PacktPublishing / Threat-Hunting-with-Elastic-StackLinks
Threat Hunting with Elastic Stack, Published by Packt
☆39Updated 3 years ago
Alternatives and similar repositories for Threat-Hunting-with-Elastic-Stack
Users that are interested in Threat-Hunting-with-Elastic-Stack are comparing it to the libraries listed below
Sorting:
- Incident Response with Threat Intelligence, published by Packt☆56Updated last year
- Cybersecurity Incident Response Plan☆109Updated 5 years ago
- The Infosec Community Definitive Guide to Jupyter Notebooks☆130Updated 5 years ago
- Practical Threat Detection Engineering, Published by Packt☆83Updated 2 years ago
- MISP Playbooks☆222Updated 3 months ago
- Automating Security Detection Engineering, published by Packt☆65Updated last year
- This is the One Stop place where you can find almost all of your Tools of Requirements in DFIR☆85Updated 3 years ago
- This repository contains Splunk queries to hunt some anomalies☆46Updated 3 years ago
- Tools for simulating threats☆199Updated 2 years ago
- Dictionary of CTI-related acronyms, terms, and jargon☆146Updated last month
- ☆65Updated 3 years ago
- ☆64Updated 4 years ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆50Updated last year
- This is the One Stop place where you can several Detection Rules which can help you to kick start your journey on SIEM, SOC work.☆41Updated 4 years ago
- Jupyter notebooks for threat hunting☆60Updated 9 months ago
- A dataset containing Office 365 Unified Audit Logs for security research and detection☆59Updated 3 years ago
- Some important DFIR Resources☆84Updated 2 years ago
- ☆73Updated last year
- Threat Hunting Toolkit is a Swiss Army knife for threat hunting, log processing, and security-focused data science☆146Updated 3 weeks ago
- Invoke-Forensics provides PowerShell commands to simplify working with the forensic tools KAPE and RegRipper.☆116Updated 2 years ago
- Intelligence Architecture Mind Map☆140Updated last year
- Blue Team detection lab created with Terraform and Ansible in Azure.☆175Updated last year
- ☆47Updated 3 years ago
- Repository of public reference frameworks for the DFIR community.☆121Updated 2 years ago
- A collection of various SIEM rules relating to malware family groups.☆70Updated last year
- A library of reference materials, tools, and other resources to aid threat profiling, threat quantification, and cyber adversary defense☆103Updated 2 years ago
- Repository resource for threat hunter☆158Updated 7 years ago
- This code snippet retrieves Azure Sentinel rules that are mapped to MITRE ATT&CK Framework and generates the related MITRE D3FEND defense…☆74Updated 4 years ago
- Incident Response documents and tooling☆111Updated 3 weeks ago
- User Feedback Space of #MitreAssistant☆38Updated 2 years ago