calebstewart / python-sigma
Python API for interacting with sigma rules.
☆50Updated 2 years ago
Alternatives and similar repositories for python-sigma:
Users that are interested in python-sigma are comparing it to the libraries listed below
- This repo is where I store my Threat Hunting ideas/content☆87Updated last year
- A series of PowerShell scripts to automate collection of forensic artefacts in most Incident Response environments☆65Updated 3 years ago
- A home for detection content developed by the delivr.to team☆67Updated 2 weeks ago
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆72Updated 3 years ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆51Updated 2 months ago
- Baseline a Windows System against LOLBAS☆25Updated 9 months ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆32Updated 3 weeks ago
- Full of public notes and Utilities☆97Updated last week
- ☆46Updated 3 weeks ago
- Simple parser to get useful information from AWS S3 logs☆24Updated 3 years ago
- Simple PowerShell script to enable process scanning with Yara.☆91Updated 2 years ago
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆77Updated 3 years ago
- Random tips and tricks RE: ransomware☆14Updated 3 years ago
- Random notes collected on the intertubes relating to DFIR☆32Updated last year
- Reads and prints information from the website MalAPI.io☆38Updated 3 years ago
- Active Directory Purple Team Playbook☆105Updated last year
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆76Updated last year
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆59Updated 7 months ago
- Small-scale threat emulation and detection range built on Elastic and Atomic Redteam.☆37Updated last year
- Collection of scripts/resources/ideas for attack surface reduction and additional logging to enable better threat hunting on Windows endp…☆38Updated 10 months ago
- Small enough to carry on your back (Backpack) 🎒💻☆32Updated last year
- ☆50Updated last month
- ☆34Updated 11 months ago
- simple webapp for converting sigma rules into siem queries using the pySigma library☆47Updated last year
- ☆86Updated last year
- Supporting materials for my "Intelligence-Led Adversarial Threat Modelling with VECTR" workshop☆59Updated this week
- ☆20Updated 2 years ago
- ESXi Cyber Security Incident Response Script☆23Updated 5 months ago
- Bloodhound Portable for Windows☆51Updated last year
- CarbonBlack EDR detection rules and response actions☆71Updated 5 months ago