elastic / endpoint-packageLinks
Repo for developing the endpoint package
☆28Updated this week
Alternatives and similar repositories for endpoint-package
Users that are interested in endpoint-package are comparing it to the libraries listed below
Sorting:
- Elastic Security Documentation☆92Updated this week
- Elastic Observability Documentation☆39Updated 2 weeks ago
- ☆41Updated 6 months ago
- Elastic Agent - single, unified way to add monitoring for logs, metrics, and other types of data to a host.☆209Updated this week
- elastic-package - Command line tool for developing Elastic Integrations☆65Updated last week
- ☆309Updated this week
- Package storage for packages served through the package registry service☆10Updated 2 years ago
- EPR package specifications☆19Updated this week
- Elastic Package Registry (EPR)☆49Updated last week
- A Golang CLI for the MITRE ATT&CK Framework☆13Updated 6 months ago
- Kubernetes offensive framework built in eBPF☆39Updated 2 years ago
- Elastic Security Labs releases☆81Updated last week
- The Notifications plugin provides a central location for all of your notifications from OpenSearch plugins. You can use either OpenSearch…☆13Updated 2 weeks ago
- Command line tool used for generating events corpus dynamically given a specific integration☆23Updated 8 months ago
- A CALDERA plugin☆25Updated 3 weeks ago
- Protect your Domain Controllers by auditing and restricting LDAP requests☆176Updated 5 months ago
- C++ WinRM API via Reflective DLL☆146Updated 4 years ago
- Windows eventlog formatting, live fetching and querying utility in C☆20Updated 5 years ago
- Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules☆130Updated this week
- Yapscan is a YAra based Process SCANner, aimed at giving more control about what to scan and giving detailed reports on matches.☆62Updated 2 years ago
- ☆124Updated 3 years ago
- Active Directory Password Spray Testing Utility in Go☆17Updated last year
- Malware sample exchange system and API intended for Anti-Virus companies and researchers.☆16Updated last year
- WMkick is a TCP protocol redirector/MITM tool that targets NTLM authentication message flows in WMI (135/tcp) and Powershell-Remoting/WSM…☆42Updated 4 years ago
- C# Utilities for Windows Notification Facility☆158Updated 6 months ago
- The Fleet server allows managing a fleet of Elastic Agents.☆102Updated this week
- Vulnerable EDR☆22Updated 11 months ago
- Combining Sealighter with unpatched exploits to run the Threat-Intelligence ETW Provider☆190Updated 2 years ago
- Detect strange memory regions and DLLs☆182Updated 3 years ago
- A simple program to hook the current process to identify the manual syscall executions on windows☆262Updated 2 years ago