KPN-CISO / AttackMatrixLinks
AttackMatrix is a Python module and/or webpage to interact with and explore MITRE's ATT&CK's matrices.
☆17Updated 2 years ago
Alternatives and similar repositories for AttackMatrix
Users that are interested in AttackMatrix are comparing it to the libraries listed below
Sorting:
- Core server components for Assemblyline 4 (Alerter, dispatcher, expiry, ingester, scaler, updater, ...)☆21Updated this week
- SightingDB is a database for Sightings☆22Updated 2 years ago
- CIRCL system forensic tools or a jumble of tools to support forensic☆42Updated 2 years ago
- Data related to the SANS Internet Storm Center☆13Updated last month
- A collection of typical false positive indicators☆55Updated 4 years ago
- Malware similarity platform with modularity in mind.☆78Updated 4 years ago
- Simple yara rule manager☆66Updated 2 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- Validates yara rules and tries to repair the broken ones.☆40Updated 5 years ago
- Open source training materials for law-enforcement and organisations interested in DFIR.☆60Updated 4 months ago
- Repository for scripts and tips for "Yara Scan Service"☆20Updated 2 years ago
- Threat intelligence and threat detection indicators (IOC, IOA)☆52Updated 4 years ago
- Dashboards for conducting forensic investigation using windows events in Kibana☆18Updated 6 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆110Updated 7 years ago
- Generate a Yara rule to find base64-encoded files containg a specific keyword☆40Updated 7 years ago
- ☆14Updated 7 years ago
- A Splunk Technology Add-on to forward filtered ETW events.☆30Updated 4 years ago
- References for FIRST CTI 2019 Symposium presentation☆23Updated 6 years ago
- Easy way to create a MISP event related to a Phishing page☆17Updated 2 years ago
- ☆52Updated 7 years ago
- Various capabilities for static malware analysis.☆79Updated last year
- ☆54Updated 5 years ago
- Zeek package to generate a SMB client fingerprint☆27Updated 5 years ago
- Standardized Malware Analysis Tool☆55Updated 4 years ago
- pollen - A command-line tool for interacting with TheHive☆35Updated 6 years ago
- Bot to create MISP events from data in Slack☆17Updated last year
- threat-intelligence.eu website and repository of information about open standards, documents, methodologies and processes in threat intel…☆49Updated last month
- Yara Based Detection Engine for web browsers☆49Updated 4 years ago
- Community modules for FAME☆65Updated 3 weeks ago