Automating Security Detection Engineering, published by Packt
☆67Oct 12, 2024Updated last year
Alternatives and similar repositories for Automating-Security-Detection-Engineering
Users that are interested in Automating-Security-Detection-Engineering are comparing it to the libraries listed below
Sorting:
- Practical Threat Detection Engineering, Published by Packt☆87Mar 2, 2026Updated 2 weeks ago
- A POC to implement Detection-as-Code with Terraform and Sumo Logic.☆31Jul 27, 2023Updated 2 years ago
- Detection rules and threat hunting queries in Defender XDR and Azure Sentinel☆16Mar 13, 2026Updated last week
- A guide to simplify the process of evaluating Datadog's Cloud SIEM security capabilities to detect AWS threats.☆20Jul 24, 2023Updated 2 years ago
- Sightings Ecosystem gives cyber defenders visibility into what adversaries actually do in the wild. With your help, we are tracking MITRE…☆38May 28, 2025Updated 9 months ago
- ☆34Nov 11, 2025Updated 4 months ago
- A repository to store community malware research notes and findings.☆15Feb 13, 2026Updated last month
- Doorkeeper is an OAuth 2 provider for Rails.☆13Jan 7, 2015Updated 11 years ago
- An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.☆60Mar 12, 2022Updated 4 years ago
- Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation o…☆1,151Dec 19, 2025Updated 3 months ago
- ✨ A compilation of suggested tools/services for each component in a detection and response pipeline, along with real-world examples. The …☆290Feb 5, 2024Updated 2 years ago
- ☆14Jan 2, 2025Updated last year
- The Measure, Maximize, and Mature Threat-Informed Defense (M3TID) project defines what Threat-Informed Defense (TID) is and the key activ…☆16Jun 25, 2025Updated 8 months ago
- ☆12Jan 5, 2021Updated 5 years ago
- Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise☆68Apr 29, 2024Updated last year
- ☆19Dec 9, 2024Updated last year
- Defender Resource Hub☆30Feb 23, 2026Updated 3 weeks ago
- This is a gui interface for airmon-ng☆14Mar 23, 2023Updated 2 years ago
- Anvilogic Forge☆116Sep 18, 2025Updated 6 months ago
- Collection of Cyber Threat Intelligence sources from the deep and dark web☆11Sep 21, 2022Updated 3 years ago
- Detection Engineering research, open-source tools, conference presentations, and technical publications shared with the security communit…☆28Dec 17, 2025Updated 3 months ago
- Will Boyd, 1124, Kubernetes and Cloud Native Associate (KCNA)☆21Dec 16, 2022Updated 3 years ago
- Malware detonation platform Polygon integration☆10Aug 1, 2023Updated 2 years ago
- A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 D…☆762Aug 28, 2025Updated 6 months ago
- LittleSnitch Log Statistics Exporter☆35Apr 16, 2023Updated 2 years ago
- KQL Queries. Microsoft Defender, Microsoft Sentinel☆841Updated this week
- ☆96Jan 7, 2026Updated 2 months ago
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters …☆304Updated this week
- High-level Threat Intelligence playbooks☆20Mar 6, 2021Updated 5 years ago
- ☆57Mar 6, 2026Updated 2 weeks ago
- 🧰 ESXi Testing Tookit is a command-line utility designed to help security teams test ESXi detections.☆82Apr 20, 2025Updated 11 months ago
- 🚀 IRIS-SOAR: Modular SOAR (Security Orchestration, Automation, and Response) implementation in Python. Designed to complement DFIR-IRIS …☆15Mar 27, 2024Updated last year
- my MSTICpy practice and custom tools repository☆11Apr 23, 2025Updated 10 months ago
- A cheatsheet containing AWS CloudTrail events that can be used for Incident Response purposes or Detection Engineering.☆80Jan 6, 2026Updated 2 months ago
- External telegram feeder for AIL framework☆18Jan 21, 2026Updated 2 months ago
- Everything related to YARA☆16Feb 19, 2026Updated last month
- A preconfigured Velociraptor triage collector☆76Mar 2, 2026Updated 2 weeks ago
- ☆99Sep 16, 2022Updated 3 years ago
- Knowing which rule should trigger according to the redcannary test☆11Nov 23, 2024Updated last year