iknowjason / GHOSTSPlaygroundLinks
A small security playground implementation of GHOSTS User Simulation framework with an Active Directory deployment and Elastic.
☆18Updated last year
Alternatives and similar repositories for GHOSTSPlayground
Users that are interested in GHOSTSPlayground are comparing it to the libraries listed below
Sorting:
- Mapping of open-source detection rules and atomic tests.☆178Updated 9 months ago
- When good OAuth apps go rogue. Documents observed OAuth application tradecraft☆79Updated last month
- An automated Breach and Attack Simulation lab with terraform. Built for IaC stability, consistency, and speed.☆198Updated last year
- Configuration Management (CM) Security Playground. A small enterprise security lab to practice automation + CM tooling like Ansible, Che…☆18Updated 3 months ago
- An index of publicly available and open-source threat detection rulesets.☆128Updated 6 months ago
- Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools…☆122Updated last month
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆102Updated last year
- ☆116Updated 5 months ago
- VirtualGHOST Detection Tool☆95Updated last year
- ☆74Updated this week
- A comprehensive GenAI protection system designed to protect against malicious prompts, injection attacks, and harmful content. System inc…☆92Updated 2 weeks ago
- AHHHZURE is an automated deployment script that creates a vulnerable Azure cloud lab for offensive security practitioners and enthusiasts…☆106Updated last year
- BlackCat is a PowerShell module designed to validate the security of Microsoft Azure. It provides a set of functions to identify potentia…☆152Updated last week
- Powershell Based tool for gathering information related to O365 intrusions and potential Breaches☆16Updated 10 months ago
- Azure Activity Log Axe is a continually developing tool that simplifies the transactional log format provided by Microsoft. The tool leve…☆31Updated last year
- NOVA: The Prompt Pattern Matching☆25Updated last week
- Automating Security Detection Engineering, published by Packt☆63Updated last year
- ForgeArmory provides TTPs that can be used with the TTPForge (https://github.com/facebookincubator/ttpforge).☆117Updated last year
- Automation tool for Windows Deception Host Burn-In☆86Updated 10 months ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆125Updated last year
- A Kubernetes Forensic Collection Framework for Azure Kubernetes Service☆37Updated 2 months ago
- AI-powered cybersecurity attack flow visualization tool using MITRE ATT&CK☆125Updated last month
- Rules shared by the community from 100 Days of YARA 2025☆36Updated 9 months ago
- Jupyter Univere is a search engine for all infosec jupyter notebooks☆32Updated 7 months ago
- A collection of various SIEM rules relating to malware family groups.☆70Updated last year
- A starter pack of resources to help you get started in Detection Engineering.☆174Updated 2 months ago
- A tool that allows you to document and assess any security automation in your SOC☆47Updated last year
- 🧰 ESXi Testing Tookit is a command-line utility designed to help security teams test ESXi detections.☆79Updated 6 months ago
- A library of Incident Response notebooks using Jupyter. We will show how you can leverage pre-defined notebook files to guide your incide…☆150Updated last year
- This project aims to bridge the gap between Microsoft Attack Surface Reduction (ASR) rules and MITRE ATT&CK by mapping ASR rules to their…☆28Updated 11 months ago