honeyswarm / honeyswarm
HoneyPot Orchestration
☆10Updated last year
Related projects ⓘ
Alternatives and complementary repositories for honeyswarm
- Hunt malware with Volatility☆47Updated 6 months ago
- labs_modern_malware_c2 Originally supporting Defcon workshop, will morph into Attack Defend for C2.☆18Updated 2 years ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 2 years ago
- Supporting materials for my "Intelligence-Led Adversarial Threat Modelling with VECTR" workshop☆56Updated last week
- Threat Box Assessment Tool☆19Updated 3 years ago
- Because phishtank was taken.. explore phishing kits in a contained environment!☆43Updated 2 years ago
- BlueSploit is a DFIR framework with the main purpose being to quickly capture artifacts for later review.☆32Updated 4 years ago
- Python library for threat intelligence☆80Updated 4 months ago
- Random notes collected on the intertubes relating to DFIR☆32Updated last year
- ☆76Updated 6 years ago
- Machine Interrogation To Identify Gaps & Techniques for Execution☆32Updated 2 years ago
- A repo to document API functions mapped to security events across diverse platforms☆74Updated 5 years ago
- Random hunting ordiented yara rules☆95Updated last year
- Repository with Sample threat hunting notebooks on Security Event Log Data Sources☆58Updated last year
- This repository aims to collect and document indicators from the different C2's listed in the C2-Matrix☆72Updated 2 years ago
- Malware similarity platform with modularity in mind.☆76Updated 3 years ago
- Projects for AWS ThreatHunting☆21Updated 3 years ago
- Compilation of resources to help with Adversary Simulation automation harness☆100Updated 4 years ago
- ☆77Updated 5 years ago
- Repository for SPEED SIEM Use Case Framework☆52Updated 4 years ago
- Three datasets to practice Threat Hunting against.☆41Updated 10 months ago
- Scripts and tools accompanying HP Threat Research blog posts and reports.☆49Updated 7 months ago
- Recon Hunt Queries☆75Updated 3 years ago
- A script to assist in processing forensic RAM captures for malware triage☆27Updated 3 years ago
- YARA rule analyzer to improve rule quality and performance☆93Updated 11 months ago
- The project was moved here https://github.com/atomic-threat-coverage/atomic-threat-coverage☆23Updated 5 years ago
- This repository contains files from AppGate / Immunity Malware Analysis Team.☆21Updated 3 years ago
- Lokix Platform is a free open-source solution to help blue teams and threat hunters use Loki Scanner to sweep enterprise networks☆25Updated 4 years ago
- Automated detection rule analysis utility☆29Updated 2 years ago
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆65Updated 8 months ago