Ahmed-AL-Maghraby / SIEM-Cheat-Sheet
SIEM Cheat Sheet
☆73Updated last year
Alternatives and similar repositories for SIEM-Cheat-Sheet:
Users that are interested in SIEM-Cheat-Sheet are comparing it to the libraries listed below
- Useful resources about phishing email analysis☆83Updated 3 months ago
- Some important DFIR Resources☆83Updated 2 years ago
- ☆65Updated 2 years ago
- Some Threat Hunting queries useful for blue teamers☆125Updated 2 years ago
- CarbonBlack EDR detection rules and response actions☆71Updated 7 months ago
- Repository resource for threat hunter☆158Updated 6 years ago
- ☆33Updated 5 months ago
- Creation of a laboratory for malware analysis in AWS☆96Updated 2 years ago
- This is the One Stop place where you can find almost all of your Tools of Requirements in DFIR☆77Updated 3 years ago
- ☆21Updated 5 years ago
- Completely Risky Active-Directory Simulation Hub☆99Updated last year
- Cloud-based AD lab created to help you test real attacks in a controlled environment and create detection rules for them☆28Updated last year
- Windows Malware Investigation Scripts & Docs☆82Updated 5 months ago
- ☆48Updated last week
- Resources To Learn And Understand SIGMA Rules☆174Updated 2 years ago
- A library of reference materials, tools, and other resources to aid threat profiling, threat quantification, and cyber adversary defense☆85Updated last year
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆88Updated 6 months ago
- ☆175Updated last year
- A browser extension for threat hunting that provides one UI for different SIEMs/EDRs and simplifies investigation☆77Updated 11 months ago
- Collection of scripts and tools related to the eCTHPv2 exam by INE.☆14Updated 2 years ago
- A collection of various SIEM rules relating to malware family groups.☆66Updated 10 months ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆123Updated last year
- A Python script for analyzing email files to extract IP addresses, URLs, headers, and attachments, with functionalities for defanging IPs…☆21Updated 6 months ago
- This tool parses Windows EVTX logs to extract login and logout sessions from a security.evtx file. It uses a Tkinter GUI to let you selec…☆32Updated 2 months ago
- MISP Playbooks☆199Updated 2 months ago
- The Threat Actor Profile Guide for CTI Analysts☆106Updated last year
- Linux Baseline and Forensic Triage Tool - BETA☆55Updated 2 years ago
- Blue Team detection lab created with Terraform and Ansible in Azure.☆152Updated 5 months ago
- Incident Response with Threat Intelligence, published by Packt☆52Updated last year
- This repo is where I store my Threat Hunting ideas/content☆87Updated last year