archanchoudhury / Detection-Rule-DumpView external linksLinks
This is the One Stop place where you can several Detection Rules which can help you to kick start your journey on SIEM, SOC work.
☆41Jun 27, 2021Updated 4 years ago
Alternatives and similar repositories for Detection-Rule-Dump
Users that are interested in Detection-Rule-Dump are comparing it to the libraries listed below
Sorting:
- Getting FREE Cyber Security Resources have been a challenge always. Access Davy-Jones-Locker to get all what you might need to upskill yo…☆62Mar 22, 2021Updated 4 years ago
- 🛡️ A curated collection of awesome resources, tools, and other shiny things for cybersecurity blue teams.☆12Jan 11, 2020Updated 6 years ago
- This is the One Stop place where you can find almost all of your Tools of Requirements in DFIR☆85Mar 3, 2022Updated 3 years ago
- Field guide to gather low-hanging fruits☆14Mar 20, 2025Updated 10 months ago
- Documentation and tools to curate Sigma rules for Windows event logs into easier to parse rules.☆16Oct 22, 2025Updated 3 months ago
- SPL for aws datasets☆14Jul 9, 2025Updated 7 months ago
- Powershell Scripts to work on Crowdstrike Falcon that pull back raw data relevant to forensic investigation☆23Dec 18, 2024Updated last year
- Synopsis is a tool to aid analysts reviewing browser history files by providing a high-level “synopsis” of key information.☆22Oct 31, 2018Updated 7 years ago
- These are open source rules that can be utilized with QRadar to detect various types of threats in the environment.☆58Jun 11, 2019Updated 6 years ago
- macOS triage is a python script to collect various macOS logs, artifacts, and other data.☆25Mar 25, 2021Updated 4 years ago
- This Repository gives the best and possible strategies against hunting the ransomware☆26Aug 23, 2022Updated 3 years ago
- ☆29Aug 12, 2021Updated 4 years ago
- Example scripts and rules for use in Resilient playbooks.☆35Dec 15, 2023Updated 2 years ago
- Some important DFIR Resources☆84Mar 16, 2023Updated 2 years ago
- A PowerShell incident response script for quick triage☆81Jul 18, 2022Updated 3 years ago
- ☆171Updated this week
- Sigma Detection Rule Repository☆92Jun 18, 2020Updated 5 years ago
- Windows Event Log Auditor☆88Updated this week
- ☆22Nov 22, 2025Updated 2 months ago
- Lazy SPL to detect Spring4Shell exploitation☆12Jul 8, 2022Updated 3 years ago
- Modeling and simulation of ICS devices☆12Jan 28, 2026Updated 2 weeks ago
- ☆13Mar 12, 2025Updated 11 months ago
- BulkStrike enables the usage of CrowdStrike Real Time Response (RTR) to bulk execute commands on multiple machines.☆43Nov 27, 2022Updated 3 years ago
- Master-in-Devops-Engineering-MDE-Session-Notes☆13Jul 28, 2025Updated 6 months ago
- Python Library for the IBM SOAR REST API, a Python SDK for developing Apps for IBM SOAR and more...☆42Nov 13, 2025Updated 3 months ago
- Set of SIGMA rules (>350) mapped to MITRE ATT&CK tactic and techniques☆412Nov 8, 2025Updated 3 months ago
- SANS has a massive list of posters available for quick reference to aid you in your security learning.☆73Oct 22, 2021Updated 4 years ago
- This is a collection of threat detection rules / rules engines that I have come across.☆296May 5, 2024Updated last year
- This is a Project Designed for Security Analysts and all SOC audiences who wants to play with implementation and explore the Modern SOC a…☆720Sep 23, 2024Updated last year
- Packet Analysis on Steroids☆12Oct 20, 2022Updated 3 years ago
- A package that get baseball data☆13Feb 24, 2025Updated 11 months ago
- Queries for parsed spotlight database in sqlite☆13Dec 29, 2020Updated 5 years ago
- A curated list of CTF frameworks, libraries, resources and softwares☆10Nov 11, 2015Updated 10 years ago
- DuckyScript interpreter for ESP32S2/S3☆15Jan 31, 2025Updated last year
- Save as PDF addon for Firefox and Google Chrome☆15Jun 12, 2025Updated 8 months ago
- Training materials I've written.☆11Nov 11, 2025Updated 3 months ago
- Service to update DNS blacklist in Unbound☆11Apr 17, 2021Updated 4 years ago
- Automating simple report creating of threat intelligence using ChatGPT and Greynoise API.☆10Oct 3, 2023Updated 2 years ago
- PPA builds of flatpak☆14May 14, 2025Updated 9 months ago