Automated detection rule analysis utility
☆29Sep 22, 2022Updated 3 years ago
Alternatives and similar repositories for dredd
Users that are interested in dredd are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Network timing evaluation used to detect beacons, works with argus flow as the source☆20May 4, 2016Updated 10 years ago
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆54Jul 13, 2023Updated 2 years ago
- ☆21May 10, 2023Updated 3 years ago
- ☆39Feb 12, 2020Updated 6 years ago
- ☆19Apr 13, 2022Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A spiritual .NET equivalent to the Gargoyle memory scanning evasion technique☆52Dec 6, 2018Updated 7 years ago
- A test case runner for Sigma rules☆14Aug 14, 2024Updated last year
- ☆20Feb 22, 2021Updated 5 years ago
- VECTR is a tool that facilitates tracking of your red and blue team testing activities to measure detection and prevention capabilities a…☆1,580May 29, 2026Updated last week
- POC for utilizing wikipedia API for Command and Control☆29Dec 8, 2022Updated 3 years ago
- BloodHound Cypher Queries Ported to a Jupyter Notebook☆53Jun 20, 2020Updated 5 years ago
- 🚨ATTENTION🚨 The VERIS mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here …☆72Apr 3, 2024Updated 2 years ago
- A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs☆822May 30, 2026Updated last week
- An offensive toolkit for restless guests #DEFCON33☆59Aug 11, 2025Updated 10 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Credential Dumper☆81Feb 19, 2020Updated 6 years ago
- Docker compose Assemblyline 4 deployment (appliance and development)☆17Jun 2, 2026Updated last week
- Compilation of resources to help with Adversary Simulation automation harness☆100Aug 7, 2020Updated 5 years ago
- Microsoft decompiled IrDA drivers☆16Apr 15, 2015Updated 11 years ago
- STIX 2.1 Visualizer, Attack and Activity Thread Graph for Threat Modeling☆33Dec 9, 2024Updated last year
- Data and structures regarding the research done on WdFilter☆12Apr 15, 2020Updated 6 years ago
- ATT&CK Remote Threat Hunting Incident Response☆203Dec 8, 2024Updated last year
- an excel-centric approach for the MITRE ATT&CK® Tactics and Techniques☆188May 5, 2022Updated 4 years ago
- String extraction and classification tool for binary files, designed to extract only the strings that can be considered relevant (i.e. no…☆11Aug 9, 2020Updated 5 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Petaq - Purple Team Command & Control Server☆104Dec 8, 2022Updated 3 years ago
- Automatically exported from code.google.com/p/guardlite☆11Jul 2, 2015Updated 10 years ago
- Repository resource threat intelligence for SOC☆10Sep 14, 2018Updated 7 years ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Jan 16, 2018Updated 8 years ago
- A mini project to exfiltrate data via QR codes☆19Dec 5, 2025Updated 6 months ago
- C# utility that uses WMI to run "cmd.exe /c netstat -n", save the output to a file, then use SMB to read and delete the file remotely☆39Jan 3, 2020Updated 6 years ago
- Threat Hunting & Incident Investigation with Osquery☆219Mar 30, 2022Updated 4 years ago
- nuke that event log using some epic dinvoke fu☆119May 12, 2021Updated 5 years ago
- Blog/Journal on how to backdoor VSCode extensions☆80Feb 24, 2026Updated 3 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- pwncat windows c2 components☆23Jun 21, 2021Updated 4 years ago
- FOR508 Index - GCFA☆25May 19, 2018Updated 8 years ago
- Automatically exported from code.google.com/p/hf-2011☆15Feb 12, 2016Updated 10 years ago
- POC for a race condition exploit using directory junctions in Windows☆17Apr 26, 2020Updated 6 years ago
- ☆34Oct 16, 2025Updated 7 months ago
- ☆10Dec 24, 2022Updated 3 years ago
- Threat Simulation Indexes☆40Jan 9, 2026Updated 5 months ago