JPCERTCC / MemoryForensic-on-CloudLinks
Memory Forensic System on Cloud
☆90Updated last year
Alternatives and similar repositories for MemoryForensic-on-Cloud
Users that are interested in MemoryForensic-on-Cloud are comparing it to the libraries listed below
Sorting:
- Slides of my public talks☆55Updated last year
- A repository of my own Sigma detection rules.☆160Updated 8 months ago
- Open Threat Hunting Framework☆117Updated 2 years ago
- A browser extension for threat hunting that provides one UI for different SIEMs/EDRs and simplifies investigation☆77Updated last year
- Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.☆124Updated this week
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- Top ATT&CK Techniques helps defenders approach the breadth and complexity of MITRE ATT&CK® with a prioritized top 10 list of techniques t…☆118Updated last week
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆133Updated 2 years ago
- Simple Workspace Attack Tool (SWAT) is a tool for simulating malicious behavior against Google Workspace in reference to the MITRE ATT&CK…☆165Updated 7 months ago
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆95Updated 2 years ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆124Updated last year
- Sample evtx files to use for testing hayabusa detection rules☆57Updated 7 months ago
- A repository to share publicly available Velociraptor detection content☆170Updated this week
- The Github project for The Defender's Guide by Luke Paine and Jonathan Johnson☆154Updated last year
- Sigma rules to share with the community☆122Updated 4 months ago
- Active C&C Detector☆154Updated last year
- Anvilogic Forge☆103Updated this week
- The purpose of this project is to publish and maintain the deployment PowerShell script that automates deployments for Active Directory C…☆251Updated last year
- Mapping of open-source detection rules and atomic tests.☆166Updated 4 months ago
- Intel Retrieval Augmented Generation (RAG) Utilities☆91Updated last year
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆122Updated last year
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆78Updated this week
- A collection of various SIEM rules relating to malware family groups.☆66Updated 11 months ago
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆81Updated 2 weeks ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (EXT4, XFS) journals (not systemd-journald), generates…☆64Updated 2 months ago
- Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise☆63Updated last year
- MISP Playbooks☆201Updated 3 months ago
- Harness the power of Splunk for your investigations☆107Updated 3 weeks ago
- An automated Breach and Attack Simulation lab with terraform. Built for IaC stability, consistency, and speed.☆190Updated 11 months ago
- MDE relies on some of the Audit settings to be enabled☆98Updated 2 years ago