feedb / MPSiem_addons
реп полезностей для PT MaxPatrol SIEM
☆24Updated last year
Alternatives and similar repositories for MPSiem_addons:
Users that are interested in MPSiem_addons are comparing it to the libraries listed below
- Enterprise Response Model & Common Knowledge☆36Updated 8 months ago
- Chrome extension for SOC automations☆34Updated 3 months ago
- MP SIEM SDK☆25Updated 2 weeks ago
- Открытый репозиторий с правилами на языке eXtraction and Processing (XP)☆20Updated last month
- ☆64Updated 3 years ago
- Some Threat Hunting queries useful for blue teamers☆124Updated 2 years ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆140Updated this week
- Rules generated from our investigations.☆193Updated 3 months ago
- Extensible framework for analyzing publicly available information about vulnerabilities☆109Updated 2 months ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆161Updated last year
- MISP Playbooks☆184Updated last week
- CarbonBlack EDR detection rules and response actions☆71Updated 5 months ago
- A community-driven repository for threat hunting ideas, methodologies, and research that serves as a central gathering place for hunters …☆182Updated 2 weeks ago
- Blue Team detection lab created with Terraform and Ansible in Azure.☆145Updated 3 months ago
- ☆117Updated 10 months ago
- Harness the power of Splunk for your investigations☆88Updated 2 months ago
- An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.☆277Updated 5 months ago
- Purpleteam scripts simulation & Detection - trigger events for SOC detections☆177Updated 2 months ago
- Scripts for rapid Windows endpoint "tactical triage" and investigations with Velociraptor and KAPE☆110Updated last month
- A collection of CVEs weaponized by ransomware operators☆104Updated last month
- Tools for simulating threats☆181Updated last year
- An analytical challenge created to test junior analysts looking to try performing proactive and reactive cyber threat intelligence.☆193Updated 7 months ago
- MAD ATT&CK Defender: ATT&CK Adversary Emulation Repository☆111Updated last year
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆131Updated 11 months ago
- Resources To Learn And Understand SIGMA Rules☆174Updated 2 years ago
- A repository with data about APTs☆11Updated 2 years ago
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆151Updated 9 months ago
- Rapidly Search and Hunt through Linux Forensics Artifacts☆189Updated last year
- Repository resource for threat hunter☆158Updated 6 years ago
- Windows Malware Investigation Scripts & Docs☆74Updated 3 months ago