PaloAltoNetworks / cis-benchmarks
CIS benchmark quickplay for rapid assessments of the NGFW
☆13Updated last year
Alternatives and similar repositories for cis-benchmarks:
Users that are interested in cis-benchmarks are comparing it to the libraries listed below
- Repo for Automations and other solutions for Elastic SIEM/Security.☆18Updated 3 years ago
- Official Palo Alto Networks MineMeld docker☆17Updated 5 years ago
- ☆14Updated 2 years ago
- Ansible playbook for installing MineMeld on Linux☆48Updated 4 years ago
- Read only mirror. To contribute or submit issues, please go to the website link --->☆13Updated last year
- Palo Alto Networks Rule Parser☆16Updated 8 years ago
- OpenIOC rules to facilitate hunting for indicators of compromise☆37Updated 3 years ago
- ☆15Updated 2 years ago
- This is a script to import Cisco Talos's IP Blacklist into a Tag (Host Group) within Stealthwatch. This will also optionally create a Cu…☆11Updated last year
- Skillets is the default holding place for useful Panhandler skillets. These are usually smaller one-off bits that may not require their o…☆11Updated 4 years ago
- ☆54Updated 3 years ago
- Falcon Integration Gateway (FIG)☆18Updated last month
- Run Velociraptor on Security Onion☆37Updated 2 years ago
- Sample data generator for the Splunk for Palo Alto Networks app.☆11Updated 8 years ago
- This script provides a Python library with methods to authenticate to various sources of threat intelligence and query IPs for the latest…☆18Updated last month
- Extracts fields from zeek logs, compatible with zeek-cut☆21Updated 8 months ago
- Acheron is a RESTful vulnerability assessment and management framework built around search and dedicated to terminal extensibility.☆32Updated 2 years ago
- Incident Response Methodologies (IRM), also called Incident Playbook, based on the work done by the CERT Societe General☆23Updated 3 years ago
- CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space.☆31Updated 3 years ago
- Documentation used for Shuffle☆19Updated last week
- A POC to implement Detection-as-Code with Terraform and Sumo Logic.☆27Updated last year
- MineMeld nodes for MISP☆19Updated last year
- Ansible Playbook to install the ELK Stack☆42Updated 4 years ago
- Elastic TIP is a python tool which automates the process of aggregating Threat Intelligence and ingesting the intelligence into a common …☆27Updated 8 months ago
- Scripts to inject demo data and network traffic into an existing Alienvault/OSSIM installation☆21Updated 7 years ago
- A tool for bulk URL queries against Palo Alto Networks' PAN-DB cloud database☆18Updated last year
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆39Updated 11 months ago
- The Measure, Maximize, and Mature Threat-Informed Defense (M3TID) project defines what Threat-Informed Defense (TID) is and the key activ…☆16Updated last week
- A tool that allows you to document and assess any security automation in your SOC☆46Updated 5 months ago
- Sharing Threat Hunting runbooks☆25Updated 5 years ago