@CrowdStrike

Top repositories

1

CRT

Contact: [email protected]
PowerShell
681
star
2

automactc

AutoMacTC: Automated Mac Forensic Triage Collector
Python
491
star
3

Forensics

Scripts and code referenced in CrowdStrike blog posts
Python
325
star
4

psfalcon

PowerShell for CrowdStrike's OAuth2 APIs
PowerShell
314
star
5

falconpy

The CrowdStrike Falcon SDK for Python
Python
303
star
6

Tortilla

C
281
star
7

ember-timetree

Visualize hierarchical timeline data. Built with Ember.jsย and D3.js
JavaScript
273
star
8

SuperMem

A python script developed to process Windows memory images based on triage type.
Python
257
star
9

travel-laptop

Auxiliary documentation and scripts around "A Reasonably Safe Travel Burner Laptop"
C++
225
star
10

falcon-orchestrator

CrowdStrike Falcon Orchestrator provides automated workflow and response capabilities
JavaScript
181
star
11

CrowdDetox

The CrowdDetox plugin for Hex-Rays automatically removes junk code and variables from Hex-Rays function decompilations.
C++
157
star
12

cs-bro

Bro scripts written by CrowdStrike Services
Zeek
147
star
13

Cloud-AWS

A collection of projects supporting AWS Integration
Python
137
star
14

CrowdFMS

CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by leveraging the Private API system. This framework automatically downloads recent samples, which triggered an alert on the users YARA notification feed.
Python
123
star
15

csproto

CrowdStrike's Protocol Buffers library
Go
116
star
16

falcon-scripts

Scripts to streamline the deployment and use of the CrowdStrike Falcon sensor
PowerShell
105
star
17

falcon-query-assets

Welcome to the Falcon Query Assets GitHub page.
Shell
93
star
18

Falcon-Toolkit

Unleash the power of the Falcon Platform at the CLI
Python
91
star
19

CAST

CrowdStrike Archive Scan Tool
PowerShell
83
star
20

xwf-yara-scanner

C
82
star
21

ansible_collection_falcon

Install and configure CrowdStrike's Falcon sensor via Ansible.
Python
80
star
22

tf2rust

Tensorflow to Rust is a tool to convert trained Tensorflow models to pure Rust code.
Python
80
star
23

logscale-community-content

This repository contains Community and Field contributed content for LogScale
Shell
79
star
24

falcon-helm

Helm Charts for running CrowdStrike Falcon with Kubernetes
Smarty
63
star
25

pyspresso

The pyspresso package is a Python-based framework for debugging Java.
Python
51
star
26

gofalcon

Golang-based SDK to CrowdStrike's APIs
Go
50
star
27

ember-browser-services

Services for interacting with browser APIs so that you can have fine-grained control in tests.
TypeScript
45
star
28

falcon-operator

Go
40
star
29

gotel

GoTel - Scheduled job monitoring
Go
36
star
30

detection-container

PHP
35
star
31

perseus

The hero we all need to defeat the kraken that is Go module dependency graphs
Go
33
star
32

caracara

Developer enhancements (DX) for FalconPy, the CrowdStrike Python SDK
Python
32
star
33

MISP-tools

Import CrowdStrike Threat Intelligence into your instance of MISP
Python
31
star
34

Dockerfiles

Automation to help create container images pre-loaded with the CrowdStrike Falcon sensor.
Shell
31
star
35

container-image-scan

Code to scan a container with CrowdStrike and return response codes indicating pass/fail status.
Python
31
star
36

chopshop

Mitre chopshop network decoder framework
Python
30
star
37

community

CrowdStrike's Open Source Policy & Contribution Guide
HTML
29
star
38

FDR

Falcon Data Replicator
Python
28
star
39

faltest

A different take on WebDriver browser testing
JavaScript
27
star
40

go-metrics-sliding-window

A sliding window sampling implementation for the rcrowley/go-metrics library.
Go
24
star
41

ember-headless-form

Headless forms with a11y and validation support built in
JavaScript
24
star
42

apbf

Go package implementing Age-Partitioned Bloom Filters (APBF)
Go
24
star
43

Cloud-Azure

Discover for Cloud and Containers Azure
HCL
23
star
44

ember-headless-table

TypeScript
22
star
45

ember-aria-utilities

ARIA utilities for helping create some of the more complex ARIA design patterns. Follows https://www.w3.org/TR/wai-aria-practices/
TypeScript
20
star
46

embersim-databank

Code for the paper "EMBERSim: A Large-Scale Databank for Boosting Similarity Search in Malware Analysis"
Python
20
star
47

ember-resource-tasks

Resources for async functions in Ember
TypeScript
18
star
48

ember-url-hash-polyfill

Support for in/inter page linking / scrolling with hashes in EmberJS
TypeScript
17
star
49

cloud-resource-estimator

Cloud deployment size calculation utilities
Python
16
star
50

bpfmon-example

proof-of-concept example of using eBPF to Monitor for eBPF Map tampering
C
16
star
51

tailwind-toucan-base

Base Tailwind config for the Toucan design system.
JavaScript
14
star
52

omigo-data-analytics

Data Analytics Library for Python
Jupyter Notebook
14
star
53

falcon-integration-gateway

Falcon Integration Gateway (FIG)
Python
14
star
54

tf-layers

Tensorflow Layers provides Rust implementations of Tensorflow model layers
Rust
14
star
55

ember-velcro

Ember Velcro sticks one element to another with Floating UI.
TypeScript
13
star
56

kafka-replicator

Kafka replicator is a tool used to mirror and backup Kafka topics across regions
Go
13
star
57

container-image-scan-action

CrowdStrike Container Image Scan Github Action
Shell
12
star
58

OWASSRF

PowerShell
12
star
59

Identity-Protection

PowerShell
11
star
60

ivan

Falcon Image Vulnerability Analysis (IVAN) is a command-line image assessment tool.
10
star
61

falconjs

CrowdStrike Falcon API JS library for the browser and Node
TypeScript
10
star
62

zscaler-FalconX-integration

This is the integration to feed Falcon X IOC data into zscaler's platform
Python
10
star
63

monorepo-next

Detach monorepo packages from normal linking
JavaScript
10
star
64

NotPetyaDecryptor

Python
9
star
65

aws-ssm-distributor

HCL
9
star
66

helpful-links

List of helpful publicly available CrowdStrike material.
9
star
67

ember-toucan-core

Toucan Design System
JavaScript
9
star
68

rusty-falcon

Rust bindings for CrowdStrike Falcon API
Rust
8
star
69

aws-security-lake

Integration guide for CrowdStrike and Amazon Security Lake
Shell
7
star
70

terraform-kubectl-falcon

Module to manage CrowdStrike Falcon Sensor and the Kubernetes Protection Agent on a Kubernetes cluster.
HCL
7
star
71

cloud-tools-image

Command-line tools for remote communication with public and private cloud environments.
Shell
6
star
72

puppet-falcon

Ruby
6
star
73

HEC-Log-Shipper

This repository contains examples of code used to send data to Humio instances
Python
5
star
74

Cloud-GCP

A collection of projects supporting GCP integration
Shell
5
star
75

image-scan-example

HCL
5
star
76

aws-verified-access

Integration details between CrowdStrike Falcon Zero Trust Assessments (ZTA) and AWS Verified Access
5
star
77

crimson-falcon

A Shiny Ruby SDK of our Falcon API
Ruby
4
star
78

ember-toucan-styles

Ember wrapper, CSS, and JS utilities for working with the Toucan design system
JavaScript
4
star
79

ember-three

Ember.js three.js shim
JavaScript
4
star
80

foundry-fn-go

Go
3
star
81

logscale-azure-event-hub-collector

LogScale Azure Event Hub Collector
Python
3
star
82

cloud-pov

HCL
3
star
83

devdays

Shell
3
star
84

cs.aws_account

Python
3
star
85

kubectl-falcon

Plug-in to kubectl command-line tool that helps with manipulation of Falcon Container.
Go
3
star
86

opensource.crowdstrike.com

JavaScript
3
star
87

CrowdStrike-Spotlight-Humio-Package-Integration

Python
3
star
88

ember-number-to-words-shim

Ember.js number-to-words shim
JavaScript
3
star
89

template-gitbook-workshop

Code behind https://crowdstrike.gitbook.io/template-gitbook-workshop/
CSS
3
star
90

gql

Tools for managing graphql schema
Go
2
star
91

caracara-filters

A new filter backend for Caracara
Python
2
star
92

cs-cnap

CNAP training
Python
2
star
93

security-for-jenkins

Know about vulnerabilities at build time with Jenkins.
Java
2
star
94

rancher-helm-chart

Sample Helm Charts for deploying CrowdStrike Falcon sensors into Rancher's RKE and k3s products.
2
star
95

terraform-nutanix-script

HCL
2
star
96

opensearchtools

Go
2
star
97

promwatch

PromWatch is an exporter for CloudWatch metrics in a Prometheus compatible format.
Go
2
star
98

AWS-Account-Registration

2
star
99

terraform-modules

HCL
2
star
100

Container-Security

HCL
2
star