CrowdStrike / gofalconLinks
Golang-based SDK to CrowdStrike's APIs
☆78Updated last week
Alternatives and similar repositories for gofalcon
Users that are interested in gofalcon are comparing it to the libraries listed below
Sorting:
- ☆51Updated last month
- pocket guide for core detection engineering concepts☆31Updated 2 years ago
- A Go implementation and parser for Sigma rules.☆93Updated 8 months ago
- Lightweight macOS detection agent built on Santa’s Endpoint Security telemetry.☆101Updated last month
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆30Updated 11 months ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 4 years ago
- ForgeArmory provides TTPs that can be used with the TTPForge (https://github.com/facebookincubator/ttpforge).☆119Updated last month
- Unleash the power of the Falcon Platform at the CLI☆134Updated 3 months ago
- Adversary emulation for EDR/SIEM testing (macOS/Linux)☆53Updated 2 weeks ago
- ☆127Updated 8 months ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆66Updated 3 years ago
- Automated testing, generation & manipulation of #osquery packs☆74Updated last year
- A Golang CLI for the MITRE ATT&CK Framework☆14Updated 9 months ago
- Cisco Orbital - Osquery queries by Talos☆136Updated last year
- ☆65Updated last year
- gyp: A pure Go YARA parser☆106Updated last year
- When good OAuth apps go rogue. Documents observed OAuth application tradecraft☆84Updated last month
- A standard for reducing log volume without sacrificing analytical capability☆213Updated 11 months ago
- Hunt for SQLite files used by various applications☆27Updated last week
- Developer enhancements (DX) for FalconPy, the CrowdStrike Python SDK☆45Updated last week
- A public collection of detections designed to detect threats associated with the Okta WIC Platform.☆12Updated 3 weeks ago
- ☆65Updated 3 years ago
- AWS EKS Cluster Forensics☆23Updated 4 years ago
- Falcon Data Replicator☆39Updated 3 weeks ago
- A POC to implement Detection-as-Code with Terraform and Sumo Logic.☆30Updated 2 years ago
- ☆34Updated 2 years ago
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆82Updated 7 months ago
- Tail Certificate Transparency logs and extract hostnames☆127Updated 7 months ago
- A tool that allows you to document and assess any security automation in your SOC☆48Updated last year
- Project to Support The Hunter's Framework (THF)☆11Updated last year