attackevals / ael
ATT&CK Evaluations Library
☆60Updated this week
Alternatives and similar repositories for ael:
Users that are interested in ael are comparing it to the libraries listed below
- OSSEM Detection Model☆177Updated 2 years ago
- Sigma rules from Joe Security☆207Updated 4 months ago
- ☆124Updated last month
- Anything Sysmon related from the MSTIC R&D team☆151Updated 9 months ago
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆132Updated last year
- Cobalt Strike Beacon configuration extractor and parser.☆153Updated 3 years ago
- Active C&C Detector☆153Updated last year
- Rules generated from our investigations.☆192Updated this week
- Set of SIGMA rules (>350) mapped to MITRE ATT&CK tactic and techniques☆354Updated 2 months ago
- yara detection rules for hunting with the threathunting-keywords project☆113Updated 3 weeks ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆200Updated last week
- Dettectinator - The Python library to your DeTT&CT YAML files.☆109Updated 2 months ago
- Sigma rules to share with the community☆119Updated 2 months ago
- MAD ATT&CK Defender: ATT&CK Adversary Emulation Repository☆112Updated last year
- ☆236Updated 10 months ago
- ☆130Updated last year
- PCAP Samples for Different Post Exploitation Techniques☆356Updated 3 years ago
- ☆67Updated last month
- Place for resources used during the Mordor Detection hackathon event featuring APT29 ATT&CK evals datasets☆137Updated 4 years ago
- A guide on how to write fast and memory friendly YARA rules☆141Updated last month
- A repository to share publicly available Velociraptor detection content☆139Updated this week
- A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon☆199Updated 4 years ago
- A repository of my own Sigma detection rules.☆157Updated 6 months ago
- Test the accuracy of Endpoint Detection and Response (EDR) software with simple script which executes various ATT&CK/LOLBAS/Invoke-Cradle…☆301Updated 3 years ago
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆126Updated 11 months ago
- Open Dataset of Cobalt Strike Beacon metadata (2018-2022)☆124Updated 3 years ago
- An opensource sigma conversion tool built using pysigma☆121Updated 3 months ago
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆166Updated this week
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆201Updated 2 years ago
- A Cobalt Strike Scanner that retrieves detected Team Server beacons into a JSON object☆165Updated 2 years ago