cookpad / aws-falcon-data-forwarder
CrowdStrike Falcon log forwarder from falcon S3 bucket to your S3 bucket
☆11Updated 3 years ago
Alternatives and similar repositories for aws-falcon-data-forwarder:
Users that are interested in aws-falcon-data-forwarder are comparing it to the libraries listed below
- A POC to implement Detection-as-Code with Terraform and Sumo Logic.☆27Updated last year
- Osquery Mangement Server☆113Updated 4 years ago
- ☆65Updated 10 months ago
- Automated testing, generation & manipulation of #osquery packs☆72Updated 5 months ago
- pocket guide for core detection engineering concepts☆28Updated last year
- A tool that allows you to document and assess any security automation in your SOC☆46Updated 5 months ago
- Falcon Data Replicator☆31Updated 3 months ago
- ☆33Updated 6 years ago
- ☆44Updated 10 months ago
- ALFA stands for Automated Audit Log Forensic Analysis for Google Workspace. You can use this tool to acquire all Google Workspace audit l…☆161Updated last month
- ☆18Updated 3 years ago
- ☆39Updated last month
- ☆93Updated 2 years ago
- ☆48Updated 9 years ago
- Simple Docker-based quickstart for osquery, Fleet, and ELK stack☆63Updated last year
- Remote Memory Acquisition Tool☆245Updated 4 years ago
- BulkStrike enables the usage of CrowdStrike Real Time Response (RTR) to bulk execute commands on multiple machines.☆42Updated 2 years ago
- Recon Hunt Queries☆76Updated 3 years ago
- Scripts from my book OS X Incident Response Scripting and Analysis -> https://www.amazon.com/dp/012804456X/ref=cm_sw_r_tw_dp_U_x_fQeLAb68…☆49Updated 8 years ago
- This is a python tool aiming to make using TheHive webhooks easier.☆27Updated 4 years ago
- misp-cloud - Cloud-ready images of MISP☆72Updated 2 years ago
- Unleash the power of the Falcon Platform at the CLI☆116Updated this week
- A Splunk app to use MISP in background☆110Updated 3 weeks ago
- OS X Strata builds upon Yelps OSXCollector, providing a user interface to analyze data collected from a potentially compromised system.☆14Updated 5 years ago
- Dorothy is a tool to test security monitoring and detection for Okta environments☆178Updated 7 months ago
- scripts to configure the Splunk Universal Forwarder in a locked down state☆40Updated 6 years ago
- ☆117Updated last year
- A MITRE ATT&CK Navigator export for AWS GuardDuty Findings☆137Updated 3 years ago
- Analyze binaries collected in VMware Carbon Black EDR against Yara rules.☆37Updated 2 years ago
- ☆26Updated 3 years ago