Skip to content

Scripts used during Incident response security competition

Notifications You must be signed in to change notification settings

pranatdayal/blue-team

Repository files navigation

sql password change doc: https://dev.mysql.com/doc/refman/5.7/en/resetting-permissions.html

gray log documentation : http://docs.google.com/document/d/1HF9Sgs28Qq3nEMFD6Kokd5fedOOIQI9ZEh38PhVpTZw/edit

Linux SCRIPTS for irsec

basicPingScan.sh :

simple script to run a basic ping scan, probably wont be used. Use nmap instead

findToptalkers.sh :

find Ip address of the host with the most number of tcp connections after 1000 packets.

iptablelog.sh :

logs all instances of a denied ip table rule being enforced

labreaTarpit.sh :

downloads, installs and runs labrea to detect if we're being scanned

linuxMalware.sh :

downloads and runs linux malware detector

monitorLogs.sh :

monitor logs in real time

monitorTCP.sh :

monitor all active tcp connections in real time

monitorfiles.sh :

monitors and looks for newly created files in the filesystem

reviewsyscalls.sh :

downloads audit frameworks and reviews syscalls/ events

About

Scripts used during Incident response security competition

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Languages