brimdata / zui-insidersLinks
Releases for the Zui Insiders app.
☆22Updated 3 months ago
Alternatives and similar repositories for zui-insiders
Users that are interested in zui-insiders are comparing it to the libraries listed below
Sorting:
- Digital Forensics Artifacts Knowledge Base☆81Updated last year
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- This script is made to collect the most valiable artifacts for foreniscs or incident reponse investigation rather than imaging the whole …☆202Updated 4 years ago
- A community event for security researchers to share their favorite notebooks☆107Updated last year
- Open source endpoint agent providing host information to Zeek. [v2]☆82Updated this week
- Detection Ideas & Rules repository.☆179Updated 3 years ago
- HXTool is an extended user interface for the FireEye HX Endpoint product. HXTool can be installed on a dedicated server or on your physic…☆82Updated 11 months ago
- ☆34Updated last year
- Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)☆81Updated last month
- Custom Splunk search command to reconstruct a pstree from Sysmon process creation events (EventCode 1)☆23Updated 2 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆70Updated 2 years ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆109Updated 2 years ago
- ☆48Updated this week
- A collection of tips for using MISP.☆74Updated 5 months ago
- OSSEM Common Data Model☆55Updated 2 years ago
- A cross-platform baselining, threat hunting, and attack surface analysis tool for security teams.☆216Updated 2 months ago
- YARA rule analyzer to improve rule quality and performance☆101Updated last month
- Analyse a forensic target (such as a directory) to find and report files found and not found from CIRCL hashlookup public service - https…☆126Updated last year
- Automatic detection engineering technical state compliance☆55Updated 10 months ago
- evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.☆154Updated 3 years ago
- Visual Studio Code extension for MITRE ATT&CK☆54Updated 11 months ago
- This repository hosts community contributed Kestrel huntflows (.hf) and huntbooks (.ipynb)☆33Updated last year
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆53Updated last month
- Cisco Orbital - Osquery queries by Talos☆131Updated 9 months ago
- Collection of Dashboards for Threat Hunting and more!☆68Updated 4 years ago
- PcapMonkey will provide an easy way to analyze pcap using the latest version of Suricata and Zeek.☆153Updated 2 months ago
- Import specific data sources into the Sigma generic and open signature format.☆78Updated 3 years ago
- PowerShell - Endpoint Analysis Solution Your Windows Intranet Needs☆47Updated 6 months ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆78Updated 3 weeks ago
- Corelight@Home script☆41Updated last year