cert-orangecyberdefense / datalakeLinks
Datalake CLI scripts for searching, lookuping, adding, tagging, editing score of threats in bulk
☆21Updated 3 months ago
Alternatives and similar repositories for datalake
Users that are interested in datalake are comparing it to the libraries listed below
Sorting:
- DFIR ORC PARSER PROJECT☆25Updated 3 months ago
- ☆92Updated 2 weeks ago
- BlackBerry Threat Research & Intelligence☆98Updated last year
- The core backend server handling API requests and task management☆39Updated last week
- A pySigma wrapper and langchain toolkit for automatic rule creation/translation☆81Updated 2 weeks ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆33Updated last month
- Turn any blog into structured threat intelligence.☆31Updated last week
- Extract machine readable cyber threat intelligence from unstructured data (inc. PDFs, Word docs, and HTML pages)☆18Updated this week
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆124Updated last year
- Small-scale threat emulation and detection range built on Elastic and Atomic Redteam.☆38Updated last year
- A cyber threat intelligence chatbot that ingested 2200+ reports from vx-underground.☆23Updated last year
- Baseline a Windows System against LOLBAS☆27Updated last year
- User Feedback Space of #MitreAssistant☆37Updated 2 years ago
- Adversarial Interception Mission Oriented Discovery and Disruption Framework, or AIMOD2, is a structured threat hunting approach to proac…☆88Updated last year
- Intel Retrieval Augmented Generation (RAG) Utilities☆90Updated last year
- A collection of tips for using MISP.☆74Updated 5 months ago
- FJTA (Forensic Journal Timeline Analyzer) is a tool that analyzes Linux filesystem (EXT4, XFS) journals (not systemd-journald), generates…☆64Updated 2 months ago
- A home for detection content developed by the delivr.to team☆69Updated this week
- A tool collection for filtering and visualizing logon events. Designed to help answering the "Cotton Eye Joe" question (Where did you com…☆171Updated last week
- Sigma detection rules for hunting with the threathunting-keywords project☆55Updated 3 months ago
- Repository documenting how Threat Intelligence and / or a Threat Intelligence Platform can prove its value to an organisation.☆51Updated 7 months ago
- Detection Engineering with YARA☆87Updated last year
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆78Updated 3 weeks ago
- Building a consolidated RSS feed for articles about cyberattacks☆67Updated this week
- Finding ClickFix and FakeCAPTCHA like it's 1999☆38Updated this week
- pySigma Splunk backend☆38Updated 3 weeks ago
- yara detection rules for hunting with the threathunting-keywords project☆121Updated 3 weeks ago
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆52Updated last year
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆78Updated last week
- Collection of scripts used to deobfuscate GOOTLOADER malware samples.☆62Updated 5 months ago