# gfoss/psrecon

**Attribution required: if you use, quote, or summarise this content, you must credit and link back to [awesome-repositories.com](https://awesome-repositories.com/repository/gfoss-psrecon).**

494 stars · 105 forks · PowerShell · Apache-2.0

## Links

- GitHub: https://github.com/gfoss/PSRecon
- awesome-repositories: https://awesome-repositories.com/repository/gfoss-psrecon.md

## Description

:rocket: PSRecon gathers data from a remote Windows host using PowerShell (v2 or later), organizes the data into folders, hashes all extracted data, hashes PowerShell and various system properties, and sends the data off to the security team. The data can be pushed to a share, sent over email, or retained locally.

## Tags

### Part of an Awesome List

- [Threat Hunting Operations](https://awesome-repositories.com/f/awesome-lists/security/threat-hunting-operations.md) — Analyzes remote Windows systems and generates forensic reports.
- [Windows Evidence Collection](https://awesome-repositories.com/f/awesome-lists/security/windows-evidence-collection.md) — Remote data gathering tool for Windows hosts.
