MISP to Microsoft Defender integration
☆18Jul 9, 2026Updated 2 weeks ago
Alternatives and similar repositories for misp2defender
Users that are interested in misp2defender are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- KQL for Azure Resource Manager and AppID search☆23Aug 15, 2024Updated last year
- Generates a detailed CSV file containing Sigma Rules statistics for each service or category, and each level, offering a holistic view of…☆10Dec 22, 2023Updated 2 years ago
- SOCAutomators Substack blog companion — threat research, DBIR analysis, and security operations content☆20Jun 3, 2026Updated last month
- Deep Packet Inspection • Traffic Forensics • Network Threat Detection☆55Feb 20, 2026Updated 5 months ago
- Rulezet is an open-source web platform for sharing, evaluating, improving, and managing cybersecurity detection rules (YARA, Sigma, Suric…☆55Updated this week
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Automate the conversion and deployment of Sigma Rules to Grafana Alerting via GitHub Actions☆18Updated this week
- Decloak Linux stealth rootkits hiding data with this simple memory mapped IO investigation tool.☆29Sep 29, 2025Updated 9 months ago
- Random Powershell scripts☆13Feb 13, 2024Updated 2 years ago
- Expose a lot of MDE telemetry that is not easily accessible in any searchable form☆120Aug 19, 2025Updated 11 months ago
- PowerShell-based Windows Server Security Audit Engine by Cyb3rint3l Labs. Measures alignment with the NIS2 directive and maps findings to…☆47Feb 1, 2026Updated 5 months ago
- Incident Response documents and tooling☆125Updated this week
- ☆22Jan 31, 2023Updated 3 years ago
- MDE Tester is designed to help testing various features in Microsoft Defender for Endpoint.☆195Feb 20, 2026Updated 5 months ago
- KustoHawk is a lightweight incident triage and response tool designed for effective incident response in Microsoft Defender XDR and Micro…☆157Apr 1, 2026Updated 3 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- MISP to Sentinel integration☆81Jul 4, 2026Updated 2 weeks ago
- MineMeld nodes for MISP☆19Jan 23, 2024Updated 2 years ago
- An informational repo about hunting for adversaries in your IT environment.☆14Apr 10, 2017Updated 9 years ago
- Community-driven PowerShell detection indicators☆39Jan 27, 2026Updated 5 months ago
- Playbooks designed for IBM SOAR developed by The IR Gurus. These playbooks can be used to demonstrate how to design playbooks, perform au…☆19May 1, 2024Updated 2 years ago
- Menu for Thor scanner lite☆20Oct 24, 2025Updated 9 months ago
- A collection of Cortex Analyzers and Responders for TheHive/Cortex☆13Jan 29, 2020Updated 6 years ago
- A web application for generating, parsing and validating, manipulating, visualizing and executing CACAO v2.0 playbooks.☆42Jun 6, 2026Updated last month
- shellDAVpass application is the Open-Source project, the main idea of which is to bypass the defender and AntiVirus detections to conduct…☆28Oct 3, 2025Updated 9 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆21Jul 9, 2026Updated 2 weeks ago
- This project contains a **test executable** specifically designed to trigger incidents in **Microsoft Defender for Endpoint (MDE)**. It…☆14Jul 20, 2025Updated last year
- A 30-day hands-on SOC Analyst project simulating real-world cyber attacks using ELK Stack, Mythic C2, osTicket & Elastic Defend. Covers t…☆45Jun 10, 2025Updated last year
- A Windows Event Log MCP☆49Aug 25, 2025Updated 10 months ago
- Technology and Security Fundamentals☆22Nov 5, 2025Updated 8 months ago
- Cyber Threat Intelligence☆82Dec 7, 2025Updated 7 months ago
- MAES: M365 Analyzer & Extractor Suite Po☆37May 4, 2026Updated 2 months ago
- Unofficial third-party scripts, playbooks, and content for IBM QRadar & QRadar Community Edition.☆87May 8, 2025Updated last year
- A script to create and assign SOP tasks into the cases☆20Aug 16, 2020Updated 5 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Outil de triage automatisé de différents types de collectes d'artefacts.☆18Dec 8, 2025Updated 7 months ago
- A preconfigured Velociraptor triage collector☆77Jun 29, 2026Updated 3 weeks ago
- Forensic tool for extracting and analyzing Google DriveFS cached files and metadata.☆23May 9, 2025Updated last year
- A script designed to test passwords against user accounts within an Active Directory environment, offering customizable Account Lockout T…☆17Jan 28, 2026Updated 5 months ago
- ☆12Oct 9, 2022Updated 3 years ago
- EC-Council's Certified Penetration Testing Professional (C|PENT) program teaches you how to perform an effective penetration testing in a…