SigmaHQ / legacy-sigmatoolsLinks
Legacy Sigma Tools (sigmac etc.)
☆15Updated 2 years ago
Alternatives and similar repositories for legacy-sigmatools
Users that are interested in legacy-sigmatools are comparing it to the libraries listed below
Sorting:
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆85Updated last month
- Library of threat hunts to get any user started!☆45Updated 5 years ago
- A home for detection content developed by the delivr.to team☆73Updated 5 months ago
- ShellSweeping the evil.☆53Updated last year
- simple webapp for converting sigma rules into siem queries using the pySigma library☆51Updated 2 years ago
- YARA rule analyzer to improve rule quality and performance☆108Updated 9 months ago
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆90Updated 2 months ago
- Security Content for the PEAK Threat Hunting Framework☆40Updated last year
- Sample evtx files to use for testing hayabusa detection rules☆64Updated 2 months ago
- pySigma Splunk backend☆42Updated last month
- Get-MiniTimeline - Triage Collection and Timeline Generation w/ KAPE☆32Updated last year
- ☆17Updated 3 months ago
- Sigma detection rules for hunting with the threathunting-keywords project☆57Updated 10 months ago
- ☆22Updated 2 years ago
- Initial triage of Windows Event logs☆105Updated last year
- ☆20Updated 2 years ago
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆74Updated 3 years ago
- Rhaegal is a tool written in Python 3 used to scan Windows Event Logs for suspicious logs. Rhaegal uses custom rule format to detect sus…☆42Updated 2 years ago
- Rapid7 Labs operates as the division of Rapid7 focused on threat research. It is renowned for providing comprehensive threat intelligence…☆75Updated last month
- ☆92Updated 5 months ago
- Assist analyst and threat hunters to understand Windows authentication logs and to analyze brutforce scenarios.☆19Updated 2 years ago
- JPCERT/CC public YARA rules repository☆110Updated 2 months ago
- Quick ESXi Log Parser☆28Updated 2 months ago
- BlackBerry Threat Research & Intelligence☆100Updated 2 years ago
- ☆11Updated 2 years ago
- ☆44Updated 6 months ago
- Intel Retrieval Augmented Generation (RAG) Utilities☆91Updated last year
- Detection Engineering with YARA☆86Updated 2 years ago
- High-level Threat Intelligence playbooks☆20Updated 4 years ago
- Active C&C Detector☆155Updated 2 years ago