j91321 / MISP2memcached
Load MISP events into memcached for log enrichment using logstash
☆12Updated 4 years ago
Alternatives and similar repositories for MISP2memcached:
Users that are interested in MISP2memcached are comparing it to the libraries listed below
- Threat intelligence and threat detection indicators (IOC, IOA)☆53Updated 4 years ago
- YAFRA is a semi-automated framework for analyzing and representing reports about IT Security incidents.☆27Updated 3 years ago
- Links to malware-related YARA rules☆14Updated 2 years ago
- A library for fast parse & import of Windows Eventlogs into Elasticsearch.☆83Updated 6 months ago
- Dashboards for conducting forensic investigation using windows events in Kibana☆17Updated 5 years ago
- An Inofficial Sysmon Version History (Change Log)☆32Updated 4 years ago
- A collection of useful PowerShell tools to collect, organize, and visualize Sysmon event data☆40Updated 4 years ago
- Cybersecurity Incidents Mind Maps☆33Updated 3 years ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 3 years ago
- Extract BITS jobs from QMGR queue and store them as CSV records☆74Updated 6 months ago
- Splunk Technology-AddOn for Aurora Sigma-Based EDR Agent. It helps parse and configure the necessary inputs to neatly consume Aurora EDR …☆13Updated 2 years ago
- evtx2json extracts events of interest from event logs, dedups them, and exports them to json.☆41Updated 3 years ago
- This repository was created to aid in the deployment/maintenance of the Sysmon service on a large number of computers.☆82Updated last year
- ☆44Updated last year
- PowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.☆38Updated 2 years ago
- Repository with selected IOCs and YARA rules for threat hunting.☆35Updated 3 weeks ago
- Creating a Feed of MISP Events from ThreatFox (by abuse.ch)☆19Updated 3 years ago
- A Splunk Technology Add-on to forward filtered ETW events.☆30Updated 4 years ago
- A list of IOCs applicable to PoshC2☆24Updated 4 years ago
- A repository of Sysmon For Linux configuration modules☆15Updated 3 years ago
- Automatic detection engineering technical state compliance☆53Updated 6 months ago
- Random hunting ordiented yara rules☆95Updated last year
- Visual Studio Code Microsoft Sysinternal Sysmon configuration file extension.☆51Updated last year
- THOR MITRE ATT&CK Framework Coverage☆24Updated 4 years ago
- Yara Based Detection Engine for web browsers☆47Updated 3 years ago
- Detect possible sysmon logging bypasses given a specific configuration☆107Updated 6 years ago
- YETI (Your Everyday Threat Intelligence) Integration to Elastic Stack☆16Updated 4 years ago
- A set of tools for collecting forensic information☆26Updated 4 years ago
- CyCAT.org API back-end server including crawlers☆30Updated last year
- A list of Mitre Caldera compatible emulation-plans☆14Updated 3 years ago