Repo of python/bash scripts for identifying IoC's in threat feed and other online tools
☆26Jul 27, 2020Updated 5 years ago
Alternatives and similar repositories for soc-threat-hunting
Users that are interested in soc-threat-hunting are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Repository of scripts/tools that may be useful in Security Operations Centres (SOC)☆57Nov 25, 2020Updated 5 years ago
- Tool to decrypt encrypted strings in AgentTesla☆16Jan 24, 2022Updated 4 years ago
- Quick SOC L1 ticket structure☆40Jun 20, 2019Updated 6 years ago
- Collection of Jupyter Notebook for Threat Hunting and Blue Team Purposes☆22Jun 15, 2022Updated 3 years ago
- CTI-URLScan is a command line tool to enable analysts to search URLscan.io submissions. Pull screenshot and DOM content. As well as, auto…☆11Mar 2, 2021Updated 5 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆97Apr 13, 2022Updated 4 years ago
- Examples for the CyCLI Powershell module☆12Mar 8, 2019Updated 7 years ago
- A triage data collection script for macOS☆30Nov 27, 2020Updated 5 years ago
- Powershell collection designed to assist in Threat Hunting Windows systems.☆27Apr 13, 2018Updated 8 years ago
- A script to assist in processing forensic RAM captures for malware triage☆26Feb 4, 2021Updated 5 years ago
- CyLR - Live Response Collection Tool☆10Jul 14, 2020Updated 5 years ago
- Creating a Feed of MISP Events from ThreatFox (by abuse.ch)☆19Jun 2, 2021Updated 4 years ago
- Repository with Sample threat hunting notebooks on Security Event Log Data Sources☆69Dec 2, 2022Updated 3 years ago
- You can access the sigma rules to detect malicious activities. It is organized by Mitre Att&ck categories.☆13Feb 7, 2022Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Tools for hunting security threats☆12Feb 4, 2020Updated 6 years ago
- ☆12Oct 15, 2024Updated last year
- Presentation materials for talks I've given.☆20Oct 14, 2019Updated 6 years ago
- FIles and guides related to using Elasticstack as a SIEM☆12May 16, 2020Updated 5 years ago
- Parse Chrome History and Downloads into TSV or TLN format☆15Sep 3, 2016Updated 9 years ago
- This repo is dedicated to all my tricks, tweaks and modules for testing and hunting threats. This repo contains multiple directories whic…☆57Jan 10, 2018Updated 8 years ago
- VirusTotal SIEM Integration and Automation☆18Jan 16, 2017Updated 9 years ago
- Library of threat hunts to get any user started!☆50Sep 4, 2020Updated 5 years ago
- Collection of Malware Lures☆23Oct 8, 2021Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Menu for Thor scanner lite☆20Oct 24, 2025Updated 5 months ago
- Forensics Science Education☆11Apr 26, 2021Updated 4 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆73Jul 21, 2021Updated 4 years ago
- ☆16Jul 8, 2024Updated last year
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.☆26Oct 14, 2024Updated last year
- An elevated STIX representation of the MITRE ATT&CK Groups knowledge base☆23May 23, 2022Updated 3 years ago
- macos-collector - Automated Collection of macOS Forensic Artifacts for DFIR☆41Apr 13, 2026Updated last week
- ☆11Jun 4, 2025Updated 10 months ago
- Offensive Research Guide to Help Defense Improve Detection☆31Jan 27, 2023Updated 3 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- The CyberCX Digger project is designed to help Australian organisations determine if they have been impacted by certain high profile cybe…☆44Sep 17, 2020Updated 5 years ago
- Queries for Carbon Black Response☆11Feb 11, 2020Updated 6 years ago
- \ PowerAvails Powershell /☆10Jun 30, 2018Updated 7 years ago
- A utility for password spraying using kerberos from an untrusted/non-domain joined Kali linux host. Useful for user and KDC/DC enumeratio…☆19Oct 28, 2023Updated 2 years ago
- ☆28Feb 7, 2021Updated 5 years ago
- A CALDERA plugin☆27Apr 2, 2026Updated 2 weeks ago
- Awesome List of Enterprise Security Tools' Community Edition☆16Nov 10, 2023Updated 2 years ago