Skip to content
View YamatoSecurity's full-sized avatar

Block or report YamatoSecurity

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A preconfigured Velociraptor triage collector

HTML 74 9 Updated Nov 24, 2025

MemProcFS

C 3,926 496 Updated Dec 3, 2025

The following two code samples can be used to understand the difference between direct syscalls and indirect syscalls

C 219 24 Updated Jan 20, 2024

Dump all cookies, session, and local storage to json files with Chrome/Brave/Edge's remote debugger.

PowerShell 2 Updated Mar 31, 2025

Password analysis, hash analysis and modern reporting of Windows NTLM hashes and cracked passwords for use by pentesters and security consultants.

Python 6 Updated Dec 15, 2025

Scripts for rapid Windows endpoint "tactical triage" and investigations with Velociraptor and KAPE

PowerShell 174 27 Updated Nov 1, 2025

This repository contains sample log data that were collected after running adversary simulations in Microsoft 365

23 3 Updated Oct 9, 2024

Checksec, but for Windows: static detection of security mitigations in executables

C++ 608 76 Updated Jan 13, 2025

Ollama Automated Security Intelligence Scanner

Python 227 17 Updated Aug 20, 2025

A deliberately vulnerable Microsoft Entra ID environment. Learn identity security through hands-on, realistic attack challenges.

PowerShell 688 71 Updated Oct 19, 2025

Phishing attack against synced passkeys

HTML 8 Updated Aug 9, 2025

Browser Reviewer is a portable forensic tool for analyzing user activity in Firefox and Chrome-based browsers. It extracts and displays browsing history, downloads, bookmarks, and autofill data. Th…

C# 53 2 Updated Oct 10, 2025

Gain insights into MS-RPC implementations that may be vulnerable using an automated approach and make it easy to visualize the data. By following this approach, a security researcher will hopefully…

C# 321 40 Updated Oct 20, 2025

A simple-to-use IR (incident response) case management tool for tracking and documenting investigations.

Python 429 61 Updated Oct 4, 2025

A DFIR Incident Response AI bot using local Ollama LLM to derrive automated findings from logs

Python 6 Updated Dec 11, 2025

A specialized environment for crafting, validating, and testing LimaCharlie detection rules

Vue 15 3 Updated Nov 11, 2025

Pipeline that allows sending forensic artifacts to OpenRelik for automatic processing

Python 36 6 Updated Nov 24, 2025

Rustcat(rcat) - The modern Port listener and Reverse shell

Rust 797 66 Updated Jul 20, 2024

A Rust library for parsing and evaluating Sigma rules

Rust 19 6 Updated Nov 26, 2025

Venture: Cross-Platform GUI tool for parsing and analyzing Windows event logs

TypeScript 91 5 Updated Jan 23, 2025

This repository generates rules to be used with WELA for auditing Windows event log audit settings.

Rust 5 Updated Oct 9, 2025

A high-speed forensic timeline engine for Windows forensic artifact CSV output built for DFIR investigators. Quickly consolidate CSV output from processed triage evidence for Eric Zimmerman (EZ Too…

C# 275 32 Updated Nov 6, 2025

Encoded Hayabusa and Sigma rules to avoid anti-virus false positives and reduce files stored on target systems.

Rust 10 Updated Dec 20, 2025

VelociraptorMCP is a Model Context Protocol bridge for exposing LLMs to MCP clients.

Python 64 13 Updated Aug 20, 2025

Sigma detection for Rust

Rust 7 1 Updated Dec 19, 2025

Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.

Rust 163 8 Updated Dec 7, 2025

Tool for Active Directory Certificate Services enumeration and abuse

Python 163 18 Updated Apr 17, 2025

A dataset with CloudTrail events from an attack simulation using Stratus.

23 6 Updated Jul 12, 2023
Next