CiscoCXSecurity / log4jLinks
Detection rules to look for Log4J usage and exploitation
☆18Updated 7 months ago
Alternatives and similar repositories for log4j
Users that are interested in log4j are comparing it to the libraries listed below
Sorting:
- Simple Docker-based quickstart for osquery, Fleet, and ELK stack☆64Updated 2 years ago
- Post-Infection Collection Toolkit☆95Updated 3 years ago
- Scripts from my book OS X Incident Response Scripting and Analysis -> https://www.amazon.com/dp/012804456X/ref=cm_sw_r_tw_dp_U_x_fQeLAb68…☆50Updated 9 years ago
- Unleash the power of the Falcon Platform at the CLI☆136Updated 4 months ago
- ☆19Updated 4 years ago
- ☆34Updated 2 years ago
- Falcon Data Replicator☆39Updated last month
- fqdn_parser (Fully Qualified Domain Name Parser) is a library for parsing FQDNs into their component parts, as well as providing addition…☆28Updated last year
- OpenIOC rules to facilitate hunting for indicators of compromise☆37Updated 4 years ago
- Lightweight macOS detection agent built on Santa’s Endpoint Security telemetry.☆105Updated 2 months ago
- Cisco Orbital - Osquery queries by Talos☆136Updated last year
- Golang command line tool for the macOS Endpoint Security Framework☆29Updated 6 years ago
- Tools related to work with Attack Flow (https://github.com/center-for-threat-informed-defense/attack-flow)☆44Updated 3 years ago
- Recon Hunt Queries☆79Updated 4 years ago
- A POC to implement Detection-as-Code with Terraform and Sumo Logic.☆30Updated 2 years ago
- Osquery Mangement Server☆115Updated 5 years ago
- Run individual configuration, compliance and security controls or full compliance benchmarks for CIS for Zoom using Powerpipe and Steampi…☆66Updated 5 months ago
- Actionable analytics designed to combat threats based on MITRE's ATT&CK.☆23Updated 6 years ago
- A canary designed to minimize the impact from certain Ransomware actors☆102Updated 4 years ago
- ☆74Updated 4 months ago
- Import specific data sources into the Sigma generic and open signature format.☆79Updated 3 years ago
- Osquery Packs we use for customer security hardening☆12Updated 7 months ago
- Synthetic Adversarial Log Objects: A Framework for synthentic log generation☆85Updated 2 years ago
- Swift Command line tool used for proactive detection of malicious activity on macOS systems.☆67Updated 5 years ago
- ☆18Updated 4 years ago
- ☆51Updated last month
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆84Updated this week
- Run Sigma detection rules on logs from the new MacOS EndpointSecurity Framework☆22Updated 5 years ago
- A ruleset to find potentially malicious code in macOS malware samples☆40Updated 2 years ago
- Dockerfiles for containerized osquery☆14Updated 8 years ago