Security-Onion-Solutions / securityonion-socLinks
☆55Updated this week
Alternatives and similar repositories for securityonion-soc
Users that are interested in securityonion-soc are comparing it to the libraries listed below
Sorting:
- ☆48Updated this week
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆67Updated 3 years ago
- ☆51Updated 3 years ago
- Run Velociraptor on Security Onion☆38Updated 2 years ago
- ☆89Updated this week
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆126Updated 3 months ago
- Collection of walkthroughs on various threat hunting techniques☆75Updated 4 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆70Updated 2 years ago
- A Python application to filter and transfer Zeek logs to Elastic/OpenSearch+Humio. This app can also output pure JSON logs to stdout for…☆35Updated 2 years ago
- ☆19Updated 3 years ago
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆65Updated last year
- Workflows for Shuffle☆23Updated 2 years ago
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆78Updated last month
- Fast IOC and YARA Scanner☆80Updated 5 years ago
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆94Updated 3 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆64Updated 2 years ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆52Updated 2 years ago
- Sightings Ecosystem gives cyber defenders visibility into what adversaries actually do in the wild. With your help, we are tracking MITRE…☆35Updated last month
- Docker configurations for TheHive, Cortex and 3rd party tools☆126Updated 2 years ago
- OSSEM Common Data Model☆56Updated 2 years ago
- Collection of Dashboards for Threat Hunting and more!☆68Updated 4 years ago
- A CALDERA plugin☆77Updated this week
- Sharing Threat Hunting runbooks☆26Updated 6 years ago
- ☆36Updated 4 years ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆44Updated last year
- OSSEM Data Dictionaries☆61Updated 5 months ago
- Repo of python/bash scripts for identifying IoC's in threat feed and other online tools☆27Updated 4 years ago
- A Zeek Network Security Monitor tutorial that will cover the basics of creating a Zeek instance on your network in addition to all of the…☆62Updated 2 years ago
- A collection of tips for using MISP.☆74Updated 7 months ago
- OpenCTI Docker deployment helpers☆188Updated this week