eddiechu / Terminal-SIEMLinks
Super light, super fast, unlimited search idea
☆25Updated 6 months ago
Alternatives and similar repositories for Terminal-SIEM
Users that are interested in Terminal-SIEM are comparing it to the libraries listed below
Sorting:
- A simple-to-use IR (incident response) case management tool for tracking and documenting investigations.☆437Updated 4 months ago
- A curated collection of DFIR skills and workflows for InfoSec practitioners.☆244Updated this week
- Convert a variety of log formats to CSV while enriching detected IPs with Geolocation, ASN, DNS, WhoIs, Shodan InternetDB and Threat Indi…☆110Updated this week
- MCP to help Defenders Detection Engineer Harder and Smarter☆231Updated last week
- Provides an advanced baseline to implement a secure Windows auditing strategy on Windows OS.☆60Updated 8 months ago
- Web based S1 query navigator for one-click threat hunting☆25Updated 5 years ago
- Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools…☆144Updated this week
- Have you ever wanted to search a link or IP address on multiple OSINT pages at once?☆59Updated 7 months ago
- An index of publicly available and open-source threat detection rulesets.☆131Updated 9 months ago
- Playbook-NG is a stateless web-based application used to match incident findings with countermeasures for adversary containment and evict…☆156Updated 2 months ago
- Parses USB connection artifacts from offline Registry hives☆106Updated 7 months ago
- Mapping of open-source detection rules and atomic tests.☆193Updated last year
- Integrate your Wazuh-Manager or Graylog with the SOCFortress Threat Intel Service☆32Updated last year
- ☆54Updated last year
- Repo to hold wazuh manager mcp server☆74Updated 4 months ago
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆162Updated 10 months ago
- Collection of Remote Management Monitoring tool artifacts, for assisting forensics and investigations☆103Updated 5 months ago
- Project based on RegRipper, to extract add'l value/pivot points from TLN events file☆89Updated last year
- Incident Response documents and tooling☆111Updated last month
- MISP to Sentinel integration☆79Updated 2 months ago
- Visualize Microsoft Defender XDR process trees and security events☆33Updated 5 months ago
- ☆105Updated 7 months ago
- Cyber threat intelligence tool suite.☆42Updated 10 months ago
- ☆76Updated 2 months ago
- The Eventlog Compendium is the go-to resource for understanding Windows Event Logs.☆51Updated 9 months ago
- LotL RMM☆289Updated last week
- Repository where I hold random detection and threat hunting queries that I come up with based on different sources of information (or eve…☆277Updated last month
- Security Scripts and Sources for daily usage.☆72Updated 2 weeks ago
- ☆74Updated last week
- Repository for sharing examples of our artifacts data and for use in new analyst recruitment.☆109Updated 9 months ago