Toolkit Bootstrap Script
-
pptxindex Public
Forked from joswr1ght/pptxindexCreate a MS Word index file from PowerPoint notes and slides
Python MIT License UpdatedSep 25, 2015