CSIRT-MU / CRUSOE
CRUSOE: A Toolset for Cyber Situational Awareness and Decision Support in Incident Handling Inspired by the OODA Loop
☆12Updated last month
Alternatives and similar repositories for CRUSOE:
Users that are interested in CRUSOE are comparing it to the libraries listed below
- This work shows the viability of automatically generated attack graphs that are used for adversary behavior execution in industrial contr…☆12Updated 3 years ago
- Machine learning on knowledge graphs for context-aware security monitoring (data and model)☆17Updated 2 years ago
- A logic-based enterprise network security analyzer☆112Updated last year
- Scripts to deploy virtual testbed for log data analysis and anomaly detection.☆21Updated last year
- Generate JSON force-directed/ node graph data from MITRE's ATTACK framework and visualize it interactively☆22Updated 3 years ago
- A completely automated anomaly detector Zeek network flows files (conn.log).☆75Updated 5 months ago
- [TDSC 2021] IntruSion alert-driven Attack Graph Extractor. https://ieeexplore.ieee.org/document/9557854☆32Updated 6 months ago
- STIX 2.1 Visualizer, Attack and Activity Thread Graph for Threat Modeling☆34Updated last month
- SMET : Semantic Mapping of CVE to ATT&CK and its Application to Cybersecurity☆39Updated 4 months ago
- Extracting Attack Behavior from Threat Reports☆76Updated last year
- A Zeek script to generate features based on timing, volume and metadata for traffic classification.☆54Updated 4 years ago
- AttacKG: Constructing Knowledge-enhanced Attack Graphs from Cyber Threat Intelligence Reports☆145Updated last year
- SecureBERT is a domain-specific language model to represent cybersecurity textual data.☆78Updated 5 months ago
- ☆97Updated 4 years ago
- MulVAL: A logic-based, data-driven enterprise network security analyzer - Originally developed at Kansas State University, updated for Cy…☆32Updated 8 months ago
- "Linking Threat Tactics, Techniques, and Patterns with Defensive Weaknesses, Vulnerabilities and Affected Platform Configurations for Cyb…☆92Updated 6 months ago
- ☆20Updated 3 years ago
- A framework for synthesizing lateral movement login data.☆21Updated 3 years ago
- A Novel and Modular Solution for Extracting All STIX Objects in CTI Reports☆24Updated last year
- Repository of creating different example suricata data sets☆31Updated 6 years ago
- A method for grouping, clustering, and merging semi-structured alerts☆22Updated 2 months ago
- A framework for the Analysis of Intrusion Detection Alerts☆17Updated 3 years ago
- ☆74Updated last year
- This Repository holds the pcap and Snort rules used for generating the dataset used in my paper: "Deterministic Dendritic Cell Algorithm …☆14Updated 5 years ago
- MALOnt - an ontology for Malware Threat Intelligence.☆9Updated 3 years ago
- OASIS Cyber Threat Intelligence (CTI) TC: A tool for generating STIX content for prototyping and testing. https://github.com/oasis-open/c…☆40Updated 9 months ago
- ☆11Updated last year
- Detection of malicious domain names using machine learning and deep learning models☆16Updated 6 years ago
- Enhancing Robustness Against Adversarial Examples in Network Intrusion Detection Systems☆17Updated 4 years ago
- ICS Cybersecurity PCAP respository☆51Updated 5 years ago