OpenCTI-Platform / splunk-add-onLinks
OpenCTI Add-On for Splunk
☆13Updated 3 weeks ago
Alternatives and similar repositories for splunk-add-on
Users that are interested in splunk-add-on are comparing it to the libraries listed below
Sorting:
- OpenCTI datasets☆29Updated 2 months ago
- SANS #CTI Summit 2025☆13Updated last year
- Automate the regular transfer of AIS data into a MISP Server☆10Updated last year
- Track progress and keep notes while working through likethecoins' CTI Self Study Plan☆29Updated 3 years ago
- Low budget VirusTotal Intelligence Cosplay☆20Updated 4 years ago
- Terraform scripts for deploying OpenCTI to AWS, Azure, and GCP☆33Updated last year
- Lightweight Python-Based Malware Analysis Pipeline☆38Updated 2 months ago
- Attack Tool Timing and Reporting - Structured Attack Logging Format☆22Updated 3 years ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆24Updated 4 years ago
- ☆15Updated 2 years ago
- Turn any blog into structured threat intelligence.☆51Updated this week
- Repository that contains a set of purposefully erroneous Yara rules.☆61Updated 6 months ago
- A zero dependency and customizable Python library for scanning Windows and Linux process memory.☆66Updated 2 years ago
- Automatic detection engineering technical state compliance☆55Updated last year
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆66Updated 3 years ago
- ☆18Updated last year
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆74Updated 4 years ago
- Repo with supporting material for the talk titled "Cracking the Beacon: Automating the extraction of implant configurations"☆11Updated last year
- C2 Active Scanner☆59Updated last year
- Winterfell hunt is a python script to perform auto threat hunting for malicious activities in windows OS based on collected data by winte…☆15Updated 5 years ago
- A public repository of MITRE ATT&ACK TTP mappings by BushidoUK for OSINT reports that lack a section breaking down the TTPs.☆27Updated 10 months ago
- A package to create HTML MISP reports, including volume of trending events and attributes, evens received from key organisations and targ…☆11Updated 5 months ago
- ShellSweeping the evil.☆53Updated last year
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆82Updated 8 months ago
- NTFS file system specimens☆13Updated 2 years ago
- An extension of the sigma standard to include security metrics.☆15Updated 2 years ago
- ☆51Updated last month
- A new Cyber Threat Intelligence Capability Maturity Model (CTI-CMM) to empower your team and create lasting value. Inspired by Industry N…☆42Updated 3 weeks ago
- Quick ESXi Log Parser☆28Updated 3 months ago
- Small-scale threat emulation and detection range built on Elastic and Atomic Redteam.☆39Updated last month