elastic / endpoint-packageLinks
Repo for developing the endpoint package
☆27Updated this week
Alternatives and similar repositories for endpoint-package
Users that are interested in endpoint-package are comparing it to the libraries listed below
Sorting:
- Elastic Security Documentation☆87Updated this week
- ☆40Updated 5 months ago
- Elastic Agent - single, unified way to add monitoring for logs, metrics, and other types of data to a host.☆194Updated this week
- Kubernetes offensive framework built in eBPF☆38Updated 2 years ago
- ☆17Updated last year
- Leaky Vessels Dynamic Detector☆103Updated 4 months ago
- A CALDERA plugin☆25Updated 3 months ago
- Command line tool used for generating events corpus dynamically given a specific integration☆23Updated 6 months ago
- This repository contains generated contextual data utilized by pyattck.☆19Updated 5 months ago
- Konstellation is a configuration-driven CLI tool to enumerate cloud resources and store the data into Neo4j.☆28Updated last month
- Convert pcap files into richly-typed ZNG summary logs (Zeek, Suricata, and more)☆87Updated 4 months ago
- OSSEM Data Dictionaries☆62Updated 7 months ago
- Collection of YARA rules designed for usage through VirusTotal.com.☆76Updated last year
- LOKI2 - Simple IOC and YARA Scanner☆102Updated 2 months ago
- Elastic Security Labs releases☆80Updated last month
- Vovk is framework of tools that include a WinDbg extension that generates in-depth YARA rules for malware.☆23Updated last year
- A Golang CLI for the MITRE ATT&CK Framework☆13Updated 4 months ago
- Python client for Assemblyline 3 and 4 / Client python pour AssemblyLine 3 and 4☆23Updated 2 weeks ago
- Yapscan is a YAra based Process SCANner, aimed at giving more control about what to scan and giving detailed reports on matches.☆61Updated 2 years ago
- Cisco IOS XE implant scanning & detection (CVE-2023-20198, CVE-2023-20273)☆39Updated last year
- A CALDERA plugin☆69Updated last week
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆59Updated 3 years ago
- elastic-package - Command line tool for developing Elastic Integrations☆63Updated this week
- MCP Server for Cutter☆34Updated 3 weeks ago
- Suricata Verification Tests - Testing Suricata Output☆113Updated this week
- Serverless, real-time, ClamAV+Yara scanning for your S3 Buckets☆31Updated 2 months ago
- The project will serve as a central repository for VMware Threat Analysis Unit (TAU) to share threat intelligence with the security commu…☆17Updated 2 years ago
- Python library for dissecting and parsing Cobalt Strike related data such as Beacon payloads and Malleable C2 Profiles☆175Updated 2 months ago
- Convert Microsoft Defender Antivirus Signatures (VDM) into YARA rules☆119Updated this week
- Threat Mapping Catalogue☆17Updated 4 years ago