Yamato-Security / suzaku-rulesLinks
☆11Updated last month
Alternatives and similar repositories for suzaku-rules
Users that are interested in suzaku-rules are comparing it to the libraries listed below
Sorting:
- Cyber Threat Intelligence☆73Updated last month
- A preconfigured Velociraptor triage collector☆73Updated last week
- Rules shared by the community from 100 Days of YARA 2025☆38Updated 2 weeks ago
- 🐻❄️ 🏹 Threat hunting with Polars and flaws.cloud AWS CloudTrail datasets.☆13Updated last year
- pocket guide for core detection engineering concepts☆31Updated 2 years ago
- This repository contains the research and components of our research into using Sigma for AWS Incident Response.☆31Updated 2 years ago
- This repository contains sample log data that were collected after running adversary simulations in Microsoft 365☆23Updated last year
- Turn any blog into structured threat intelligence.☆43Updated last week
- An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.☆59Updated 3 years ago
- The Eventlog Compendium is the go-to resource for understanding Windows Event Logs.☆50Updated 8 months ago
- Sigma detection rules for hunting with the threathunting-keywords project☆57Updated 10 months ago
- Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.☆163Updated last month
- Track progress and keep notes while working through likethecoins' CTI Self Study Plan☆29Updated 3 years ago
- Azure Activity Log Axe is a continually developing tool that simplifies the transactional log format provided by Microsoft. The tool leve…☆35Updated last year
- ☆28Updated 3 months ago
- my MSTICpy practice and custom tools repository☆11Updated 8 months ago
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆52Updated last week
- ☆51Updated last month
- ☆18Updated last week
- ☆22Updated last year
- simple webapp for converting sigma rules into siem queries using the pySigma library☆51Updated 2 years ago
- Repository documenting how Threat Intelligence and / or a Threat Intelligence Platform can prove its value to an organisation.☆53Updated last year
- A preconfigured Windows-based system designed for rapid forensic investigations in both Azure and AWS.☆39Updated last year
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆90Updated 2 months ago
- VelociraptorMCP is a Model Context Protocol bridge for exposing LLMs to MCP clients.☆67Updated 4 months ago
- ☆101Updated last month
- ☆17Updated 3 months ago
- Anvilogic Forge☆113Updated 3 months ago
- Repository that contains a set of purposefully erroneous Yara rules.☆61Updated 5 months ago
- A tool for fetching DFIR and other GitHub tools.☆24Updated 5 months ago