cisagov / kev-dataLinks
Mirror of cisa.gov/kev data files
☆51Updated last week
Alternatives and similar repositories for kev-data
Users that are interested in kev-data are comparing it to the libraries listed below
Sorting:
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆207Updated this week
- HASH (HTTP Agnostic Software Honeypot)☆138Updated last year
- When good OAuth apps go rogue. Documents observed OAuth application tradecraft☆77Updated last month
- ☆138Updated last week
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆99Updated last year
- VulnCheck's official command line tool☆135Updated last week
- Simple Workspace Attack Tool (SWAT) is a tool for simulating malicious behavior against Google Workspace in reference to the MITRE ATT&CK…☆165Updated 9 months ago
- Anvilogic Forge☆104Updated last week
- An index of publicly available and open-source threat detection rulesets.☆118Updated 2 months ago
- A Risk-Based Prioritization Taxonomy for prioritizing CVEs (Common Vulnerabilities and Exposures).☆78Updated last year
- An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and secur…☆163Updated last month
- NOVA: The Prompt Pattern Matching☆128Updated 2 months ago
- Stakeholder-Specific Vulnerability Categorization☆153Updated this week
- ☆44Updated 4 months ago
- ☆42Updated last month
- ☆185Updated 2 months ago
- ☆146Updated last month
- A tool that allows you to document and assess any security automation in your SOC☆46Updated 8 months ago
- boostsecurityio/lotp☆128Updated 3 months ago
- Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.☆135Updated last week
- List of past and future infosec related events.☆157Updated this week
- pocket guide for core detection engineering concepts☆29Updated 2 years ago
- A cheatsheet containing AWS CloudTrail events that can be used for Incident Response purposes or Detection Engineering.☆75Updated last year
- Roota is a public-domain language of threat detection and response that combines native queries from a SIEM, EDR, XDR, or Data Lake with …☆128Updated 11 months ago
- SOARCA - The Open Source CACAO-based Security Orchestrator!☆76Updated 2 weeks ago
- Independently deploy customized honeyservices in AWS to trigger alerts on unauthorized access. It utilizes a dedicated CloudTrail for pre…☆51Updated 7 months ago
- Leveraging MISP indicators via a pDNS-based infrastructure as a poor man’s SOC.☆51Updated 6 months ago
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆142Updated 6 months ago
- A security analysis tool that identifies DNS queries made by browser extensions, empowering security teams to detect and investigate susp…☆170Updated 5 months ago
- IMDSPOOF is a cyber deception tool that spoofs the AWS IMDS service to return HoneyTokens that can be alerted on.☆104Updated last year