0x4D31 / santamonLinks
Lightweight macOS detection agent built on Santa’s Endpoint Security telemetry.
☆39Updated last week
Alternatives and similar repositories for santamon
Users that are interested in santamon are comparing it to the libraries listed below
Sorting:
- ☆51Updated 2 months ago
- Remotely collect linux live forensics artifacts.☆14Updated 3 years ago
- ☆65Updated last year
- A ruleset to find potentially malicious code in macOS malware samples☆41Updated 2 years ago
- A collection of models for organizing, prioritizing, and understanding cybersecurity and information risk management concepts.☆25Updated last year
- ☆134Updated 3 months ago
- PoC shadow SaaS and insecure credential detection system using a browser extension.☆42Updated last week
- ☆41Updated last year
- Automated testing, generation & manipulation of #osquery packs☆73Updated last year
- Golang-based SDK to CrowdStrike's APIs☆77Updated last week
- machofile is a module to parse Mach-O binary files☆89Updated 3 months ago
- AWS EKS Cluster Forensics☆23Updated 4 years ago
- pocket guide for core detection engineering concepts☆30Updated 2 years ago
- ☆18Updated last year
- ☆14Updated 3 years ago
- ☆28Updated last year
- ForgeArmory provides TTPs that can be used with the TTPForge (https://github.com/facebookincubator/ttpforge).☆117Updated last year
- Knowledge Report Alert & Normalization Generator☆27Updated last year
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆30Updated 9 months ago
- Audit log wall of shame.☆42Updated 3 months ago
- The Event Maturity Matrix (EMM) is a comprehensive framework that provides clarity regarding the capabilities and nuances of SaaS audit l…☆30Updated 5 months ago
- ☆31Updated 5 months ago
- Rules shared by the community from 100 Days of YARA 2025☆37Updated 10 months ago
- Repository that contains a set of purposefully erroneous Yara rules.☆60Updated 4 months ago
- Automated vulnerability discovery and annotation☆67Updated last year
- Adversary emulation for EDR/SIEM testing (macOS/Linux)☆52Updated last week
- A POC to implement Detection-as-Code with Terraform and Sumo Logic.☆29Updated 2 years ago
- A tool to run and validate telemetry for Atomic Red Team tests☆15Updated last year
- ☆23Updated last year
- ☆14Updated 5 months ago