Security-Experts-Community / ERMACK
Enterprise Response Model & Common Knowledge
☆36Updated 7 months ago
Alternatives and similar repositories for ERMACK:
Users that are interested in ERMACK are comparing it to the libraries listed below
- Chrome extension for SOC automations☆33Updated 2 months ago
- реп полезностей для PT MaxPatrol SIEM☆24Updated last year
- Открытый репозиторий с правилами на языке eXtraction and Processing (XP)☆20Updated 2 weeks ago
- ☆64Updated 3 years ago
- System of Orchestration, Lifecycle control, Detection and Response☆58Updated last year
- MP SIEM SDK☆25Updated last week
- SIEGMA - Transform Sigma rules into SIEM consumables☆146Updated last year
- Rules generated from our investigations.☆191Updated 3 months ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆159Updated last year
- Extensible framework for analyzing publicly available information about vulnerabilities☆109Updated last month
- Rapidly Search and Hunt through Linux Forensics Artifacts☆188Updated last year
- An opensource sigma conversion tool built using pysigma☆113Updated last month
- A Python package is used to execute Atomic Red Team tests (Atomics) across multiple operating system environments.☆135Updated 6 months ago
- A repository to share publicly available Velociraptor detection content☆124Updated this week
- Blueteam operational triage registry hunting/forensic tool.☆144Updated last year
- A repository with data about APTs☆11Updated 2 years ago
- CSI SIEM☆107Updated 2 years ago
- Blue Team detection lab created with Terraform and Ansible in Azure.☆144Updated 2 months ago
- Harness the power of Splunk for your investigations☆84Updated 2 months ago
- Aggregated Indicators of Compromise collected and cross-verified from multiple open and community-supported sources, enriched and ranked …☆33Updated 5 months ago
- The Github project for The Defender's Guide by Luke Paine and Jonathan Johnson☆146Updated last year
- SentinelOne STAR Rules☆54Updated last year
- A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon☆195Updated 4 years ago
- This project is a SIEM with SIRP and Threat Intel, all in one.☆419Updated 2 months ago
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆131Updated 11 months ago
- Repository resource for threat hunter☆158Updated 6 years ago
- an excel-centric approach for the MITRE ATT&CK® Tactics and Techniques☆183Updated 2 years ago
- evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.☆149Updated 3 years ago
- Repository of public reference frameworks for the DFIR community.☆112Updated last year
- A python script developed to process Windows memory images based on triage type.☆261Updated last year