bestpractical / rtir
☆128Updated last month
Alternatives and similar repositories for rtir:
Users that are interested in rtir are comparing it to the libraries listed below
- IntelMQ Manager is a graphical interface to manage configurations for IntelMQ framework.☆103Updated 6 months ago
- Salt States for Configuring the SIFT Workstation☆97Updated this week
- automate your MISP installs☆66Updated 4 years ago
- This repository hosts files relating to the TF-CSIRT Reference Security Incident Taxonomy Working Group.☆64Updated 3 months ago
- Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform☆71Updated last year
- Cerebrate is an open-source platform meant to act as a trusted contact information provider and interconnection orchestrator for other se…☆85Updated last month
- ☆34Updated 4 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆105Updated 6 years ago
- Connect your mail client/infrastructure to MISP in order to create events based on the information contained within mails.☆69Updated last year
- A website and framework for testing NIDS detection☆56Updated 3 years ago
- A live dashboard for a real-time overview of threat intelligence from MISP instances☆195Updated last year
- A Splunk app to use MISP in background☆109Updated 2 months ago
- URL Abuse - A Versatile Software for URL review, analysis and black-list reporting☆142Updated 2 years ago
- Cisco Orbital - Osquery queries by Talos☆127Updated 4 months ago
- SOC Workflow App helps Security Analysts and Threat Hunters explore suspicious events, look into raw events arriving at the Elastic Stack…☆93Updated 2 years ago
- An OpenTAXII Configuration for MISP☆80Updated 2 years ago
- Volatility plugins developed and maintained by the community☆21Updated 4 months ago
- A framework for receiving and redistributing abuse feeds☆122Updated 5 years ago
- Import specific data sources into the Sigma generic and open signature format.☆77Updated 2 years ago
- Zeek Auxiliary Programs☆27Updated last month
- Carbon Black Feeds☆72Updated last year
- Scripts for TheHive.☆22Updated 5 years ago
- InvestigationPlaybookSpec☆72Updated 7 years ago
- A Splunk app with saved reports derived from Sigma rules☆73Updated 6 years ago
- Pulls IOCs from MISP and adds the to reference sets in QRadar☆33Updated last year
- Bro/Zeek integration with osquery☆94Updated 4 years ago
- The Project can be used to integrate QRadar with MISP Threat Sharing Platform☆39Updated 2 years ago
- ☆54Updated 3 years ago
- WebUI of MineMeld☆43Updated last year