Please see other maintained fork:
☆17Dec 4, 2025Updated 6 months ago
Alternatives and similar repositories for sysmon-config
Users that are interested in sysmon-config are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Suricata rules to detect Winnti communication☆16Mar 5, 2018Updated 8 years ago
- Appendix resources for Intrinsec's "Amélioration des capacités de détection" handbook.☆13Mar 26, 2018Updated 8 years ago
- Network detector for Winnti malware☆21Mar 6, 2018Updated 8 years ago
- ☆17Sep 14, 2017Updated 8 years ago
- This repository is a curated list of pro bono incident response entities.☆21Jun 21, 2023Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- List of netblocks with shared hosting on 20170330☆10Apr 10, 2017Updated 9 years ago
- Script to install pentest tools on Alpine Linux☆10Jul 3, 2015Updated 10 years ago
- Various snippets created during malware analysis☆22Apr 29, 2018Updated 8 years ago
- Nmap Script to scan for Winnti infections☆71May 22, 2018Updated 8 years ago
- ☆53Mar 4, 2019Updated 7 years ago
- Pull author and committer names and emails from Travis-CI☆11Aug 9, 2020Updated 5 years ago
- Tools for parsing Forensic images☆41Dec 14, 2018Updated 7 years ago
- Understanding ATT&CK Matrix for Enterprise☆80May 16, 2018Updated 8 years ago
- ☆10Jul 10, 2022Updated 3 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Defender for Endpoint☆28Mar 28, 2026Updated 2 months ago
- Small and highly portable detection tests.☆12Oct 12, 2017Updated 8 years ago
- Log Examination Tool☆27Oct 11, 2016Updated 9 years ago
- PAC HTTPS leak demo from DEF CON 24 'Toxic Proxies' talk☆30Oct 4, 2016Updated 9 years ago
- Basic Auth Phish page☆25Sep 11, 2017Updated 8 years ago
- Generates visualizations from the output of flow tools such as SiLK.☆33Dec 8, 2016Updated 9 years ago
- A collection of bro_scripts and signatures☆27Jun 26, 2019Updated 6 years ago
- ☆17Apr 20, 2022Updated 4 years ago
- KERnano: The No-install Python Pen Testing kit. (Windows & Linux)☆13Sep 2, 2022Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Speaker content from NIC2018☆18Feb 20, 2018Updated 8 years ago
- This repository contains examples of micro virtual machines (microVMs) that can be run using firecracker.☆23Jan 22, 2019Updated 7 years ago
- Reconstruct process trees from event logs☆148Aug 12, 2020Updated 5 years ago
- Automated Memory Forensic☆34Jul 18, 2018Updated 7 years ago
- This project provides Base64 encoding and decoding functionality to PowerShell within Constrained Language Mode☆27Jun 25, 2024Updated last year
- Splunk App to assist Sysmon Threat Hunting☆38Mar 7, 2017Updated 9 years ago
- ThreatTracker is a Python script designed to monitor and generate alerts on given sets of indicators of compromise (IOCs) indexed by a se…