LogCraftIO / logcraft-cliLinks
Detection-as-Code CI/CD pipeline for modern security operations (SIEM, EDR, XDR, ...)
☆22Updated 7 months ago
Alternatives and similar repositories for logcraft-cli
Users that are interested in logcraft-cli are comparing it to the libraries listed below
Sorting:
- ☆28Updated 2 weeks ago
- ☆47Updated 3 years ago
- Pulls IOCs from MISP and adds the to reference sets in QRadar☆34Updated 2 years ago
- MISP to Splunk Enterprise Security Theat Intelligence Framework Integration☆14Updated 2 years ago
- ☆40Updated 2 years ago
- Microsoft Sentinel, Defender for Endpoint - KQL Detection Packs☆54Updated 2 years ago
- Cybersecurity Incident Response Plan☆109Updated 5 years ago
- ☆88Updated 9 months ago
- SentinelOne STAR Rules☆69Updated 10 months ago
- MISP to Sentinel integration☆77Updated last week
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆53Updated 2 months ago
- A list of Splunk queries that I've collected and used over time.☆88Updated 5 years ago
- Advanced Threat Hunting: Ransomware Group☆29Updated 5 months ago
- Dettectinator - The Python library to your DeTT&CT YAML files.☆118Updated 8 months ago
- Online resources related to SOC Analysts. Incident investigation reference material, blogs, newsletters, good reads, books, trainings, po…☆28Updated 4 months ago
- A collection of Cortex Analyzers and Responders for TheHive/Cortex☆13Updated 5 years ago
- A repository of my own Sigma detection rules.☆162Updated 2 weeks ago
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆51Updated 6 months ago
- Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise☆67Updated last year
- ☆66Updated 2 years ago
- A collection of various SIEM rules relating to malware family groups.☆70Updated last year
- ☆13Updated 3 months ago
- Reflex SOAR☆12Updated 3 years ago
- An opensource sigma conversion tool built using pysigma☆150Updated last month
- This repository contains Splunk queries to hunt some anomalies☆45Updated 3 years ago
- ☆53Updated last year
- The Enhanced MITRE ATT&CK® Coverage Tracker is an Excel tool for SOCs to measure and improve detection coverage of cyber threats. It simp…☆31Updated 3 weeks ago
- Practical Threat Detection Engineering, Published by Packt☆78Updated 2 years ago
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆272Updated 8 months ago
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆114Updated last year