CyberSift / OSQUERY-PACKS
Osquery Packs we use for customer security hardening
☆12Updated 5 months ago
Alternatives and similar repositories for OSQUERY-PACKS:
Users that are interested in OSQUERY-PACKS are comparing it to the libraries listed below
- ☆34Updated last year
- Open-source Fabric templates for cybersecurity and compliance☆16Updated 2 months ago
- ☆12Updated 5 years ago
- A few quick recipes for those that do not have much time during the day☆22Updated 4 months ago
- ☆15Updated 5 years ago
- An experimental Velociraptor implementation using cloud infrastructure☆23Updated this week
- Workflows for Shuffle☆21Updated 2 years ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆39Updated 10 months ago
- Automatic detection engineering technical state compliance☆54Updated 8 months ago
- Some resources to facilitate my blog on auditd for security monitoring☆12Updated 2 years ago
- Recon Hunt Queries☆76Updated 3 years ago
- ansible role to setup MISP, Malware Information Sharing Platform & Threat Sharing☆53Updated 3 months ago
- Powershell Scripts to work on Crowdstrike Falcon that pull back raw data relevant to forensic investigation☆22Updated 3 months ago
- TheHiveIRPlaybook is a collection of TheHive case templates used for Incident Response☆13Updated 4 years ago
- A repository of Sysmon For Linux configuration modules☆15Updated 3 years ago
- ☆15Updated 3 years ago
- ☆18Updated 3 years ago
- This repo contains information on how to auto deploy Sysmon via GPO and Task Scheduler☆12Updated 3 years ago
- Repo for Automations and other solutions for Elastic SIEM/Security.☆18Updated 3 years ago
- Visual Studio Code extension for MITRE ATT&CK☆54Updated 8 months ago
- Sharing Threat Hunting runbooks☆25Updated 5 years ago
- Send High & New Incidents to The Hive incident management Platform☆18Updated 4 years ago
- Build Automated Machine Images for MISP☆28Updated last year
- Track progress and keep notes while working through likethecoins' CTI Self Study Plan☆28Updated 2 years ago
- Incident Response Report Using GitHub-Sphinx☆20Updated 5 years ago
- DNS Dashboard for hunting and identifying beaconing☆15Updated 4 years ago
- Domain Connectivity Analysis Tools to analyze aggregate connectivity patterns across a set of domains during security investigations☆43Updated 3 years ago
- A packer utility to create and capture DFIR Image for use AWS & Azure☆15Updated 5 years ago
- Use SQL to instantly query file, domain, URL and IP scanning results from VirusTotal.☆22Updated 4 months ago
- ☆19Updated 3 years ago