CyberSift / OSQUERY-PACKSLinks
Osquery Packs we use for customer security hardening
☆12Updated last week
Alternatives and similar repositories for OSQUERY-PACKS
Users that are interested in OSQUERY-PACKS are comparing it to the libraries listed below
Sorting:
- ☆34Updated last year
- Automatic detection engineering technical state compliance☆55Updated last year
- Open-source Fabric templates for cybersecurity and compliance☆21Updated 6 months ago
- Workflows for Shuffle☆23Updated 2 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆54Updated last week
- Use SQL to instantly query file, domain, URL and IP scanning results from VirusTotal.☆23Updated last month
- A tool to assess the compliance of a VMware vSphere environment against the CIS Benchmark.☆52Updated 2 years ago
- Some resources to facilitate my blog on auditd for security monitoring☆12Updated 2 years ago
- Tools for Wazuh by Juan C. Tello☆14Updated 3 years ago
- DNS Dashboard for hunting and identifying beaconing☆16Updated 4 years ago
- An experimental Velociraptor implementation using cloud infrastructure☆25Updated 2 weeks ago
- A few quick recipes for those that do not have much time during the day☆22Updated 8 months ago
- Passive OS detection based on SYN packets without Transmitting any Data☆47Updated 2 years ago
- Repo for Automations and other solutions for Elastic SIEM/Security.☆18Updated 4 years ago
- A python script to acquire multiple aws ec2 instances in a forensically sound-ish way☆38Updated 3 years ago
- Golang implementation of PyMISP-feedgenerator☆17Updated 2 years ago
- Documentation used for Shuffle☆19Updated this week
- Visual Studio Code extension for MITRE ATT&CK☆54Updated last year
- Example Suricata rules implementing some of my detection tactics☆20Updated 2 years ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆44Updated last year
- ☆33Updated 7 years ago
- Defending IaaS with ATT&CK is a project to create a collection of ATT&CK techniques relevant to a Linux IaaS environment, as well as a me…☆14Updated last month
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 4 years ago
- Zeek Extension to Collect Metadata for Profiling of Endpoints and Proxies☆34Updated last year
- An Ansible playbook for deploying the Suricata intrusion detection system and fetching Snort rules with Oinkmaster.☆16Updated 3 years ago
- Notes for High Availability MISP in AWS☆19Updated 5 years ago
- Incident Response Report Using GitHub-Sphinx☆20Updated 5 years ago
- This repository contains generated contextual data utilized by pyattck.☆19Updated 4 months ago
- Build Automated Machine Images for MISP☆28Updated 2 years ago
- Collection of useful Canary tools☆81Updated 2 weeks ago