NUKIB / misp
Docker image for MISP
☆122Updated last week
Alternatives and similar repositories for misp:
Users that are interested in misp are comparing it to the libraries listed below
- SIEGMA - Transform Sigma rules into SIEM consumables☆146Updated last year
- A production ready Dockered MISP☆196Updated 2 weeks ago
- MISP Docker (XME edition)☆283Updated last year
- Rules generated from our investigations.☆191Updated 3 months ago
- Docker image for Velocidex Velociraptor☆118Updated 7 months ago
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆87Updated 2 years ago
- Convert Sigma rules to Wazuh rules☆60Updated 9 months ago
- Zeek-Formatted Threat Intelligence Feeds☆347Updated this week
- Dettectinator - The Python library to your DeTT&CT YAML files.☆107Updated 2 weeks ago
- ☆67Updated 5 months ago
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆131Updated 11 months ago
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆52Updated 3 months ago
- The Sigma command line interface based on pySigma☆142Updated last week
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆137Updated this week
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆159Updated last year
- ☆93Updated 2 years ago
- MISP Playbooks☆182Updated last week
- A curated list of awesome things related to TheHive & Cortex☆174Updated 3 years ago
- A (nearly) production ready Dockered MISP☆230Updated last year
- An opensource sigma conversion tool built using pysigma☆113Updated last month
- Cleanup of older MISP events can require some work until now☆25Updated 2 years ago
- Sigma rule specification☆120Updated 2 weeks ago
- Tools for simulating threats☆181Updated last year
- Roota is a public-domain language of threat detection and response that combines native queries from a SIEM, EDR, XDR, or Data Lake with …☆121Updated 6 months ago
- Standard-Format Threat Intelligence Feeds☆106Updated this week
- MISP-STIX-Converter - Python library to handle the conversion between MISP and STIX formats☆53Updated 2 weeks ago
- OpenCTI Docker deployment helpers☆168Updated this week
- MISP to Sentinel integration☆62Updated 2 months ago
- A collection of tips for using MISP.☆74Updated last month
- Cerebrate is an open-source platform meant to act as a trusted contact information provider and interconnection orchestrator for other se…☆85Updated last month