PacktPublishing / Incident-Response-with-Threat-IntelligenceLinks
Incident Response with Threat Intelligence, published by Packt
☆52Updated last year
Alternatives and similar repositories for Incident-Response-with-Threat-Intelligence
Users that are interested in Incident-Response-with-Threat-Intelligence are comparing it to the libraries listed below
Sorting:
- Some Threat Hunting queries useful for blue teamers☆127Updated 3 years ago
- Top ATT&CK Techniques helps defenders approach the breadth and complexity of MITRE ATT&CK® with a prioritized top 10 list of techniques t…☆119Updated last month
- ☆66Updated 2 years ago
- This repo is where I store my Threat Hunting ideas/content☆88Updated 2 years ago
- Repository resource for threat hunter☆158Updated 6 years ago
- A library of reference materials, tools, and other resources to aid threat profiling, threat quantification, and cyber adversary defense☆91Updated last year
- SIEM Cheat Sheet☆74Updated last year
- Repository of public reference frameworks for the DFIR community.☆116Updated 2 years ago
- User Feedback Space of #MitreAssistant☆37Updated 2 years ago
- Practical Threat Detection Engineering, Published by Packt☆75Updated 2 years ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆124Updated last year
- ☆59Updated 3 years ago
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆78Updated 4 years ago
- MAD ATT&CK Defender: ATT&CK Adversary Emulation Repository☆117Updated 2 years ago
- Dictionary of CTI-related acronyms, terms, and jargon☆142Updated last year
- The Threat Actor Profile Guide for CTI Analysts☆108Updated 2 years ago
- Linux Baseline and Forensic Triage Tool - BETA☆55Updated 2 years ago
- Cloud-based AD lab created to help you test real attacks in a controlled environment and create detection rules for them☆28Updated last year
- A browser extension for threat hunting that provides one UI for different SIEMs/EDRs and simplifies investigation☆77Updated last year
- MISP Playbooks☆206Updated last month
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆96Updated 2 years ago
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆122Updated last year
- BlackBerry Threat Research & Intelligence☆98Updated last year
- Resources To Learn And Understand SIGMA Rules☆178Updated 2 years ago
- Adversarial Interception Mission Oriented Discovery and Disruption Framework, or AIMOD2, is a structured threat hunting approach to proac…☆89Updated last year
- Open Threat Hunting Framework☆117Updated 2 years ago
- Some important DFIR Resources☆84Updated 2 years ago
- A repository for tracking events related to the MOVEit Transfer Cl0p Campaign☆71Updated last year
- This Repository gives the best and possible strategies against hunting the ransomware☆26Updated 2 years ago
- CarbonBlack EDR detection rules and response actions☆71Updated 10 months ago