hslatman / awesome-incident-responseLinks
A curated list of tools for incident response
☆19Updated 6 years ago
Alternatives and similar repositories for awesome-incident-response
Users that are interested in awesome-incident-response are comparing it to the libraries listed below
Sorting:
- A collection of awesome software, libraries, documents, books, resources and cools stuffs about security.☆24Updated 8 years ago
- ☆30Updated 6 years ago
- A collection of tools developed by other researchers in the Computer Science area to process network traces. All the right reserved for t…☆14Updated 9 years ago
- Indices for courses in SANS' Network Security Operations curriculum☆16Updated 9 years ago
- ☆13Updated 6 years ago
- Knowledge base of analytics designed to cover threats based on MITRE's ATT&CK.☆23Updated 6 years ago
- An informational repo about hunting for adversaries in your IT environment.☆14Updated 8 years ago
- FireEye iSIGHT Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform☆16Updated 7 years ago
- Synopsis is a tool to aid analysts reviewing browser history files by providing a high-level “synopsis” of key information.☆21Updated 7 years ago
- Integrating Sysinternals Autoruns’ logs into Security Onion☆31Updated last year
- Collection of best practices to add OSINT into MISP and/or MISP communities☆66Updated 2 years ago
- A collection of typical false positive indicators☆55Updated 4 years ago
- A curated list of awesome YARA rules, tools, and people.☆33Updated 2 years ago
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆14Updated 3 years ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Updated 7 years ago
- Expert Investigation Guides☆51Updated 4 years ago
- A few quick recipes for those that do not have much time during the day☆22Updated last year
- automate your MISP installs☆68Updated 5 years ago
- Deploy MISP Project software with Vagrant.☆45Updated 5 years ago
- A few scripts I put together for testing purposes and to automate a few capabilities while doing IR. These scripts are also part of my bl…☆55Updated 7 years ago
- Home to the ActorTrackr source code☆30Updated 8 years ago
- This package allows for creating alerts in The Hive from emails retrieved from a Microsoft Exchange mailbox.☆12Updated 8 years ago
- This repository is a curated list of pro bono incident response entities.☆21Updated 2 years ago
- An analytical framework for network traffic and behavioral analytics☆22Updated 2 years ago
- Presentation Slides and Video links☆32Updated 3 years ago
- Use DNS to hunt for threats including DGAs☆15Updated 9 years ago
- pollen - A command-line tool for interacting with TheHive☆36Updated 6 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 5 years ago
- Converting data from services like Censys and Shodan to a common data model☆50Updated 4 months ago
- Various tools and scripts☆43Updated 2 years ago