TIBER-Cases is a project created to give cases of The Hive platform for Threat Intelligence Analysts mainly. All the cases are mapped to TIBER-EU processes.
☆27Jul 13, 2022Updated 4 years ago
Alternatives and similar repositories for TIBER-Cases
Users that are interested in TIBER-Cases are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Kibana app for RedELK☆18Mar 19, 2023Updated 3 years ago
- A threat sighting collects the behavior of a real threats and the observables used during its engagement.☆12Mar 29, 2022Updated 4 years ago
- Common Exercise Format - CEXF☆11Aug 15, 2024Updated 2 years ago
- Scripts to automate standing up apache2 with mod_rewrite in front of C2 servers.☆47Feb 17, 2021Updated 5 years ago
- A script to create and assign SOP tasks into the cases☆20Aug 16, 2020Updated 6 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Helper script for BloodHound to automatically add relationships between multiple accounts owned by the same individual☆15Jul 13, 2022Updated 4 years ago
- OASIS CTI TC: Provides issue tracking and wiki pages for the STIX 2.x Work Products☆26Updated this week
- Windows privileges add to the complexity of Windows user permissions. Each additional user added to a group could lead to a domain compro…☆10Mar 2, 2018Updated 8 years ago
- SACTI - Securely aggregate CTI sightings and report them on MISP☆14Oct 24, 2022Updated 3 years ago
- SkillAegis is a platform to design, run, and monitor exercise scenarios, enhancing skills in applications like MISP and training users in…☆39Jul 20, 2026Updated 3 weeks ago
- Defending IaaS with ATT&CK is a project to create a collection of ATT&CK techniques relevant to a Linux IaaS environment, as well as a me…☆15May 28, 2025Updated last year
- Rapports techniques de VIGINUM☆39Sep 15, 2025Updated 11 months ago
- HoneyZure is a honeypot tool specifically designed for Azure environments, fully provisioned through Terraform. It leverages a Log Analyt…☆17Jun 11, 2024Updated 2 years ago
- Checks observables/ioc in TheHive/Cortex against the MISP warningslists☆14Dec 27, 2017Updated 8 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆31Nov 25, 2025Updated 8 months ago
- Feed Generator for MISP☆19Nov 2, 2022Updated 3 years ago
- STIX 2.1 Visualizer, Attack and Activity Thread Graph for Threat Modeling☆33Dec 9, 2024Updated last year
- My musings with C#☆28Dec 23, 2022Updated 3 years ago
- A repository to share contributions related to TheHive Project☆22Sep 15, 2021Updated 4 years ago
- pure Python binary analysis framework☆23Oct 26, 2018Updated 7 years ago
- An informational repo about hunting for adversaries in your IT environment.☆14Apr 10, 2017Updated 9 years ago
- Windows stuff☆16Feb 5, 2020Updated 6 years ago
- ☆13Aug 18, 2016Updated 9 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Examples of various Entra ID scenarios in Terraform☆22Sep 24, 2024Updated last year
- A collection of Cortex Analyzers and Responders for TheHive/Cortex☆13Jan 29, 2020Updated 6 years ago
- ☆16Oct 29, 2024Updated last year
- A PowerShell script to prevent Sysmon from writing its events☆16Apr 23, 2020Updated 6 years ago
- A Canary which fires when uninstalled☆34Mar 16, 2021Updated 5 years ago
- Turn any blog into structured threat intelligence.☆60Aug 10, 2026Updated last week
- CSIRT Jump Bag☆27Apr 25, 2024Updated 2 years ago
- Example of a serverless web reconaissance workflow's AWS architecture.☆11Feb 25, 2023Updated 3 years ago
- ☆22Feb 6, 2024Updated 2 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Creating a Feed of MISP Events from ThreatFox (by abuse.ch)☆18Jun 2, 2021Updated 5 years ago
- Cobalt Strike Field Manual - A quick reference for Windows commands that can be accessed in a beacon console.☆63Dec 27, 2017Updated 8 years ago
- MISP-STIX-Converter - Python library to handle the conversion between MISP and STIX formats☆60Updated this week
- Tool to read EVTX files including SYSMON and convert to JSON, MISP Objects and Graph stream☆12Oct 29, 2020Updated 5 years ago
- ☆21Dec 8, 2022Updated 3 years ago
- ☆23Nov 13, 2021Updated 4 years ago
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆34Jun 27, 2025Updated last year