GenRockeR / mpsiemlibLinks
MP SIEM SDK
☆31Updated last month
Alternatives and similar repositories for mpsiemlib
Users that are interested in mpsiemlib are comparing it to the libraries listed below
Sorting:
- реп полезностей для PT MaxPatrol SIEM☆24Updated 2 years ago
- Enterprise Response Model & Common Knowledge☆39Updated 7 months ago
- Chrome extension for SOC automations☆38Updated 4 months ago
- ☆20Updated 4 years ago
- ☆69Updated 4 years ago
- Forensic Artifact Collection Tool Matrix☆92Updated last year
- A free data collection and YARA scanning tool for cybersecurity incident investigation, compromise assessment and threat hunting☆20Updated last year
- Aggregated Indicators of Compromise collected and cross-verified from multiple open and community-supported sources, enriched and ranked …☆36Updated last year
- ☆78Updated 4 months ago
- Powershell module for VMWare vSphere forensics☆158Updated last year
- A repository with data about APTs☆13Updated 3 years ago
- Docker image for Velocidex Velociraptor☆145Updated last month
- BlackBerry Threat Research & Intelligence☆100Updated 2 years ago
- Открытый репозиторий с правилами на языке eXtraction and Processing (XP)☆28Updated 4 months ago
- Blue Team detection lab created with Terraform and Ansible in Azure.☆176Updated last year
- Harness the power of Splunk for your investigations☆149Updated 4 months ago
- Harvest Linux forensic data for operational triage of an event.☆51Updated 2 months ago
- Provides an advanced input.conf file for Windows and 3rd party related software with more than 70 different event log mapped to the MITRE…☆94Updated 7 months ago
- evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.☆158Updated 4 years ago
- Artifact collection tool for *nix systems☆212Updated last year
- ☆65Updated 4 months ago
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆142Updated last year
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆97Updated 2 years ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆169Updated 2 years ago
- The Github project for The Defender's Guide by Luke Paine and Jonathan Johnson☆159Updated 2 years ago
- ☆67Updated 2 years ago
- Sigma rule specification☆172Updated last week
- Sigma detection rules for hunting with the threathunting-keywords project☆58Updated 11 months ago
- This repository contains Splunk queries to hunt some anomalies☆46Updated 3 years ago
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆32Updated 3 years ago