SEC599 supporting GitHub repository
☆16Sep 14, 2019Updated 6 years ago
Alternatives and similar repositories for SEC599
Users that are interested in SEC599 are comparing it to the libraries listed below
Sorting:
- Simulating Adversary Operations☆97Apr 13, 2018Updated 7 years ago
- SuperPeHasher is a wrapper for several hash algorithms dedicated to PE file.☆28Sep 16, 2021Updated 4 years ago
- The Multiplatform Linux Sandbox☆16Dec 19, 2023Updated 2 years ago
- FireEye iSIGHT Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform☆16Oct 12, 2018Updated 7 years ago
- Registry Miner☆14Apr 10, 2018Updated 7 years ago
- A set of Bash scripts that allows you to repeatably collect and compare baseline audit data from Linux and Windows systems☆20Oct 19, 2013Updated 12 years ago
- ☆349Mar 19, 2021Updated 4 years ago
- Potiron - Normalize, Index and Visualize Network Capture☆88Mar 1, 2019Updated 7 years ago
- FAME Automates Malware Evaluation☆928Dec 16, 2025Updated 2 months ago
- OSSEC Decoder & Rulesets for Sysmon Events☆15Jul 23, 2015Updated 10 years ago
- Automated forensics written in PowerShell☆34Sep 29, 2019Updated 6 years ago
- ☆22Dec 22, 2020Updated 5 years ago
- ☆34Apr 29, 2021Updated 4 years ago
- Automated install scripts for Cuckoo sandbox☆38Dec 5, 2017Updated 8 years ago
- Monitoring tool for PasteBin-alike sites written in Python. Inspired by pastemon http://github.com/xme/pastemon☆44Jan 31, 2021Updated 5 years ago
- Various public documents, whitepapers and articles about APT campaigns☆55Apr 1, 2016Updated 9 years ago
- Userland API monitor for threat hunting☆58Mar 4, 2020Updated 5 years ago
- A series of GPO templates☆21Jan 2, 2017Updated 9 years ago
- a modified version base on Tracecorn☆20Oct 29, 2019Updated 6 years ago
- An open source framework for enterprise level automated analysis.☆394Jun 27, 2022Updated 3 years ago
- InsecurePowerShell is PowerShell with some security features removed.☆104Dec 19, 2017Updated 8 years ago
- snake - a malware storage zoo☆217Jul 11, 2023Updated 2 years ago
- Term concordances for each course in the SANS DFIR curriculum. Used for automated index generation.☆69Aug 7, 2020Updated 5 years ago
- A VBA parser and emulation engine to analyze malicious macros.☆97Updated this week
- Malware Configuration And Payload Extraction☆761Nov 22, 2024Updated last year
- ☆1,092May 1, 2019Updated 6 years ago
- Read-only Slack RTM API CLI for monitoring teams☆10Mar 18, 2019Updated 6 years ago
- ☆42Sep 16, 2022Updated 3 years ago
- Do DFIR work in a Windows Sandbox☆19Updated this week
- Module to convert Cuckoo .json to .mist☆10Apr 8, 2020Updated 5 years ago
- Tool to parse SRU database☆25Mar 1, 2018Updated 8 years ago
- pocket guide for core threat hunting concepts☆23May 6, 2020Updated 5 years ago
- A completely unsupported set of scripts used in SANS FOR572, Advanced Network Forensics and Analysis☆28Aug 6, 2025Updated 6 months ago
- Protects and logs suspicious and malicious usage of .NET CSC.exe and Runtime C# Compilation☆25May 3, 2018Updated 7 years ago
- Python script to automatically create sigma rules from The hive observables☆25Mar 17, 2019Updated 6 years ago
- This repository is created to add value to existing Network Security Monitoring solutions.☆42Sep 20, 2016Updated 9 years ago
- Attack Knowledge Base☆101Jul 5, 2017Updated 8 years ago
- ☆136Jan 24, 2019Updated 7 years ago
- Various tools and scripts☆43Nov 30, 2022Updated 3 years ago