Tools/Resources

Competition ONLY tools

You dont want to use these on production servers

Mallard

Mallard is my personal blue team tool written in Golang. Its main focus is on automating my 5 minute plan, and preventing new connections/sessions to the scored machine: https://github.com/F1shh-sec/BlueTeamTools

Bandaid

Awesome blue team tool created by mdbook focused on protecting scored services and maintaining persistent uptime: https://github.com/Mdbook/bandaid

General Tools

For windows blue-teaming, proficiency with sysinternals really can not be beat:

Basic Static Analysis

Advanced Static

Basic Dynamic

Advanced Dynamic

Resources

Last updated