SigmaHQ / Detection-Rule-License
Detection Rule License (DRL)
☆17Updated 4 months ago
Alternatives and similar repositories for Detection-Rule-License:
Users that are interested in Detection-Rule-License are comparing it to the libraries listed below
- 🚧 Currently transfering TLP:CLEAR rules from TLP:AMBER repository...☆21Updated last year
- Log4Shell IOCs from CERT Orange Cyberdefense Threat Intelligence Datalake☆18Updated 2 years ago
- Indicators of Normality☆12Updated 2 years ago
- ShellSweeping the evil.☆52Updated 10 months ago
- HTTP Headers Hashing (HHHash) is a technique used to create a fingerprint of an HTTP server based on the headers it returns.☆76Updated last year
- Repository of tools, YARA rules, and code-snippets from Stairwell's research team.☆22Updated last year
- Open YARA scan- and search engine☆23Updated 2 months ago
- misp-guard is a mitmproxy addon that inspects and blocks outgoing events to external MISP instances via sync mechanisms (pull/push) based…☆14Updated 2 months ago
- Assist analyst and threat hunters to understand Windows authentication logs and to analyze brutforce scenarios.☆18Updated last year
- Detection rule validation☆41Updated last year
- Lightweight Python-Based Malware Analysis Pipeline☆34Updated 2 weeks ago
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- Can you pay the ransom in your country?☆14Updated last year
- An extension of the sigma standard to include security metrics.☆15Updated last year
- A repository containing the research output from my GCFE Gold Paper which compared Windows 10 and Windows 11.☆27Updated 2 years ago
- Automatically spider the result set of a Censys/Shodan search and download all files where the file name or folder path matches a regex.☆27Updated 2 years ago
- ☆23Updated last year
- pySigma Splunk backend☆38Updated 2 months ago
- ☆15Updated 3 years ago
- A collection of tools adversaries commonly use in an attack.☆14Updated 5 months ago
- VTC - Velociraptor Timeline Creator☆18Updated 11 months ago
- A web scraper to create MISP events and reports☆14Updated 3 weeks ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆51Updated 5 months ago
- Share your Yara rules with VirusTotal☆25Updated 8 months ago
- Open-source Fabric templates for cybersecurity and compliance☆17Updated 3 months ago
- Collection of videos of Raids on Cybercriminals☆19Updated last month
- Linux #rootkit and #malware revealer☆24Updated 9 months ago
- A repository of curated lists with elements such as IoCs to use for threat hunting & detection queries.☆34Updated 9 months ago
- ☆22Updated 6 months ago
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆51Updated last year