3CORESec / testmynids.org
A website and framework for testing NIDS detection
☆220Updated last month
Related projects ⓘ
Alternatives and complementary repositories for testmynids.org
- SOCFortress CoPilot☆208Updated this week
- Docker image for MISP☆115Updated last week
- A production ready Dockered MISP☆166Updated this week
- Advanced Wazuh Rules for more accurate threat detection. Feel free to implement within your own Wazuh environment, contribute, or fork!☆594Updated 2 months ago
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆358Updated this week
- This project is a SIEM with SIRP and Threat Intel, all in one.☆410Updated 9 months ago
- Playbooks for SOC Analysts☆143Updated last year
- MITRE Caldera™ for OT Plugins & Capabilities☆193Updated last month
- ☆33Updated last year
- Zeek-Formatted Threat Intelligence Feeds☆343Updated this week
- How to setup a honeypot with an IDS, ELK and TLS traffic inspection☆150Updated 2 years ago
- Indicators of Compromise☆172Updated this week
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆85Updated 2 years ago
- Standard-Format Threat Intelligence Feeds☆101Updated this week
- Docker configurations for TheHive, Cortex and 3rd party tools☆113Updated last year
- Open Source SIEM Stack☆50Updated 3 weeks ago
- OpenVAS Reporting: Convert OpenVAS XML report files to reports☆131Updated 3 months ago
- OpenCTI Docker deployment helpers☆160Updated this week
- Transform Linux Audit logs for SIEM usage☆707Updated last week
- ⚡️ Catalyst is a self-hosted, open source incident response platform and ticket system that helps to automate alert handling and incident…☆346Updated this week
- MISP Docker (XME edition)☆283Updated 11 months ago
- Streamline vulnerability patching with CVSS, EPSS, and CISA's Known Exploited Vulnerabilities. Prioritize actions based on real-time thre…☆527Updated last week
- Linux Security and Monitoring Scripts☆318Updated last month
- Docker image for Velocidex Velociraptor☆113Updated 4 months ago
- Repo Filled With Follow Along Guides☆71Updated 2 years ago
- A Windows event logging and collection baseline focused on finding balance between forensic value and optimising retention.☆271Updated 3 years ago
- SIEM Tactics, Techiques, and Procedures☆584Updated 2 weeks ago
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆202Updated last year
- A (nearly) production ready Dockered MISP☆230Updated 9 months ago
- BlueHound - pinpoint the security issues that actually matter☆712Updated last year