certsocietegenerale / FIR
Fast Incident Response
☆1,867Updated this week
Alternatives and similar repositories for FIR:
Users that are interested in FIR are comparing it to the libraries listed below
- Incident Response Methodologies☆1,025Updated 6 years ago
- Cortex: a Powerful Observable Analysis and Active Response Engine☆1,421Updated 6 months ago
- Your Everyday Threat Intelligence☆1,847Updated this week
- IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.☆1,035Updated last week
- An informational repo about hunting for adversaries in your IT environment.☆1,774Updated 3 years ago
- Configuration files for the SOF-ELK VM☆1,580Updated last month
- TheHive: a Scalable, Open Source and Free Security Incident Response Platform☆3,645Updated 2 years ago
- CRITs - Collaborative Research Into Threats☆901Updated 5 years ago
- Create actionable data from your Vulnerability Scans☆1,379Updated 2 years ago
- Super timeline all the things☆1,836Updated 2 months ago
- An information security preparedness tool to do adversarial simulation.☆1,121Updated 6 years ago
- AIL framework - Analysis Information Leak framework. Project moved to https://github.com/ail-project☆1,327Updated last week
- FAME Automates Malware Evaluation☆895Updated 3 weeks ago
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,509Updated 9 months ago
- Loki - Simple IOC and YARA Scanner☆3,524Updated 5 months ago
- A Powershell incident response framework☆1,601Updated 2 years ago
- Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.☆1,303Updated 2 years ago
- Incident Response Forensic Framework☆601Updated 5 years ago
- A utility to safely generate malicious network traffic patterns and evaluate controls.☆1,306Updated last year
- YARA signature and IOC database for my scanners and tools☆2,608Updated this week
- Re-play Security Events☆1,639Updated last year
- Malcolm is a powerful, easily deployable network traffic analysis tool suite for full packet capture artifacts (PCAP files), Zeek logs an…☆2,111Updated last week
- A toolset to make a system look as if it was the victim of an APT attack☆2,588Updated last year
- Documentation of TheHive☆397Updated last year
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,200Updated last year
- Indicators of Compromises (IOC) of our various investigations☆1,766Updated last week
- Mapping the MITRE ATT&CK Matrix with Osquery☆793Updated last year
- A repository for using osquery for incident detection and response☆847Updated 2 years ago
- Malcom - Malware Communications Analyzer☆1,161Updated 7 years ago
- A collection of sources of indicators of compromise.☆855Updated 7 months ago