ericiussecurity / vCISO-Tools
Some of the tools we use during vCISO engagements
☆15Updated 2 years ago
Alternatives and similar repositories for vCISO-Tools:
Users that are interested in vCISO-Tools are comparing it to the libraries listed below
- Any good cybersecurity program needs the policies and plans to get it started and give it direction. This is our take on a starting point☆18Updated 2 years ago
- MISP to Sentinel integration☆63Updated 3 months ago
- Security Scripts and Sources for daily usage.☆55Updated last week
- This is the One Stop place where you can find almost all of your Tools of Requirements in DFIR☆77Updated 3 years ago
- ☆42Updated 2 years ago
- A collection of various SIEM rules relating to malware family groups.☆65Updated 9 months ago
- A browser extension for threat hunting that provides one UI for different SIEMs/EDRs and simplifies investigation☆77Updated 10 months ago
- InsightVM helpful SQL queries☆64Updated last month
- Content Repo for Demystifying KQL Tutorial Series☆68Updated 6 months ago
- Conference presentations☆47Updated last year
- Repository of attack and defensive information for Business Email Compromise investigations☆249Updated last month
- Microsoft Sentinel, Defender for Endpoint - KQL Detection Packs☆52Updated last year
- Cybether - A modern, open-source Cybersecurity Governance, Risk, and Compliance (GRC) dashboard☆75Updated 2 weeks ago
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆231Updated this week
- Cyber Defence related kusto queries for use in Azure Sentinel and Defender advanced hunting☆63Updated 2 weeks ago
- ☆42Updated 11 months ago
- A guide to using Azure Data Explorer and KQL for DFIR☆102Updated 2 years ago
- ☆56Updated 3 years ago
- Scripts for rapid Windows endpoint "tactical triage" and investigations with Velociraptor and KAPE☆110Updated last week
- Some important DFIR Resources☆83Updated 2 years ago
- Dashboard for conducting Backdoors and Breaches sessions over Zoom.☆114Updated 5 months ago
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆110Updated 4 months ago
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆118Updated last year
- A list of Splunk queries that I've collected and used over time.☆76Updated 4 years ago
- Tools for simulating threats☆183Updated last year
- Cybersecurity Incident Response Plan☆89Updated 4 years ago
- Microsoft 365 Advanced Hunting Queries with hotlinks that plug the query right into your tenant.☆121Updated 7 months ago
- Repository of public reference frameworks for the DFIR community.☆115Updated last year
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆130Updated 2 years ago
- Repository with Sentinel Analytics Rules, Hunting Queries and helpful external data sources.☆105Updated last week