LetsDefend / incident-response-playbooks
☆173Updated last year
Alternatives and similar repositories for incident-response-playbooks:
Users that are interested in incident-response-playbooks are comparing it to the libraries listed below
- An analytical challenge created to test junior analysts looking to try performing proactive and reactive cyber threat intelligence.☆196Updated 9 months ago
- ☆45Updated last year
- CLI tools for forensic investigation of Windows artifacts☆327Updated 5 months ago
- SIEM Cheat Sheet☆73Updated last year
- MISP Playbooks☆197Updated 2 months ago
- ☆239Updated 3 months ago
- Windows Malware Investigation Scripts & Docs☆81Updated 5 months ago
- A collection of companies that disclose adversary TTPs after they have been breached☆244Updated last year
- Some important DFIR Resources☆83Updated 2 years ago
- Completely Risky Active-Directory Simulation Hub☆99Updated last year
- ☆47Updated last month
- Welcome to Project KillChain, a comprehensive GitHub repository for Red and Blue Teams. This repository houses tools, scripts, technique…☆101Updated 8 months ago
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆239Updated last month
- A curated list of resources for DFIR through Microsoft Defender for Endpoint leveraging kusto queries, powershell scripts, tools such as …☆390Updated 3 months ago
- Hands-on cybersecurity projects to enhance skills in phishing investigation, malware analysis, network intrusion detection, and DDoS atta…☆124Updated 10 months ago
- An automated Breach and Attack Simulation lab with terraform. Built for IaC stability, consistency, and speed.☆189Updated 9 months ago
- ThreatSeeker: Threat Hunting via Windows Event Logs☆120Updated last year
- DECeption with Evaluative Integrated Validation Engine (DECEIVE): Let an LLM do all the hard honeypot work!☆237Updated last month
- Playbooks for SOC Analysts☆447Updated 2 years ago
- A collection of CVEs weaponized by ransomware operators☆112Updated this week
- Repository for sharing examples of our artifacts data and for use in new analyst recruitment.☆90Updated last week
- ☆102Updated 2 weeks ago
- ☆58Updated last year
- Knowledge Management for Offensive Security Professionals Official Repository☆138Updated 2 months ago
- Useful resources about phishing email analysis☆82Updated 2 months ago
- PowerShell tools to help defenders hunt smarter, hunt harder.☆354Updated 2 weeks ago
- ☆58Updated 3 years ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆122Updated last year
- SOAR Automation with Shuffle, Wazuh & TheHive | This project integrates Shuffle SOAR, Wazuh SIEM, and TheHive to automate security incide…☆97Updated 2 months ago
- A collection of scripts, tools. and configs for various OS'es and applications, all free and or open-source, to assist in impromptu Blue-…☆102Updated 2 years ago