SecurityRiskAdvisors / RedTeamSIEMLinks
Repository of resources for configuring a Red Team SIEM using Elastic
☆101Updated 7 years ago
Alternatives and similar repositories for RedTeamSIEM
Users that are interested in RedTeamSIEM are comparing it to the libraries listed below
Sorting:
- Mitre Att&ck Technique Emulation☆82Updated 6 years ago
- See adversary, do adversary: Simple execution of commands for defensive tuning/research (now with more ELF on the shelf)☆104Updated 2 years ago
- A cloud-backed password cracking and assessment tool - Sponsored by Open Security☆69Updated 2 years ago
- ☆76Updated 7 years ago
- Compilation of resources to help with Adversary Simulation automation harness☆100Updated 4 years ago
- ☆69Updated 3 years ago
- Simulating Adversary Operations☆93Updated 7 years ago
- PSAttck is a light-weight framework for the MITRE ATT&CK Framework.☆38Updated 3 years ago
- Carbon Black Response IR tool☆54Updated 4 years ago
- attack2jira automates the process of standing up a Jira environment that can be used to track and measure ATT&CK coverage☆113Updated 2 years ago
- Purple Team Security☆75Updated 3 years ago
- ☆42Updated this week
- A MITRE Caldera plugin written in Python 3 used to convert Red Canary Atomic Red Team Tests to MITRE Caldera Stockpile YAML ability files…☆72Updated 3 years ago
- TA505+ Adversary Simulation☆65Updated 4 years ago
- Automatic Sender Policy Framework Reconnaissance☆19Updated 7 years ago
- Linux Incident Response☆90Updated 5 years ago
- Scripts to create a Active Directory Lab with security misconfigurations and vulnerabilities.☆48Updated 5 years ago
- LLMNR/NBNS/mDNS Spoofing Detection Toolkit☆60Updated 3 years ago
- A collection of hunting and blue team scripts. Mostly others, some my own.☆37Updated 2 years ago
- The Diagon Attack Framework is a Prismatica application containing the Ravenclaw, Gryffindor, and Slytherin remote access tools (RATs).☆52Updated 2 years ago
- A CALDERA plugin for ATT&CK Evaluations Round 1☆33Updated last year
- ☆54Updated 6 years ago
- A collection of random bits of information common to many individual penetration tests, red teams, and other assessments☆110Updated 7 months ago
- ☆70Updated last year
- BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.☆32Updated 5 years ago
- Automatic detection engineering technical state compliance☆55Updated last year
- ☆169Updated 5 years ago
- ☆27Updated 4 years ago
- Repo containing docker-compose files and setup scripts without having to clone the individual reternal components☆109Updated 4 years ago
- Searches for Insider Threat Hunting☆32Updated 6 years ago