JPMinty / Detection_Engineering_SignaturesLinks
YARA, SIGMA, SNORT Rules based on Malware Analysis
☆16Updated 3 months ago
Alternatives and similar repositories for Detection_Engineering_Signatures
Users that are interested in Detection_Engineering_Signatures are comparing it to the libraries listed below
Sorting:
- Library of threat hunts to get any user started!☆44Updated 4 years ago
- Domain Response is a tool that is designed to help you automate the investigation for a domain. This tool is specificly designed to autom…☆49Updated last year
- User Feedback Space of #MitreAssistant☆37Updated 2 years ago
- Cheat sheets for threat hunting, detection and other stuff.☆34Updated 2 years ago
- Sigma detection rules for hunting with the threathunting-keywords project☆56Updated 5 months ago
- A new Cyber Threat Intelligence Capability Maturity Model (CTI-CMM) to empower your team and create lasting value. Inspired by Industry N…☆35Updated 3 months ago
- Cyber Underground General Intelligence Requirements☆94Updated last year
- ☆22Updated 2 years ago
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆47Updated 2 months ago
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆100Updated 9 months ago
- The Threat Actor Profile Guide for CTI Analysts☆110Updated 2 years ago
- A collection of tips for using MISP.☆74Updated 7 months ago
- Remote access and Antivirus Logging Database☆42Updated last year
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆85Updated 5 months ago
- Documentation site for Velociraptor☆50Updated this week
- BlackBerry Threat Research & Intelligence☆98Updated last year
- Collection of Jupyter Notebook for Threat Hunting and Blue Team Purposes☆20Updated 3 years ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆44Updated last year
- simple webapp for converting sigma rules into siem queries using the pySigma library☆50Updated last year
- A script that updates KAPE (using Get-KAPEUpdate.ps1) as well as EZ Tools (within .\KAPE\Modules\bin) and the ancillary files that enhanc…☆57Updated last month
- Forensics scripts aimed at automating & enhancing the Forensics Legend Eric Zimmerman's techniques, integrating the statistical detection…☆18Updated last year
- Resources, tools and utilities about Threat Intelligence☆69Updated 2 years ago
- Dictionary of CTI-related acronyms, terms, and jargon☆143Updated last year
- A dataset containing Office 365 Unified Audit Logs for security research and detection☆52Updated 3 years ago
- A repo hosting the Markua content for the EZ Tools manuals hosted on Leanpub☆78Updated last year
- Repository of public reference frameworks for the DFIR community.☆116Updated 2 years ago
- Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise☆66Updated last year
- This directory contains presentations and related materials of my speaking engagements. I also use this to record historical presentation…☆17Updated 5 months ago
- SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP and training users in…☆30Updated 2 weeks ago
- Sample evtx files to use for testing hayabusa detection rules☆59Updated 9 months ago