pocket guide for core threat hunting concepts
☆23May 6, 2020Updated 6 years ago
Alternatives and similar repositories for threat-hunting-pocket-guide
Users that are interested in threat-hunting-pocket-guide are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A project in Golang that will create prefix-based magic MD5 hashes for type juggling.☆21Jul 29, 2018Updated 8 years ago
- Python script to automatically create sigma rules from The hive observables☆25Mar 17, 2019Updated 7 years ago
- ☆15Sep 24, 2024Updated last year
- Exploit Development and Reverse Engineering with GDB Made Easy☆18Jun 25, 2019Updated 7 years ago
- Appendix resources for Intrinsec's "Amélioration des capacités de détection" handbook.☆13Mar 26, 2018Updated 8 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Powershell collection designed to assist in Threat Hunting Windows systems.☆27Apr 13, 2018Updated 8 years ago
- A set of tools for collecting forensic information☆28Apr 4, 2020Updated 6 years ago
- A cyber threat intelligence server based on TAXII 2 and written in Golang☆32Sep 19, 2019Updated 6 years ago
- QEMU with rVMI extensions☆26Jul 25, 2017Updated 9 years ago
- ☆36Jan 22, 2025Updated last year
- a shared short domain for XSS and other hacks☆32Mar 3, 2022Updated 4 years ago
- Testing/collecting some container breakouts☆93Jul 22, 2019Updated 7 years ago
- Converts Sigma detection rules to a Splunk alert configuration.☆12Jul 1, 2021Updated 5 years ago
- ☆13Feb 6, 2018Updated 8 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- certstream + analytics☆11Jan 17, 2020Updated 6 years ago
- Scripts and rulesets for analysing the Winnti malware☆24Jul 24, 2019Updated 7 years ago
- Repository for my ATT&CK analysis research.☆70May 16, 2019Updated 7 years ago
- provides a Suricata Eve output for Kafka with Suricate Eve plugin☆15Nov 25, 2021Updated 4 years ago
- A tool for studying JavaScript malware.☆15Updated this week
- Personal compilation of APT malware from whitepaper releases, documents and own research☆261Feb 7, 2019Updated 7 years ago
- Threat Hunter's Knowledge Base☆23Dec 27, 2021Updated 4 years ago
- Various public documents, whitepapers and articles about APT campaigns☆56Apr 1, 2016Updated 10 years ago
- Creating a Feed of MISP Events from ThreatFox (by abuse.ch)☆18Jun 2, 2021Updated 5 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆11Apr 21, 2023Updated 3 years ago
- A collection of typical false positive indicators☆56Dec 5, 2020Updated 5 years ago
- Terraform modules for Sumo Logic resources☆17Aug 24, 2026Updated last week
- Validates yara rules and tries to repair the broken ones.☆42Sep 5, 2020Updated 5 years ago
- FireEye iSIGHT Alert Feeder for TheHive, an Open Source and Free Security Incident Response Platform☆16Oct 12, 2018Updated 7 years ago
- Collection of Jupyter Notebook for Threat Hunting and Blue Team Purposes☆22Jun 15, 2022Updated 4 years ago
- Expert Investigation Guides☆51Mar 18, 2021Updated 5 years ago
- Synthesising graphs and simulating things☆10Oct 25, 2022Updated 3 years ago
- YAFRA is a semi-automated framework for analyzing and representing reports about IT Security incidents.☆27Dec 14, 2021Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Graph Representation of MITRE ATT&CK's CTI data☆51Nov 14, 2019Updated 6 years ago
- A curated list of awesome YARA rules, tools, and people.☆33Oct 26, 2023Updated 2 years ago
- ☆351Mar 19, 2021Updated 5 years ago
- A utility to trawl phishing domains and attempt to identify phishing kits as well as other malicious activity☆37Jan 14, 2022Updated 4 years ago
- "A Practical Recipe for Hardware Implants" presentation materials.☆13Nov 10, 2020Updated 5 years ago
- Providing timelines based on OSINT Reports☆31Jun 21, 2023Updated 3 years ago
- Trace ScriptBlock execution for powershell v2☆40Jan 14, 2020Updated 6 years ago