TheIRGurus / PlaybooksLinks
Playbooks designed for IBM SOAR developed by The IR Gurus. These playbooks can be used to demonstrate how to design playbooks, perform automations, and expand your SOP library within your environment.
☆17Updated last year
Alternatives and similar repositories for Playbooks
Users that are interested in Playbooks are comparing it to the libraries listed below
Sorting:
- ☆58Updated 4 months ago
- ☆67Updated 2 years ago
- ☆28Updated last month
- Repository for SPEED SIEM Use Case Framework☆56Updated 5 years ago
- This code snippet retrieves Azure Sentinel rules that are mapped to MITRE ATT&CK Framework and generates the related MITRE D3FEND defense…☆74Updated 4 years ago
- Pulls IOCs from MISP and adds the to reference sets in QRadar☆34Updated 2 years ago
- Repository of public reference frameworks for the DFIR community.☆121Updated 2 years ago
- OSSEM Detection Model☆182Updated 3 years ago
- MISP to Splunk Enterprise Security Theat Intelligence Framework Integration☆14Updated 2 years ago
- Cybersecurity Incident Response Plan☆109Updated 5 years ago
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆53Updated 4 months ago
- ☆15Updated 4 months ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆157Updated 10 months ago
- Source code for IBM SOAR Apps that are available on our App Exchange☆92Updated last week
- ☆47Updated 3 years ago
- 2021 SANS DFIR Summit: Greppin' Logs☆20Updated 2 months ago
- Example scripts and rules for use in Resilient playbooks.☆35Updated 2 years ago
- The Infosec Community Definitive Guide to Jupyter Notebooks☆130Updated 5 years ago
- ☆99Updated 3 years ago
- Dettectinator - The Python library to your DeTT&CT YAML files.☆119Updated 9 months ago
- Public script from SANS FOR509 Enterprise Cloud Incident Response☆217Updated 2 months ago
- SentinelOne STAR Rules☆71Updated 11 months ago
- Microsoft Sentinel, Defender for Endpoint - KQL Detection Packs☆55Updated 2 years ago
- List of custom developed KQL queries to help proactive security teams hunt for opportunistic and sophisticated threat activity by develop…☆26Updated 4 years ago
- PowerShell module for Office 365 and Azure log collection☆280Updated 4 months ago
- This is the One Stop place where you can several Detection Rules which can help you to kick start your journey on SIEM, SOC work.☆41Updated 4 years ago
- Repository with Sample KQL Query examples for Threat Hunting☆216Updated 3 years ago
- Reflex SOAR☆12Updated 3 years ago
- ☆13Updated last year
- Notes on responding to security breaches relating to Azure AD☆120Updated 3 years ago