DefensiveOrigins / APT06202001
Applied Purple Teaming - (ITOCI4hr) - Infrastructure, Threat Optics, and Continuous Improvement - June 6, 2020
☆322Updated 4 years ago
Alternatives and similar repositories for APT06202001:
Users that are interested in APT06202001 are comparing it to the libraries listed below
- Atomic Purple Team Framework and Lifecycle☆289Updated 4 years ago
- Beacon Kibana Executable Report. Aggregates Sysmon Network Events With Elasticsearch and Kibana☆292Updated 4 months ago
- Purple Teaming Attack & Hunt Lab - Terraform☆158Updated 3 years ago
- Misc Threat Hunting Resources☆373Updated 2 years ago
- DetectionLabELK is a fork from DetectionLab with ELK stack instead of Splunk.☆547Updated 3 years ago
- Bloodhound Reporting for Blue and Purple Teams☆1,149Updated 4 months ago
- PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monit…☆794Updated 2 months ago
- A little tool to play with Azure Identity - Azure and Entra ID lab creation tool. Blog: https://medium.com/@iknowjason/sentinel-for-pur…☆551Updated 2 months ago
- Automation scripts to deploy Windows Event Forwarding, Sysmon, and custom audit policies in an Active Directory environment.☆465Updated 2 months ago
- Credential and Red Teaming Defense for Windows Environments☆324Updated 7 months ago
- links collected from SOC Core Skills class☆85Updated 4 years ago
- Purple Team Exercise Framework☆675Updated last year
- Public Repo for Atomic Test Harness☆262Updated 7 months ago
- Tool Analysis Result Sheet☆347Updated 7 years ago
- Adversary Tactics - PowerShell Training☆1,534Updated 5 years ago
- Simulates common user behaviour on local and remote Windows hosts.☆283Updated 6 years ago
- A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework☆350Updated 4 years ago
- Dashboard for conducting Backdoors and Breaches sessions over Zoom.☆113Updated 4 months ago
- A list of my personal projects☆174Updated 2 years ago
- Build a attack range in your local machine☆130Updated last year
- A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon☆197Updated 4 years ago
- Collection of created MindMaps☆150Updated last year
- Deploy customizable Active Directory labs in Azure - automatically.☆414Updated 2 months ago
- A collection of red team and adversary emulation resources developed and released by MITRE.☆498Updated 3 years ago
- Tools, techniques, cheat sheets, and other resources to assist those defending organizations and detecting adversaries☆443Updated 3 years ago
- Splunk code (SPL) for serious threat hunters and detection engineers.☆271Updated last year
- This was code for analyzing round 1 of the MITRE Enterprise ATT&CK Evaluation. Please check out https://github.com/joshzelonis/Enterprise…☆95Updated 4 years ago
- Building environments to replicate small networks and deploy applications☆319Updated 3 weeks ago
- Configuration Hardening Assessment PowerShell Script (CHAPS)☆176Updated 9 months ago
- Resolvn Threat Hunting Virtual Machine☆138Updated 5 years ago