Security-Experts-Community / ERMACK
Enterprise Response Model & Common Knowledge
☆36Updated 5 months ago
Related projects ⓘ
Alternatives and complementary repositories for ERMACK
- Chrome extension for SOC automations☆33Updated last week
- реп полезностей для PT MaxPatrol SIEM☆25Updated last year
- Открытый репозиторий с правилами на языке eXtraction and Processing (XP)☆20Updated 2 months ago
- System of Orchestration, Lifecycle control, Detection and Response☆57Updated 10 months ago
- MP SIEM SDK☆23Updated 3 months ago
- ☆63Updated 3 years ago
- Extensible framework for analyzing publicly available information about vulnerabilities☆105Updated 3 weeks ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆157Updated 11 months ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆141Updated last year
- an excel-centric approach for the MITRE ATT&CK® Tactics and Techniques☆180Updated 2 years ago
- Blueteam operational triage registry hunting/forensic tool.☆142Updated last year
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆123Updated 8 months ago
- Harvest Linux forensic data for operational triage of an event.☆50Updated 4 months ago
- Sigma rule specification☆111Updated this week
- An opensource sigma conversion tool built using pysigma☆95Updated this week
- Repository of public reference frameworks for the DFIR community.☆108Updated last year
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆194Updated 2 years ago
- A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon☆191Updated 4 years ago
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆202Updated last year
- A python script developed to process Windows memory images based on triage type.☆258Updated 11 months ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆129Updated this week
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆72Updated this week
- BlackBerry Threat Research & Intelligence☆93Updated last year
- Resources To Learn And Understand SIGMA Rules☆167Updated last year
- evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.☆146Updated 2 years ago
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆116Updated 11 months ago
- Artifact collection tool for *nix systems☆191Updated 7 months ago
- Set of SIGMA rules (>320) mapped to MITRE ATT&CK tactic and techniques☆306Updated 5 months ago
- Rapidly Search and Hunt through Linux Forensics Artifacts☆179Updated 10 months ago
- MITRE Caldera™ for OT Plugins & Capabilities☆193Updated last month