CybercentreCanada / assemblyline4_docsLinks
AssemblyLine4 documentation
☆28Updated this week
Alternatives and similar repositories for assemblyline4_docs
Users that are interested in assemblyline4_docs are comparing it to the libraries listed below
Sorting:
- AssemblyLine 4: File triage and malware analysis☆392Updated this week
- DFIQ is a collection of investigative questions and the approaches for answering them☆294Updated 10 months ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆168Updated 2 years ago
- Sigma rule specification☆156Updated this week
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆139Updated last year
- Rules generated from our investigations.☆202Updated 5 months ago
- A framework for orchestrating forensic collection, processing and data export☆332Updated 2 weeks ago
- ☆212Updated 5 months ago
- An opensource sigma conversion tool built using pysigma☆147Updated last month
- Malware repository component for samples & static configuration with REST API interface.☆370Updated 3 weeks ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆157Updated 8 months ago
- A python script developed to process Windows memory images based on triage type.☆265Updated last year
- Sigma rules from Joe Security☆225Updated last year
- Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)☆497Updated this week
- Set of SIGMA rules (>350) mapped to MITRE ATT&CK tactic and techniques☆396Updated 2 weeks ago
- A cross-platform baselining, threat hunting, and attack surface analysis tool for security teams.☆243Updated 7 months ago
- Public script from SANS FOR509 Enterprise Cloud Incident Response☆212Updated 3 weeks ago
- The Sigma command line interface based on pySigma☆166Updated last week
- Collection of Jupyter Notebooks by @fr0gger_☆185Updated last month
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆166Updated last month
- A repository of my own Sigma detection rules.☆162Updated last year
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters …☆287Updated this week
- Dettectinator - The Python library to your DeTT&CT YAML files.☆118Updated 7 months ago
- A (nearly) production ready Dockered MISP☆231Updated last year
- MISP trainings, threat intel and information sharing training materials with source code☆420Updated 5 months ago
- 🧭 The artifactcollector is a customizable agent to collect forensic artifacts on any Windows, macOS or Linux system☆298Updated 6 months ago
- This repository contains helper scripts and custom configs to get the best out of Google's Timesketch project.☆116Updated 2 years ago
- Intelligence Architecture Mind Map☆138Updated last year
- Threat Hunting & Incident Investigation with Osquery☆217Updated 3 years ago
- Python client for DFIR-IRIS☆25Updated last year