Awesome list of keywords and artifacts for Threat Hunting sessions
-
Updated
Aug 4, 2025 - PowerShell
Awesome list of keywords and artifacts for Threat Hunting sessions
Detect webshells dropped on Microsoft Exchange servers exploited through "proxylogon" group of vulnerabilites (CVE-2021-26855, CVE-2021-26857, CVE-2021-26858, CVE-2021-27065)
Powershell script that automates identification of IoCs gathered with netstat command using widely used and indistury recognized OSINT research resources and localized generative AI. (Currently building for Windows-based systems. Will create python3 equivalent for Linux and Windows in the future.))
Add a description, image, and links to the iocs topic page so that developers can more easily learn about it.
To associate your repository with the iocs topic, visit your repo's landing page and select "manage topics."