cisagov / kev-dataLinks
Mirror of cisa.gov/kev data files
☆64Updated last week
Alternatives and similar repositories for kev-data
Users that are interested in kev-data are comparing it to the libraries listed below
Sorting:
- HASH (HTTP Agnostic Software Honeypot)☆141Updated last year
- ☆169Updated 3 months ago
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆101Updated last year
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆214Updated this week
- When good OAuth apps go rogue. Documents observed OAuth application tradecraft☆83Updated 3 weeks ago
- Anvilogic Forge☆113Updated 3 months ago
- VulnCheck's official command line tool☆143Updated 2 weeks ago
- boostsecurityio/lotp☆138Updated 2 months ago
- IMDSPOOF is a cyber deception tool that spoofs the AWS IMDS service to return HoneyTokens that can be alerted on.☆106Updated 2 years ago
- An index of publicly available and open-source threat detection rulesets.☆132Updated 8 months ago
- Open Threat Hunting Framework☆121Updated 2 years ago
- Suzaku (朱雀) is a sigma-based threat hunting and fast forensics timeline generator for cloud logs.☆163Updated last month
- This is a collection of threat detection rules / rules engines that I have come across.☆298Updated last year
- ☆193Updated 8 months ago
- ☆97Updated last month
- pocket guide for core detection engineering concepts☆31Updated 2 years ago
- A public collection of detections designed to detect threats associated with the Okta WIC Platform.☆10Updated this week
- ☆52Updated 3 weeks ago
- Whois for the Cloud: Recon tool for cloud provider attribution. Supports AWS, Azure, Google, Cloudflare, and Digital Ocean.☆184Updated 2 months ago
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆142Updated last year
- A tool that allows you to document and assess any security automation in your SOC☆48Updated last year
- Roota is a public-domain language of threat detection and response that combines native queries from a SIEM, EDR, XDR, or Data Lake with …☆132Updated last year
- The Event Maturity Matrix (EMM) is a comprehensive framework that provides clarity regarding the capabilities and nuances of SaaS audit l…☆30Updated 6 months ago
- Convert Sigma rules to SIEM queries, directly in your browser.☆107Updated 3 weeks ago
- A cheatsheet containing AWS CloudTrail events that can be used for Incident Response purposes or Detection Engineering.☆81Updated this week
- RansomWhen is a tool to enumerate identities that can lock S3 Buckets using KMS, resulting in ransomwares, as well as detect occurances o…☆60Updated 11 months ago
- A Risk-Based Prioritization Taxonomy for prioritizing CVEs (Common Vulnerabilities and Exposures).☆82Updated last year
- ☆101Updated 3 weeks ago
- Create honeypots for cloud environments☆108Updated 3 months ago
- ForgeArmory provides TTPs that can be used with the TTPForge (https://github.com/facebookincubator/ttpforge).☆119Updated 2 weeks ago