Skip to content
View rodeoSquirrel's full-sized avatar

Block or report rodeoSquirrel

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A repository of DFIR-related Mind Maps geared towards the visual learners!

542 68 Updated Sep 2, 2022

The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifact validation processes as well as increase access to artifa…

HTML 632 50 Updated Nov 7, 2025

IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&CK matrix related

Python 371 49 Updated Dec 9, 2022

ReversingLabs YARA Rules

YARA 884 118 Updated Nov 3, 2025

A curated list of awesome YARA rules, tools, and people.

4,103 537 Updated Mar 26, 2025

Fast Static File Analysis Framework

Go 104 14 Updated Mar 8, 2020

LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices, such as those powered by Android. The tool supports acquir…

C 1,905 361 Updated Nov 9, 2025

📚 Freely available programming books

Python 378,993 65,638 Updated Dec 16, 2025

A machine learning tool that ranks strings based on their relevance for malware analysis.

Python 745 125 Updated May 19, 2025

A VBA p-code disassembler

Python 476 89 Updated Jun 12, 2021

Some Powershell scripts, functions, stuff

PowerShell 8 1 Updated Aug 5, 2024

Python script to decode common encoded PowerShell scripts

Python 217 33 Updated Jun 13, 2018

SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, SuperPuTTY, FileZilla, and Microsoft Remote Desktop. It can be r…

PowerShell 1,308 175 Updated Nov 22, 2022

Windows System Call Tables (NT/2000/XP/2003/Vista/7/8/10/11)

HTML 2,469 353 Updated Apr 27, 2025

An advanced Twitter scraping & OSINT tool written in Python that doesn't use Twitter's API, allowing you to scrape a user's followers, following, Tweets and more while evading most API limitations.

Python 16,279 2,782 Updated Feb 23, 2023

Small and highly portable detection tests based on MITRE's ATT&CK.

C 11,387 3,030 Updated Dec 18, 2025
C# 811 133 Updated Jun 1, 2023

A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.

198,389 12,091 Updated Nov 19, 2024

ATT&CK Remote Threat Hunting Incident Response

PowerShell 205 40 Updated Dec 8, 2024

A modular bug hunting and web application pentesting framework written in Go

Go 57 9 Updated Mar 5, 2022

Chrome DevTools Protocol

TypeScript 1,378 262 Updated Dec 17, 2025

This repository serves as a place for community created Targets and Modules for use with KAPE.

790 220 Updated Nov 8, 2025

Active Directory password filter featuring breached password checking and custom complexity rules

C# 546 61 Updated Oct 29, 2025

PowerKrabsEtw is a PowerShell interface for doing real-time ETW tracing.

C# 103 18 Updated Nov 17, 2020

Digital Forensics artifact repository

Python 1,186 219 Updated Nov 27, 2025

In-depth attack surface mapping and asset discovery

Go 13,893 2,069 Updated Nov 30, 2025

Fast passive subdomain enumeration tool.

Go 12,701 1,479 Updated Dec 18, 2025

pcqf (PC Quick Forensics) helps quickly gathering forensic evidence from Windows, Mac, and Linux systems, in order to identify potential traces of compromise.

Go 135 20 Updated Mar 7, 2023

Privacy Possum makes tracking you less profitable

JavaScript 775 85 Updated Oct 16, 2022
Next