SOC-Community / Awesome-SOC
A collection of sources of documentation and best practices to build and run a SOC
☆45Updated 2 years ago
Alternatives and similar repositories for Awesome-SOC:
Users that are interested in Awesome-SOC are comparing it to the libraries listed below
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆223Updated last year
- A collection of companies that disclose adversary TTPs after they have been breached☆244Updated 9 months ago
- A library of reference materials, tools, and other resources to aid threat profiling, threat quantification, and cyber adversary defense☆84Updated last year
- Welcome to Project KillChain, a comprehensive GitHub repository for Red and Blue Teams. This repository houses tools, scripts, technique…☆100Updated 6 months ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆118Updated 10 months ago
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆75Updated 3 months ago
- MISP Playbooks☆184Updated last week
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆151Updated 9 months ago
- God Mode Detection Rules☆134Updated 6 months ago
- Purpleteam scripts simulation & Detection - trigger events for SOC detections☆177Updated 2 months ago
- Creation of a laboratory for malware analysis in AWS☆93Updated 2 years ago
- ☆100Updated last month
- Open Threat Hunting Framework☆109Updated last year
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆109Updated 3 months ago
- The Threat Actor Profile Guide for CTI Analysts☆104Updated last year
- ☆165Updated 11 months ago
- Incident Response with Threat Intelligence, published by Packt☆52Updated 10 months ago
- Roota is a public-domain language of threat detection and response that combines native queries from a SIEM, EDR, XDR, or Data Lake with …☆121Updated 7 months ago
- Some Threat Hunting queries useful for blue teamers☆124Updated 2 years ago
- Tools for simulating threats☆181Updated last year
- A list of resources to build a information security team.☆13Updated 4 years ago
- Cyber Underground General Intelligence Requirements☆90Updated last year
- Cybersecurity Incident Response Plan☆88Updated 4 years ago
- Slides of my public talks☆54Updated last year
- 🧰 ESXi Testing Tookit is a command-line utility designed to help security teams test ESXi detections.☆68Updated last month
- Repository documenting how Threat Intelligence and / or a Threat Intelligence Platform can prove its value to an organisation.☆51Updated 3 months ago
- Some important DFIR Resources☆83Updated last year
- Repository resource for threat hunter☆158Updated 6 years ago
- A runbook for handling security incidents in cooperation with 0xsyr0☆51Updated 2 years ago
- ThreatSeeker: Threat Hunting via Windows Event Logs☆118Updated last year