A collection of Sigma rules organized by MITRE ATT&CK technique
☆18Apr 1, 2026Updated 2 months ago
Alternatives and similar repositories for sigma-rules
Users that are interested in sigma-rules are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆20Oct 23, 2020Updated 5 years ago
- Sigma Detection Rule Repository☆93Jun 18, 2020Updated 5 years ago
- RenameLocalVars is an IDA plugin that renames local variables to something easier to read.☆15Jul 9, 2023Updated 2 years ago
- Sigma rules from Joe Security☆240Nov 4, 2024Updated last year
- A simple Docker container that serves the MITRE ATT&CK Navigator web app☆27Apr 23, 2023Updated 3 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- OpenCSPM Community Controls☆14May 18, 2021Updated 5 years ago
- ☆11Feb 9, 2023Updated 3 years ago
- SIEM Detection Use Case Library mapped to MITRE ATT&CK tactics and techniques☆12Oct 28, 2018Updated 7 years ago
- SharpReg is a simple code set to interact with the Remote Registry service api and is compatible with Cobalt Strike.☆27Apr 12, 2020Updated 6 years ago
- Event Query Router☆12Aug 9, 2019Updated 6 years ago
- This directory contains random scripts from threat hunting or malware research☆11Feb 15, 2018Updated 8 years ago
- Rules generated from our investigations.☆210Jun 17, 2025Updated 11 months ago
- Continuous External Attack Surface Discovery & Vulnerability Scanning Across AWS Organizations — Python CDK☆14Mar 6, 2026Updated 3 months ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆51Apr 10, 2024Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Popular Ransomware file extensions☆28Jan 16, 2026Updated 4 months ago
- CLI Search for Security Operators of MITRE ATT&CK URLs☆17Jan 5, 2023Updated 3 years ago
- ETHICAL-HACKING☆13Dec 20, 2023Updated 2 years ago
- Certipy in Docker☆13Mar 28, 2024Updated 2 years ago
- Set of SIGMA rules (>350) mapped to MITRE ATT&CK tactic and techniques☆433May 21, 2026Updated 3 weeks ago
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆219May 24, 2026Updated 2 weeks ago
- Generate representative samples from Pwned Passwords (HIBP)☆11Jan 6, 2022Updated 4 years ago
- Perform file-based malware scan on your on-prem servers with AWS☆14Oct 31, 2023Updated 2 years ago
- A triage data collection script for macOS☆30Nov 27, 2020Updated 5 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆21May 8, 2022Updated 4 years ago
- Queries for Carbon Black Response☆11Feb 11, 2020Updated 6 years ago
- Java DNS Post Exploitation Tool☆11Jul 21, 2024Updated last year
- A simple linter for Sigma rules☆13Oct 22, 2020Updated 5 years ago