ForensicArtifacts / artifacts
Digital Forensics artifact repository
☆1,089Updated last month
Alternatives and similar repositories for artifacts:
Users that are interested in artifacts are comparing it to the libraries listed below
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders☆792Updated last year
- Super timeline all the things☆1,784Updated last month
- Digital Forensics Investigation Platform☆799Updated 4 months ago
- A Splunk app mapped to MITRE ATT&CK to guide your threat hunts☆1,144Updated last year
- This repository serves as a place for community created Targets and Modules for use with KAPE.☆684Updated last week
- Online hash checker for Virustotal and other services☆821Updated 9 months ago
- Extract and aggregate threat intelligence.☆846Updated last year
- Actionable analytics designed to combat threats☆979Updated 2 years ago
- Windows Events Attack Samples☆2,307Updated 2 years ago
- Simple Bash IOC Scanner☆717Updated 3 years ago
- CyLR - Live Response Collection Tool☆663Updated 2 years ago
- yarGen is a generator for YARA rules☆1,602Updated 8 months ago
- An informational repo about hunting for adversaries in your IT environment.☆1,748Updated 3 years ago
- Scripts and a (future) library to improve users' interactions with the ATT&CK content☆585Updated last year
- ReversingLabs YARA Rules☆791Updated last month
- Repository of YARA rules made by Trellix ATR Team☆576Updated last year
- A set of Zeek scripts to detect ATT&CK techniques.☆576Updated 7 months ago
- Re-play Security Events☆1,621Updated 11 months ago
- Clusters and elements to attach to MISP events or attributes (like threat actors)☆554Updated this week
- A collection of resources for Threat Hunters☆874Updated 4 months ago
- Detect Tactics, Techniques & Combat Threats☆2,116Updated 3 weeks ago
- The goal of this repo is to archive artifacts from all versions of various OS's and categorizing them by type. This will help with artifa…☆574Updated 3 months ago
- A Powershell incident response framework☆1,584Updated 2 years ago
- Configuration files for the SOF-ELK VM☆1,552Updated this week
- MISP trainings, threat intel and information sharing training materials with source code☆400Updated last week
- Open Source Security Events Metadata (OSSEM)☆1,254Updated last year
- A collection of sources of indicators of compromise.☆837Updated 4 months ago
- Indicators from Unit 42 Public Reports☆707Updated 3 weeks ago
- A knowledge base of actionable Incident Response techniques☆628Updated 2 years ago
- Cyber Analytics Repository☆917Updated 10 months ago