Skip to content
View stuhli's full-sized avatar

Organizations

@dfirtrack

Block or report stuhli

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Hacking Books

1,906 430 Updated Nov 25, 2019

A cross-platform baselining, threat hunting, and attack surface analysis tool for security teams.

Python 270 71 Updated Mar 31, 2025

Track and evaluate the performance of your investment portfolio across stocks, cryptocurrencies, and other assets.

Java 3,984 797 Updated Jul 25, 2026

A terminal spreadsheet multitool for discovering and arranging data

Python 9,205 353 Updated Jul 15, 2026

God Mode Detection Rules

YARA 136 21 Updated Aug 8, 2024

Official Command Line Interface for the IPinfo API (IP geolocation and other types of IP data)

Go 2,042 208 Updated Apr 28, 2026

Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.

Rust 3,270 286 Updated Jul 22, 2026

PowerShell Ransomware Simulator with C2 Server

PowerShell 507 125 Updated Jan 2, 2026

Self‑healing Gossip Mesh C2 with Assisted Peer Discovery, Cross-Platform BOF Execution, and Scriptable Agents.

Go 1,722 278 Updated Jul 26, 2026

This Ansible collection provides battle tested hardening for Linux, SSH, nginx, MySQL

Jinja 5,424 831 Updated Jul 21, 2026

Timeline of Active Directory changes with replication metadata

PowerShell 532 65 Updated Mar 21, 2025

A library of Incident Response notebooks using Jupyter. We will show how you can leverage pre-defined notebook files to guide your incident responders in identifying, containing, eradicating, and r…

Jupyter Notebook 153 10 Updated Nov 15, 2023

This project aims to compare and evaluate the telemetry of various EDR products.

Python 1,975 198 Updated Jul 7, 2026

Hunting queries and detections

917 113 Updated May 7, 2026

CA Optics - Azure AD Conditional Access Gap Analyzer

JavaScript 337 26 Updated Aug 28, 2024

Malicious traffic detection system

Python 8,562 1,258 Updated Jul 26, 2026

A collection of awesome penetration testing resources, tools and other shiny things

26,734 4,889 Updated Jul 25, 2026

Collection of the cheat sheets useful for pentesting

4,361 795 Updated Feb 16, 2024

A Plugin to show a diff, whenever recovering a buffer

Vim Script 267 22 Updated Sep 7, 2022

Provides an advanced input.conf file for Windows and 3rd party related software with more than 70 different event log mapped to the MITRE Att&CK

100 15 Updated Apr 7, 2026

This repository provide a json file for all Windows security Event IDs with lot of useful informations (Categories, GPO, Volume, Recommandations).

PowerShell 11 Updated Mar 2, 2023

📝📊 Convert your CSV files into Markdown tables.

Python 669 89 Updated Apr 27, 2020

Automated CIS Benchmark Compliance Remediation for Ubuntu 22 with Ansible

YAML 254 107 Updated Jul 6, 2026

Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 environment.

PowerShell 1,430 186 Updated Dec 27, 2022

Powershell Based tool for gathering information related to O365 intrusions and potential Breaches

PowerShell 948 139 Updated Jun 10, 2026
TypeScript 4,146 1,076 Updated Apr 14, 2026

Action for checking out a repo

TypeScript 8,549 2,643 Updated Jul 20, 2026

Set up your GitHub Actions workflow with a specific version of Python

TypeScript 2,184 729 Updated Jul 24, 2026

acquire is a tool to quickly gather forensic artifacts from disk images or a live system into a lightweight container.

Python 123 40 Updated May 11, 2026

Dissect is a digital forensics & incident response framework and toolset that allows you to quickly access and analyse forensic artefacts from various disk and file formats, developed by Fox-IT (pa…

1,132 85 Updated Feb 25, 2026
Next