TIBER-Cases is a project created to give cases of The Hive platform for Threat Intelligence Analysts mainly. All the cases are mapped to TIBER-EU processes.
☆27Jul 13, 2022Updated 4 years ago
Alternatives and similar repositories for TIBER-Cases
Users that are interested in TIBER-Cases are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Kibana app for RedELK☆17Mar 19, 2023Updated 3 years ago
- A threat sighting collects the behavior of a real threats and the observables used during its engagement.☆12Mar 29, 2022Updated 4 years ago
- Common Exercise Format - CEXF☆11Aug 15, 2024Updated 2 years ago
- Scripts to automate standing up apache2 with mod_rewrite in front of C2 servers.☆47Feb 17, 2021Updated 5 years ago
- A script to create and assign SOP tasks into the cases☆20Aug 16, 2020Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Helper script for BloodHound to automatically add relationships between multiple accounts owned by the same individual☆15Jul 13, 2022Updated 4 years ago
- Windows privileges add to the complexity of Windows user permissions. Each additional user added to a group could lead to a domain compro…☆10Mar 2, 2018Updated 8 years ago
- SACTI - Securely aggregate CTI sightings and report them on MISP☆14Oct 24, 2022Updated 3 years ago
- SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP and training users in…☆38Jul 20, 2026Updated 2 months ago
- Defending IaaS with ATT&CK is a project to create a collection of ATT&CK techniques relevant to a Linux IaaS environment, as well as a me…☆16May 28, 2025Updated last year
- Rapports techniques de VIGINUM☆39Sep 15, 2025Updated last year
- HoneyZure is a honeypot tool specifically designed for Azure environments, fully provisioned through Terraform. It leverages a Log Analyt…☆17Jun 11, 2024Updated 2 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Dec 27, 2017Updated 8 years ago
- ☆30Nov 25, 2025Updated 10 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A collection of useful API endpoints for security operators and administrators☆16Jan 8, 2026Updated 8 months ago
- Feed Generator for MISP☆19Nov 2, 2022Updated 3 years ago
- STIX 2.1 Visualizer, Attack and Activity Thread Graph for Threat Modeling☆33Dec 9, 2024Updated last year
- My musings with C#☆28Dec 23, 2022Updated 3 years ago
- A repository to share contributions related to TheHive Project☆23Sep 15, 2021Updated 5 years ago
- pure Python binary analysis framework☆23Oct 26, 2018Updated 7 years ago
- An informational repo about hunting for adversaries in your IT environment.☆14Apr 10, 2017Updated 9 years ago
- ☆13Aug 18, 2016Updated 10 years ago
- Windows stuff☆16Feb 5, 2020Updated 6 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- A collection of Cortex Analyzers and Responders for TheHive/Cortex☆13Jan 29, 2020Updated 6 years ago
- Examples of various Entra ID scenarios in Terraform☆22Sep 24, 2024Updated 2 years ago
- ☆16Oct 29, 2024Updated last year
- A PowerShell script to prevent Sysmon from writing its events☆16Apr 23, 2020Updated 6 years ago
- A Canary which fires when uninstalled☆34Mar 16, 2021Updated 5 years ago
- Turn any blog into structured threat intelligence.☆63Sep 18, 2026Updated last week
- CSIRT Jump Bag☆27Apr 25, 2024Updated 2 years ago
- Example of a serverless web reconaissance workflow's AWS architecture.☆11Feb 25, 2023Updated 3 years ago
- ☆22Feb 6, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Creating a Feed of MISP Events from ThreatFox (by abuse.ch)☆18Jun 2, 2021Updated 5 years ago
- Lua plugin to extract data from Wireshark and convert it into MISP format☆50Oct 23, 2023Updated 2 years ago
- Cobalt Strike Field Manual - A quick reference for Windows commands that can be accessed in a beacon console.☆63Dec 27, 2017Updated 8 years ago
- MISP-STIX-Converter - Python library to handle the conversion between MISP and STIX formats☆63Updated this week
- Tool to read EVTX files including SYSMON and convert to JSON, MISP Objects and Graph stream☆12Oct 29, 2020Updated 5 years ago
- ☆21Dec 8, 2022Updated 3 years ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆34Jun 27, 2025Updated last year