CrowdStrike / falcon-integration-gateway
Falcon Integration Gateway (FIG)
☆18Updated last month
Related projects ⓘ
Alternatives and complementary repositories for falcon-integration-gateway
- Documentation used for Shuffle☆18Updated this week
- Sharing Threat Hunting runbooks☆24Updated 5 years ago
- Security Alert Decoration☆26Updated this week
- Attack Range to test detection against nativel serverless cloud services and environments☆35Updated 3 years ago
- Acheron is a RESTful vulnerability assessment and management framework built around search and dedicated to terminal extensibility.☆31Updated last year
- A few quick recipes for those that do not have much time during the day☆21Updated 3 weeks ago
- Rapid cybersecurity toolkit based on Elastic in Docker. Designed to quickly build elastic-based environments to analyze and execute threa…☆18Updated 4 years ago
- pocket guide for core detection engineering concepts☆27Updated last year
- ☆17Updated 3 years ago
- Kestrel Jupyter Notebook Kernel☆9Updated last year
- Workflows for Shuffle☆20Updated 2 years ago
- An application allowing users to explore, create, annotate, and share extensions of the MITRE ATT&CK® knowledge base. This repository con…☆42Updated 2 weeks ago
- Validation tool for SANS Courseware files. Generates and validates against a checksum file.☆17Updated this week
- Build Automated Machine Images for MISP☆28Updated last year
- Repo for Automations and other solutions for Elastic SIEM/Security.☆18Updated 3 years ago
- Knowledge Report Alert & Normalization Generator☆27Updated 8 months ago
- Recon Hunt Queries☆75Updated 3 years ago
- Import CrowdStrike Threat Intelligence into your instance of MISP☆42Updated last month
- Terraform scripts for deploying OpenCTI to AWS, Azure, and GCP☆30Updated 7 months ago
- OpenIOC rules to facilitate hunting for indicators of compromise☆38Updated 2 years ago
- ☆11Updated 3 years ago
- ☆33Updated 6 years ago
- Actionable analytics designed to combat threats based on MITRE's ATT&CK.☆22Updated 5 years ago
- This repository contains the research and components of our research into using Sigma for AWS Incident Response.☆25Updated last year
- DNS Dashboard for hunting and identifying beaconing☆14Updated 4 years ago
- Incident Response Report Using GitHub-Sphinx☆19Updated 5 years ago
- Legal, procedural and policies document templates for operating MISP and information sharing communities☆37Updated last year
- Best practices in threat intelligence☆46Updated 2 years ago
- AWS EKS Cluster Forensics☆22Updated 3 years ago
- Defending IaaS with ATT&CK is a project to create a collection of ATT&CK techniques relevant to a Linux IaaS environment, as well as a me…☆13Updated 8 months ago