Bre77 / hibp
☆15Updated 2 months ago
Alternatives and similar repositories for hibp:
Users that are interested in hibp are comparing it to the libraries listed below
- Collection of useful Canary tools☆75Updated last month
- Unleash the power of the Falcon Platform at the CLI☆114Updated this week
- MISP to Sentinel integration☆62Updated 2 months ago
- Anvilogic Forge☆89Updated last week
- Import CrowdStrike Threat Intelligence into your instance of MISP☆42Updated 3 months ago
- ☆116Updated last year
- This repository contains Splunk queries to hunt some anomalies☆38Updated 2 years ago
- Data Driven Threat Hunting on the RaspberryPi☆29Updated 3 years ago
- SANS has developed a set of information security policy templates. These are free to use and fully customizable to your company's IT secu…☆36Updated 3 years ago
- A collection of scripts for use with CrowdStrike Falcon RTR☆17Updated 3 months ago
- RRR (Rapid Response Reporting) is a collection of Incident Response Report objects. They are designed to help incident responders provid…☆36Updated 2 years ago
- Learn Splunk by creating a lab instance in seconds. Includes Eventgen and Splunk's Machine Learning app!☆95Updated 11 months ago
- ☆63Updated 2 months ago
- A collection of various SIEM rules relating to malware family groups.☆65Updated 7 months ago
- Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indi…☆101Updated 3 months ago
- Programming Microsoft Sentinel book☆25Updated last year
- Corelight@Home script☆40Updated last year
- Ansible playbooks for configuring and managing Splunk Cloud deployments with the Admin Config Service (ACS) API☆26Updated this week
- InsightVM helpful SQL queries☆63Updated last month
- Elastic version of SOC prime watcher rules☆29Updated 3 months ago
- Web based S1 query navigator for one-click threat hunting☆18Updated 4 years ago
- ☆51Updated 8 months ago
- This pack is targeted for collections of Window events in the Classic or newer XML format. For events in the Classic format, sometimes th…☆14Updated 2 years ago
- ☆27Updated 5 months ago
- Microsoft Sentinel, Defender for Endpoint - KQL Detection Packs☆52Updated last year
- ALFA stands for Automated Audit Log Forensic Analysis for Google Workspace. You can use this tool to acquire all Google Workspace audit l…☆154Updated last month
- ☆73Updated last year
- Search a filesystem for indicators of compromise (IoC).☆69Updated 5 months ago