cookpad / deepalertLinks
Serverless SOAR (Security Orchestration, Automation and Response) framework for automatic inspection and evaluation of security alert
☆51Updated 2 years ago
Alternatives and similar repositories for deepalert
Users that are interested in deepalert are comparing it to the libraries listed below
Sorting:
- Hands-on Exercises for "Dangerous attack paths: Modern Development Environment Security - Devices and CI/CD pipelines"☆45Updated 3 years ago
- Build a local copy of Known Exploited Vulnerabilities Catalog by CISA. Server mode for easy querying.☆23Updated 3 weeks ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆74Updated 3 years ago
- Simple SOAR (Security Orchestration, Automation and Response) framework integrated with OPA/Rego☆24Updated 6 months ago
- A Cloud Security Posture Manager or CSPM with a focus on security analysis for the modern cloud stack and a focus on the emerging threat …☆195Updated last year
- IAM-Deescalate helps mitigate privilege escalation risk in AWS identity and access management (IAM)☆98Updated 3 years ago
- OpenCSPM Community Controls☆14Updated 4 years ago
- ☆52Updated 3 weeks ago
- Core A2P2V functionality (command line based)☆68Updated last year
- An implementation of infrastructure-as-code scanning using dynamic tooling.☆56Updated 3 years ago
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆67Updated last year
- Kenna Security API and Scripting Toolkit☆34Updated last week
- Threatest is a CLI and Go framework for end-to-end testing threat detection rules.☆337Updated 8 months ago
- Simulates a compromise in a cloud and container environment☆33Updated last year
- GCP cloud security CTF☆47Updated 6 months ago
- Fun tools around the EBS Direct API☆19Updated 4 years ago
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆101Updated last year
- AWSATT&CK adds MITRE ATT&CK context and additional logging capabilities to Rhino Security Labs's open-source AWS exploitation framework, …☆45Updated 4 years ago
- Utility for downloading and mounting EBS snapshots using the EBS Direct API's☆91Updated 9 months ago
- IAMFinder enumerates and finds users and IAM roles in a target AWS account.☆111Updated 5 years ago
- R-CSIRT Linux Triage tool☆39Updated 7 years ago
- Memory Forensic System on Cloud☆92Updated 2 years ago
- RustyBlue is a rust implementation of DeepblueCLI, a forensics log analyzer for finding evidence of compromise from windows event logs.☆72Updated 3 years ago
- This repository contains the research and components of our research into using Sigma for AWS Incident Response.☆31Updated 2 years ago
- ☆65Updated last year
- ☆169Updated 3 months ago
- Lightspin AWS IAM Vulnerability Scanner☆94Updated 4 years ago
- CDIR Analyzer - parsers for data collected by CDIR Collector☆17Updated last month
- ☆31Updated this week
- ## Auto-archived due to inactivity. ## Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Securit…☆37Updated last year