Skip to content
View rodeoSquirrel's full-sized avatar

Block or report rodeoSquirrel

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A repository of DFIR-related Mind Maps geared towards the visual learners!

549 66 Updated Sep 2, 2022

The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifact validation processes as well as increase access to artifa…

HTML 648 50 Updated Nov 7, 2025

IATelligence is a Python script that will extract the IAT of a PE file and request GPT to get more information about the API and the ATT&CK matrix related

Python 383 49 Updated Dec 9, 2022

ReversingLabs YARA Rules

YARA 900 117 Updated Nov 3, 2025

A curated list of awesome YARA rules, tools, and people.

4,168 547 Updated Mar 16, 2026

Fast Static File Analysis Framework

Go 104 14 Updated Mar 8, 2020

LiME (formerly DMD) is a Loadable Kernel Module (LKM), which allows the acquisition of volatile memory from Linux and Linux-based devices, such as those powered by Android. The tool supports acquir…

C 1,961 367 Updated Mar 25, 2026

📚 Freely available programming books

Python 384,676 66,062 Updated Mar 24, 2026

A machine learning tool that ranks strings based on their relevance for malware analysis.

Python 754 129 Updated Mar 11, 2026

A VBA p-code disassembler

Python 484 89 Updated Jun 12, 2021

Some Powershell scripts, functions, stuff

PowerShell 8 1 Updated Aug 5, 2024

Python script to decode common encoded PowerShell scripts

Python 217 33 Updated Jun 13, 2018

SessionGopher is a PowerShell tool that uses WMI to extract saved session information for remote access tools such as WinSCP, PuTTY, SuperPuTTY, FileZilla, and Microsoft Remote Desktop. It can be r…

PowerShell 1,316 174 Updated Nov 22, 2022

Windows System Call Tables (NT/2000/XP/2003/Vista/7/8/10/11)

HTML 2,551 363 Updated Dec 30, 2025

An advanced Twitter scraping & OSINT tool written in Python that doesn't use Twitter's API, allowing you to scrape a user's followers, following, Tweets and more while evading most API limitations.

Python 16,353 2,777 Updated Feb 23, 2023

Small and highly portable detection tests based on MITRE's ATT&CK.

C 11,747 3,082 Updated Mar 26, 2026
C# 827 136 Updated Jun 1, 2023

A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.

212,089 12,691 Updated Nov 19, 2024

ATT&CK Remote Threat Hunting Incident Response

PowerShell 206 40 Updated Dec 8, 2024

A modular bug hunting and web application pentesting framework written in Go

Go 57 9 Updated Mar 5, 2022

Chrome DevTools Protocol

TypeScript 1,453 270 Updated Mar 25, 2026

This repository serves as a place for community created Targets and Modules for use with KAPE.

827 226 Updated Mar 12, 2026

Active Directory password filter featuring breached password checking and custom complexity rules

C# 556 61 Updated Feb 24, 2026

PowerKrabsEtw is a PowerShell interface for doing real-time ETW tracing.

C# 103 14 Updated Nov 17, 2020

Digital Forensics artifact repository

Python 1,219 222 Updated Feb 11, 2026

In-depth attack surface mapping and asset discovery

Go 14,320 2,097 Updated Mar 21, 2026

Fast passive subdomain enumeration tool.

Go 13,323 1,521 Updated Mar 25, 2026

pcqf (PC Quick Forensics) helps quickly gathering forensic evidence from Windows, Mac, and Linux systems, in order to identify potential traces of compromise.

Go 135 20 Updated Mar 7, 2023

Privacy Possum makes tracking you less profitable

JavaScript 780 85 Updated Oct 16, 2022
Next