AdvancedThreatAnalytics / threat-analytics-search
Threat Analytics Search Chrome Extension
☆12Updated last year
Alternatives and similar repositories for threat-analytics-search
Users that are interested in threat-analytics-search are comparing it to the libraries listed below
Sorting:
- Powershell Scripts to work on Crowdstrike Falcon that pull back raw data relevant to forensic investigation☆22Updated 4 months ago
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆38Updated last month
- An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.☆55Updated 3 years ago
- My Jupyter Notebooks☆36Updated 2 months ago
- Workflows for Shuffle☆22Updated 2 years ago
- Web based S1 query navigator for one-click threat hunting☆19Updated 4 years ago
- Convert Sigma rules to LogRhythm searches☆21Updated 3 years ago
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆111Updated 5 months ago
- ☆72Updated 6 months ago
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆134Updated 2 years ago
- Synthetic Adversarial Log Objects: A Framework for synthentic log generation☆81Updated last year
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆41Updated last year
- Use Terraform to Provision Your Own Cloud-Based Remote Browsing Workstation☆25Updated last year
- ☆47Updated last month
- Small-scale threat emulation and detection range built on Elastic and Atomic Redteam.☆38Updated last year
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆67Updated last year
- Python library for threat intelligence☆86Updated 3 months ago
- RRR (Rapid Response Reporting) is a collection of Incident Response Report objects. They are designed to help incident responders provid…☆37Updated 3 years ago
- Sharing Threat Hunting runbooks☆25Updated 5 years ago
- A community event for security researchers to share their favorite notebooks☆107Updated last year
- Microsoft Sentinel, Defender for Endpoint - KQL Detection Packs☆53Updated last year
- A tool that allows you to document and assess any security automation in your SOC☆46Updated 6 months ago
- SigmaHQ pySigma CrowdStrike processing pipeline☆24Updated 6 months ago
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆53Updated 2 years ago
- The idea is simply to save some quick notes that will make it easier for Splunk users to leverage KQL (Kusto), especially giving projects…☆42Updated 4 years ago
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆70Updated last year
- ☆33Updated 6 years ago
- Easily create index of your SANS books☆16Updated 2 years ago
- This repo is where I store my Threat Hunting ideas/content☆87Updated 2 years ago