GossiTheDog / Monitoring
☆35Updated 6 months ago
Related projects: ⓘ
- Leveraging MISP indicators via a pDNS-based infrastructure as a poor man’s SOC.☆48Updated 2 weeks ago
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆113Updated 9 months ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆154Updated 10 months ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆154Updated this week
- A collection of tips for using MISP.☆74Updated 5 months ago
- Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indi…☆91Updated 2 months ago
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆74Updated 3 weeks ago
- ☆79Updated last month
- pySigma Elasticsearch backend☆41Updated 3 weeks ago
- Azure function to insert MISP data in to Azure Sentinel☆30Updated last year
- Lacus is a capturing system using playwright, as a web service.☆39Updated this week
- BlackBerry Threat Research & Intelligence☆90Updated 11 months ago
- Cyber Underground General Intelligence Requirements☆85Updated 7 months ago
- A list of RMMs designed to be used in automation to build alerts☆103Updated last week
- Powershell module for VMWare vSphere forensics☆138Updated last year
- MISP Playbooks☆167Updated last month
- ☆62Updated this week
- Forensic Artifact Collection Tool Matrix☆70Updated 2 years ago
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆94Updated last year
- Import CrowdStrike Threat Intelligence into your instance of MISP☆40Updated this week
- Building a consolidated RSS feed for articles about cyberattacks☆54Updated this week
- Intelligence Architecture Mind Map☆110Updated 6 months ago
- ☆19Updated 2 years ago
- Cerebrate is an open-source platform meant to act as a trusted contact information provider and interconnection orchestrator for other se…☆82Updated this week
- ☆72Updated last month
- Docker image for MISP☆109Updated last week
- Harness the power of Splunk for your investigations☆66Updated last month
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆93Updated 6 months ago
- This repository contains helper scripts and custom configs to get the best out of Google's Timesketch project.☆90Updated 11 months ago
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆108Updated 9 months ago