eddiechu / Encrypt-Delete-Test
Really can protect from ransomware encryption?
☆42Updated 8 months ago
Alternatives and similar repositories for Encrypt-Delete-Test:
Users that are interested in Encrypt-Delete-Test are comparing it to the libraries listed below
- ☆156Updated last year
- Automating EDR Testing with reference to MITRE ATTACK via Cobalt Strike [Purple Team].☆147Updated last year
- CarbonBlack EDR detection rules and response actions☆71Updated 4 months ago
- BlueBox Malware analysis Box and Cyber threat intelligence.☆39Updated 2 years ago
- This repo is where I store my Threat Hunting ideas/content☆86Updated last year
- This Repository gives the best and possible strategies against hunting the ransomware☆25Updated 2 years ago
- A collection of various SIEM rules relating to malware family groups.☆65Updated 7 months ago
- ☆45Updated this week
- Some Threat Hunting queries useful for blue teamers☆124Updated 2 years ago
- Cloud-based AD lab created to help you test real attacks in a controlled environment and create detection rules for them☆26Updated 11 months ago
- Lupo - Malware IOC Extractor. Debugging module for Malware Analysis Automation☆104Updated 2 years ago
- This project aims to bridge the gap between Microsoft Attack Surface Reduction (ASR) rules and MITRE ATT&CK by mapping ASR rules to their…☆24Updated 2 months ago
- ☆34Updated 11 months ago
- Default Detections for EDR☆96Updated 11 months ago
- A series of PowerShell scripts to automate collection of forensic artefacts in most Incident Response environments☆64Updated 3 years ago
- Repo containing various intel-based resources such as threat research, adversary emulation/simulation plan and so on☆81Updated 9 months ago
- Veil-PowerView is a powershell tool to gain network situational awareness on Windows domains.☆53Updated 9 years ago
- IOC Collection 2022☆56Updated last year
- Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.☆15Updated last year
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆50Updated last year
- This Repository consists all Public Cheatsheets created by BlackPerl DFIR Content Team☆17Updated 3 months ago
- A home for detection content developed by the delivr.to team☆64Updated last week
- Sigma detection rules for hunting with the threathunting-keywords project☆52Updated this week
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆59Updated 6 months ago
- ☆41Updated 2 years ago
- ☆28Updated 4 years ago
- Placeholder for my detection repo and misc detection engineering content☆43Updated last year
- Simple Script to Help You Find All Files Has Been Modified, Accessed, and Created In A Range Time.☆27Updated 2 years ago
- A running list of Windows sources and the related event ids.☆19Updated last year
- This Repository Talks about the Follina MSDT from Defender Perspective☆37Updated 2 years ago