Ahmed-AL-Maghraby / SIEM-Cheat-Sheet
SIEM Cheat Sheet
☆73Updated last year
Alternatives and similar repositories for SIEM-Cheat-Sheet:
Users that are interested in SIEM-Cheat-Sheet are comparing it to the libraries listed below
- Useful resources about phishing email analysis☆81Updated 2 months ago
- Some important DFIR Resources☆83Updated 2 years ago
- Repository resource for threat hunter☆158Updated 6 years ago
- Some Threat Hunting queries useful for blue teamers☆125Updated 2 years ago
- Completely Risky Active-Directory Simulation Hub☆99Updated last year
- Cloud-based AD lab created to help you test real attacks in a controlled environment and create detection rules for them☆28Updated last year
- CarbonBlack EDR detection rules and response actions☆71Updated 7 months ago
- ☆173Updated last year
- Creation of a laboratory for malware analysis in AWS☆95Updated 2 years ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆121Updated last year
- ☆32Updated 5 months ago
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆154Updated last week
- This is the One Stop place where you can find almost all of your Tools of Requirements in DFIR☆77Updated 3 years ago
- Windows Malware Investigation Scripts & Docs☆81Updated 5 months ago
- MISP Playbooks☆194Updated 2 months ago
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆61Updated 8 months ago
- An offline Phishing Email Analyzer. Enabling non-techies to analyze phishing emails automatically!☆61Updated last year
- ☆47Updated last month
- Repository for sharing examples of our artifacts data and for use in new analyst recruitment.☆90Updated this week
- A library of reference materials, tools, and other resources to aid threat profiling, threat quantification, and cyber adversary defense☆83Updated last year
- MAD ATT&CK Defender: ATT&CK Adversary Emulation Repository☆113Updated last year
- Purpleteam scripts simulation & Detection - trigger events for SOC detections☆184Updated 3 months ago
- ☆65Updated 2 years ago
- This tool parses Windows EVTX logs to extract login and logout sessions from a security.evtx file. It uses a Tkinter GUI to let you selec…☆32Updated last month
- This repo is where I store my Threat Hunting ideas/content☆87Updated last year
- Blue Team detection lab created with Terraform and Ansible in Azure.☆153Updated 4 months ago
- ThreatSeeker: Threat Hunting via Windows Event Logs☆120Updated last year
- ☆13Updated 2 years ago
- Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so on☆81Updated 11 months ago
- A browser extension for threat hunting that provides one UI for different SIEMs/EDRs and simplifies investigation☆77Updated 10 months ago