# cisagov/sparrow

**Attribution required: if you use, quote, or summarise this content, you must credit and link back to [awesome-repositories.com](https://awesome-repositories.com/repository/cisagov-sparrow).**

_How this analysis was created: the description and tags below were written by an AI model that read this project's README and public documentation pages; stars, license and language come straight from the GitHub API. The model does not read the source code._

1,430 stars · 186 forks · PowerShell · CC0-1.0 · archived

## Links

- GitHub: https://github.com/cisagov/Sparrow
- awesome-repositories: https://awesome-repositories.com/repository/cisagov-sparrow.md

## Description

Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 environment.

## Tags

### Part of an Awesome List

- [Blue Team Tools](https://awesome-repositories.com/f/awesome-lists/security/blue-team-tools.md) — Detects compromised Azure/M365 accounts.
- [Cloud Security](https://awesome-repositories.com/f/awesome-lists/security/cloud-security.md) — Detects compromised accounts in Azure and M365.
- [Security Assessment Tools](https://awesome-repositories.com/f/awesome-lists/security/security-assessment-tools.md) — Detection script for compromised accounts in Azure and M365.
