bestpractical / rtir
☆126Updated 3 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for rtir
- IntelMQ Manager is a graphical interface to manage configurations for IntelMQ framework.☆103Updated 4 months ago
- ☆34Updated 3 years ago
- Synapse: a Meta Alert Feeder for TheHive, a Security Incident Response Platform☆71Updated last year
- This repository hosts files relating to the TF-CSIRT Reference Security Incident Taxonomy Working Group.☆64Updated last month
- Salt States for Configuring the SIFT Workstation☆96Updated last week
- Carbon Black Feeds☆70Updated last year
- automate your MISP installs☆66Updated 4 years ago
- misp-cloud - Cloud-ready images of MISP☆72Updated 2 years ago
- Threat Feed Aggregation, Made Easy☆166Updated 4 years ago
- Yara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.☆104Updated 6 years ago
- User guide of MISP☆257Updated last month
- Tool to extract indicators of compromise from security reports in PDF format☆72Updated 4 months ago
- Analyze binaries collected in VMware Carbon Black EDR against Yara rules.☆36Updated last year
- A Splunk app to use MISP in background☆109Updated 2 weeks ago
- A website and framework for testing NIDS detection☆56Updated 3 years ago
- ☆53Updated 3 years ago
- InvestigationPlaybookSpec☆72Updated 7 years ago
- URL Abuse - A Versatile Software for URL review, analysis and black-list reporting☆142Updated last year
- WebUI of MineMeld☆43Updated last year
- RPM packages for MISP☆34Updated 3 weeks ago
- An OpenTAXII Configuration for MISP☆81Updated 2 years ago
- Bro/Zeek integration with osquery☆95Updated 4 years ago
- Multithreaded threat Intelligence gathering built with Python3☆171Updated 6 years ago
- A Splunk app with saved reports derived from Sigma rules☆72Updated 6 years ago
- Scripts for TheHive.☆22Updated 4 years ago
- Subscribe to raw VMware Carbon Black EDR event feed and forward to another system, such as Splunk.☆73Updated 6 months ago
- TAXII client implementation from EclecticIQ☆98Updated 3 years ago
- Repository of scripts/tools that may be useful in Security Operations Centres (SOC)☆54Updated 3 years ago
- ☆48Updated 4 years ago