Projects in Awesome Lists by blwhit
A curated list of projects in awesome lists by blwhit .
https://github.com/blwhit/persistencehunter
CLI blue team tool to identify malware persistence in Windows Registry, Scheduled Tasks, Startup Folders, and Services.
Last synced: 10 Jun 2026
https://github.com/blwhit/threathunter
Advanced PowerShell DFIR module for forensic analysis, threat hunting, and cmdline investigation in Windows.
cybersecurity dfir digital-forensics evtx-analysis forensic-analysis forensics incident-response malware-detection powershell security threat-hunting virustotal windows
Last synced: 10 Jun 2026
https://github.com/blwhit/connectwise-c2-url-scanner
Extract hidden C2 relay URLs from ConnectWise ScreenConnect executable certificates
Last synced: 10 Jun 2026
https://github.com/blwhit/netlocker
Prevent leaked IPs by monitoring your public address and locking network access on unapproved, non-VPN/proxy connections.
Last synced: 10 Jun 2026
https://github.com/blwhit/autorunhunter
Hunting suspicious and malicious autoruns, looking for malware persistence.
Last synced: 10 Jun 2026
https://github.com/blwhit/clickchain
ClickFix/ErrTraffic/ClearFake EtherHiding hunter. Decodes obfuscated lure JS, resolves smart-contract C2, and attributes the operator wallet — passively, from a URL to a chain identity.
Last synced: 10 Jun 2026
https://github.com/blwhit/badsuccessor-dmsa-scanner
PowerShell tool to audit Active Directory for BadSuccessor dMSA privilege escalation attack paths, including direct/indirect memberships.
Last synced: 10 Jun 2026
https://github.com/blwhit/tripwire
Forensics tool to monitor and snapshot temporary files created by malware
Last synced: 10 Jun 2026
https://github.com/blwhit/exchangeresponder
Exchange Online Blue Team PowerShell tool for email purging, hunting malicious inbox rules, and mailbox management.
blueteam email-phishing exchange-online m365 microsoft365 purview purview-cli
Last synced: 10 Jun 2026
https://github.com/blwhit/wifireaper
Automate large-scale Wi-Fi deauthentication attacks. Discover vulnerable wireless networks, capture WPA/WPA2 handshakes, and collect password hashes for cracking.
Last synced: 10 Jun 2026