dcarlin / Blue-Team-Tools
This contains a list of Blue Team Tools that I use daily, and have stored here for reference.
☆33Updated 7 years ago
Alternatives and similar repositories for Blue-Team-Tools:
Users that are interested in Blue-Team-Tools are comparing it to the libraries listed below
- A curated list of FOSS software appliances for building a SOC☆18Updated 4 years ago
- BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.☆32Updated 5 years ago
- Reference sheet for Threat Hunting Professional Course☆25Updated 6 years ago
- Resources from the Security Presentation☆11Updated 5 months ago
- ☆27Updated 3 years ago
- ☆65Updated 3 years ago
- Threat Hunt Investigation Methodology and Procedure☆15Updated 2 years ago
- Supporting materials for my "Intelligence-Led Adversarial Threat Modelling with VECTR" workshop☆67Updated 2 weeks ago
- This repo is where I store my Threat Hunting ideas/content☆87Updated last year
- Simple Script to Help You Find All Files Has Been Modified, Accessed, and Created In A Range Time.☆27Updated 2 years ago
- A MITRE ATT&CK Lookup Tool☆45Updated 11 months ago
- ☆63Updated 3 years ago
- Random notes collected on the intertubes relating to DFIR☆32Updated last year
- A collection of Sigma rules organized by MITRE ATT&CK technique☆17Updated 3 years ago
- BlueBox Malware analysis Box and Cyber threat intelligence.☆40Updated 2 years ago
- Various commands, tools, techniques that you can use to examine live Windows systems for signs of Compromise or for Threat Hunting.Can al…☆11Updated 2 years ago
- Carbon Black Response IR tool☆53Updated 4 years ago
- A collection of open source threat detection rules created by Cyber Castle's team.☆14Updated 2 years ago
- Cheat sheets for threat hunting, detection and other stuff.☆33Updated 2 years ago
- 🛡️ A curated collection of awesome resources, tools, and other shiny things for cybersecurity blue teams.☆12Updated 5 years ago
- Quick SOC L1 ticket structure☆35Updated 5 years ago
- A python script to turn Ubuntu Desktop in a one stop security platform. The InfoSec Fortress installs the packages,tools, and resources t…☆54Updated 3 years ago
- Sharing Threat Hunting runbooks☆25Updated 5 years ago
- Threat Hunter's Knowledge Base☆22Updated 3 years ago
- Repo containing my personal walkthroughs of PMAT Labs i.e. PMAT Malware Samples.☆43Updated 3 years ago
- Repository for SPEED SIEM Use Case Framework☆53Updated 4 years ago
- Cont3xt intends to centralize and simplify a structured approach to gathering contextual intelligence in support of technical investigati…☆37Updated last year
- ☆20Updated last year
- Repo of python/bash scripts for identifying IoC's in threat feed and other online tools☆26Updated 4 years ago
- Repository of resources for configuring a Red Team SIEM using Elastic☆100Updated 6 years ago