elastic / endpointLinks
☆41Updated 7 months ago
Alternatives and similar repositories for endpoint
Users that are interested in endpoint are comparing it to the libraries listed below
Sorting:
- OSSEM Data Dictionaries☆65Updated 9 months ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆65Updated 3 years ago
- Anything Sysmon related from the MSTIC R&D team☆155Updated last year
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆67Updated last year
- ☆44Updated 4 months ago
- Slides of my public talks☆56Updated last year
- My conference presentations☆87Updated last week
- A home for detection content developed by the delivr.to team☆73Updated 3 months ago
- A CALDERA plugin☆79Updated last month
- Rapid7 Labs operates as the division of Rapid7 focused on threat research. It is renowned for providing comprehensive threat intelligence…☆73Updated 5 months ago
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆126Updated 7 months ago
- Elastic Security Labs releases☆81Updated last month
- Memory Forensic System on Cloud☆92Updated last year
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆79Updated 5 months ago
- Open Threat Hunting Framework☆121Updated 2 years ago
- A CALDERA plugin☆26Updated last week
- Full of public notes and Utilities☆129Updated 9 months ago
- Forensic Artifact Collection Tool Matrix☆91Updated last year
- Fast IOC and YARA Scanner☆84Updated 5 years ago
- ☆75Updated last month
- Active Directory Purple Team Playbook☆113Updated 2 years ago
- Useful access control entries (ACE) on system access control list (SACL) of securable objects to find potential adversarial activity☆94Updated 3 years ago
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆68Updated last year
- pySigma Elasticsearch backend☆54Updated last month
- The Github project for The Defender's Guide by Luke Paine and Jonathan Johnson☆159Updated 2 years ago
- LOLESXi is a curated compilation of binaries/scripts available in VMware ESXi that are were used to by adversaries in their intrusions. T…☆133Updated last month
- Open IOC sharing platform☆61Updated last year
- IOCs published by Black Lotus Labs☆124Updated 3 weeks ago
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆208Updated 3 years ago
- ☆62Updated 3 years ago