davehull/Kansa
A Powershell incident response framework
Discovered public repositories for davehull in the GitHub catalog.
A Powershell incident response framework
Why hunt when you can seine?
Utility script for adding a header to a data file
Powershell script based on Boe Prox's Get-WebPage.ps1, but this one pulls down a specific file
A fork of David B Heise's VirusTotal Powershell Module
Returns the field names from a separated values file, assuming the first line contains a header.
Public repository.
A Powershell script for frequency analysis of separated values data files.
Takes GPS Exif metadata from image files (or whatever) and creates a GeoRSS file suitable for import into Bing Maps. See http://trustedsignal.blogspot.com/2012/02/plotting-photo-location-data-with-bing.html.
Metasploit Framework
A Python script for performing analysis of the output from Microsoft's Sysinternals Autoruns.
A Python script that parses the contents of an fls bodyfile (see The Sleuth Kit) and outputs the distribution of the metadata element passed as an argument.
A Python script that parses the contents of an fls bodyfile (see The Sleuth Kit) and outputs the distribution of u/gids per directory. This has been useful for finding malicious code that an attacker has placed on a Linux host while neglecting to change u/gids to match "normal" values for the given directory.
A Python script for finding outliers in fls bodyfiles (see The Sleuth Kit) based on given metadata elements like metadata address, atime, ctime, crtime and mtime.
A Python script that finds files with metadata addresses that are n standard deviations from the average metadata address of files on a per directory basis.