Yamato-Security / Presentations
☆18Updated 4 months ago
Alternatives and similar repositories for Presentations:
Users that are interested in Presentations are comparing it to the libraries listed below
- Documentation and tools to curate Sigma rules for Windows event logs into easier to parse rules.☆11Updated last month
- Assist analyst and threat hunters to understand Windows authentication logs and to analyze brutforce scenarios.☆18Updated last year
- Living off the False Positive!☆35Updated last month
- Baseline a Windows System against LOLBAS☆25Updated 10 months ago
- ☆15Updated 3 years ago
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆36Updated last year
- A repository of curated lists with elements such as IoCs to use for threat hunting & detection queries.☆34Updated 8 months ago
- ☆41Updated 11 months ago
- An experimental Velociraptor implementation using cloud infrastructure☆23Updated this week
- An extension of the sigma standard to include security metrics.☆15Updated last year
- Bloodhound Portable for Windows☆51Updated last year
- Send High & New Incidents to The Hive incident management Platform☆18Updated 4 years ago
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆51Updated last year
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- Sigma detection rules for hunting with the threathunting-keywords project☆55Updated 3 weeks ago
- ShellSweeping the evil.☆52Updated 9 months ago
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆72Updated 3 years ago
- A web scraper to create MISP events and reports☆14Updated 2 years ago
- This is a repo for fetching Applocker event log by parsing the win-event log☆30Updated 2 years ago
- These are some of the commands which I use frequently during Malware Analysis and DFIR.☆24Updated last year
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆51Updated 3 months ago
- ☆22Updated 5 months ago
- VTC - Velociraptor Timeline Creator☆15Updated 10 months ago
- Penguin OS Forensic (or Flight) Recorder☆39Updated 3 months ago
- Placeholder for my detection repo and misc detection engineering content☆43Updated last year
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆76Updated last year
- A simple tool designed to create Atomic Red Team tests with ease.☆38Updated 2 weeks ago
- This repository contains generated contextual data utilized by pyattck.☆19Updated 3 weeks ago
- Convert Sigma rules to SIEM queries, directly in your browser.☆59Updated this week
- IOCPARSER.COM is a Fast and Reliable service that enables you to extract IOCs and intelligence from different data sources.☆34Updated 3 years ago