HarfangLab / iocsLinks
Indicators of compromise
☆16Updated 2 months ago
Alternatives and similar repositories for iocs
Users that are interested in iocs are comparing it to the libraries listed below
Sorting:
- Rapid7 Labs operates as the division of Rapid7 focused on threat research. It is renowned for providing comprehensive threat intelligence…☆74Updated 3 weeks ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆85Updated 3 weeks ago
- Contains compiled binaries of Volatility☆37Updated 7 months ago
- Turn any blog into structured threat intelligence.☆43Updated 2 weeks ago
- A Windows Event Log MCP☆37Updated 4 months ago
- ☆53Updated last month
- ShellSweeping the evil.☆53Updated last year
- Yara Rules for Modern Malware☆78Updated last year
- Detection rule validation☆40Updated 2 years ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆34Updated 6 months ago
- ☆22Updated 2 years ago
- Quick ESXi Log Parser☆28Updated 2 months ago
- Sigma detection rules for hunting with the threathunting-keywords project☆57Updated 10 months ago
- ☆44Updated last week
- Tools and scripts to deploy and manage OpenRelik instances☆15Updated 6 months ago
- ☆28Updated 2 months ago
- TIM is a Kusto investigation platform that enables a user to quickly pivot between data sources; annotate their findings; and promotes co…☆23Updated last year
- Python based tool to extract forensic info from EventTranscript.db (Windows Diagnostic Data)☆65Updated 2 years ago
- custom Python script to perform Yara matching in Cortex XDR☆14Updated 4 years ago
- USN Journal full path builder☆63Updated last year
- A tool for fetching DFIR and other GitHub tools.☆24Updated 5 months ago
- A specification and style guide for YARA rules☆64Updated last year
- C2 Active Scanner☆59Updated last year
- CarbonBlack EDR detection rules and response actions☆73Updated last year
- An introduction to detection engineering☆13Updated last year
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆89Updated 10 months ago
- A C# based tool for analysing malicious OneNote documents☆118Updated 2 years ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆54Updated last year
- A proof-of-concept re-assembler for reverse VNC traffic.☆24Updated 2 years ago