WiredPulse / McAfee_ePOLinks
Custom Queries, Dashboards, and HIPs Rules
☆10Updated 7 years ago
Alternatives and similar repositories for McAfee_ePO
Users that are interested in McAfee_ePO are comparing it to the libraries listed below
Sorting:
- A few scripts I put together for testing purposes and to automate a few capabilities while doing IR. These scripts are also part of my bl…☆55Updated 7 years ago
- Powershell collection designed to assist in Threat Hunting Windows systems.☆27Updated 7 years ago
- Build your own threat hunting maturity model☆11Updated 7 years ago
- This repository is created to add value to existing Network Security Monitoring solutions.☆42Updated 8 years ago
- Slides and Other Resources from my latest Talks and Presentations☆24Updated 4 years ago
- Tools for parsing Forensic images☆41Updated 6 years ago
- 504 VSAgent☆23Updated 7 years ago
- Expert Investigation Guides☆52Updated 4 years ago
- Presentation Slides and Video links☆32Updated 3 years ago
- Scandiff is a PowerShell script to automate host discovery and scanning with nmap. After discovering and scanning hosts, scandiff perfor…☆17Updated 10 years ago
- A bunch of scripts I use to work with urlscan.io☆34Updated 5 years ago
- ☆39Updated 6 years ago
- Miscelaneous Dockers☆47Updated 3 years ago
- Python script to batch query the Tor Relays and Bridges☆36Updated 6 years ago
- Carbonblack Live Response from the comfort of your own terminal☆20Updated 9 years ago
- A Splunk app with saved reports derived from Sigma rules☆73Updated 7 years ago
- Splunk App to assist Sysmon Threat Hunting☆38Updated 8 years ago
- Your Everyday Threat Intelligence☆22Updated 8 years ago
- ☆53Updated 7 years ago
- Incident Response Playbooks☆14Updated 6 years ago
- This script runs several security checks and makes modifications (with your permission) to your Active Directory domain to improve it's s…☆45Updated 9 years ago
- Office365 Log Analysis Framework☆82Updated 6 years ago
- mindmap created for tools can be used during analysis/investigation☆27Updated 8 years ago
- Repository for my ATT&CK analysis research.☆69Updated 6 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Updated last year
- Credential Phish Analysis and Automation☆97Updated 6 years ago
- VirusTotal SIEM Integration and Automation☆18Updated 8 years ago
- CB API scripts for IR, administration, etc.☆32Updated 6 years ago
- A python script to query the MITRE ATT&CK API for tactics, techniques, mitigations, & detection methods for specific threat groups.☆66Updated 6 years ago
- ☆18Updated 8 years ago