ebarti / cortex-xdr-clientLinks
A python-based API client for Cortex XDR API.
☆26Updated 4 months ago
Alternatives and similar repositories for cortex-xdr-client
Users that are interested in cortex-xdr-client are comparing it to the libraries listed below
Sorting:
- ☆553Updated 2 years ago
- Protect your Domain Controllers by auditing and restricting LDAP requests☆177Updated 8 months ago
- Threat Hunting queries for various attacks☆244Updated 2 weeks ago
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆213Updated last week
- ☆160Updated 2 years ago
- Evtx to Splunk ingestor☆15Updated 3 years ago
- The principal objective of this project is to develop a knowledge base of the tactics, techniques, and procedures (TTPs) used by insiders…☆147Updated 6 months ago
- Anything Sysmon related from the MSTIC R&D team☆156Updated last year
- Project for identifying executables that have command-line options that can be obfuscated, possibly bypassing detection rules.☆182Updated last year
- PowerShell script designed to help Incident Responders collect forensic evidence from local and remote Windows devices.☆109Updated last year
- OSSEM Detection Model☆182Updated 3 years ago
- The Sigma command line interface based on pySigma☆174Updated 3 weeks ago
- Test the accuracy of Endpoint Detection and Response (EDR) software with simple script which executes various ATT&CK/LOLBAS/Invoke-Cradle…☆312Updated 4 years ago
- AttackMate is an attack orchestration tool that executes full attack-chains based on playbooks.☆43Updated last week
- Sublime rules for email attack detection, prevention, and threat hunting.☆342Updated last week
- Automatically created C2 Feeds☆660Updated last week
- Provides an advanced input.conf file for Windows and 3rd party related software with more than 70 different event log mapped to the MITRE…☆94Updated 7 months ago
- Public Repo for Atomic Test Harness☆283Updated 9 months ago
- Audit program for AzureAD☆150Updated 2 years ago
- yara detection rules for hunting with the threathunting-keywords project☆157Updated 8 months ago
- Ransomware simulator written in Golang☆470Updated 3 years ago
- A repository that maps commonly used attacks using MSRPC protocols to ATT&CK☆342Updated 2 years ago
- Top ATT&CK Techniques helps defenders approach the breadth and complexity of MITRE ATT&CK® with a prioritized top 10 list of techniques t…☆121Updated 8 months ago
- Open Dataset of Cobalt Strike Beacon metadata (2018-2022)☆133Updated 3 years ago
- ☆14Updated 3 years ago
- MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).☆412Updated 2 weeks ago
- MAD ATT&CK Defender: ATT&CK Adversary Emulation Repository☆127Updated 2 years ago
- 🐍 High-performance, multi-threaded YARA & IOC scanner☆236Updated last week
- Hunt Smarter, Hunt Harder☆115Updated 2 weeks ago
- Python library for dissecting and parsing Cobalt Strike related data such as Beacon payloads and Malleable C2 Profiles☆185Updated 7 months ago