k-sec-tools / ExchangeFilterLinks
☆20Updated 4 years ago
Alternatives and similar repositories for ExchangeFilter
Users that are interested in ExchangeFilter are comparing it to the libraries listed below
Sorting:
- Enterprise Response Model & Common Knowledge☆38Updated 4 months ago
- Chrome extension for SOC automations☆36Updated last month
- MP SIEM SDK☆30Updated 9 months ago
- ☆70Updated 4 years ago
- реп полезностей для PT MaxPatrol SIEM☆24Updated 2 years ago
- Sysmon EDR POC Build within Powershell to prove ability.☆226Updated 4 years ago
- Powershell Event Tracing Toolbox☆78Updated 3 years ago
- Anything Sysmon related from the MSTIC R&D team☆156Updated last year
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆94Updated 3 years ago
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆70Updated 4 years ago
- A repository with data about APTs☆13Updated 2 years ago
- Harvest Linux forensic data for operational triage of an event.☆51Updated last year
- Aggregated Indicators of Compromise collected and cross-verified from multiple open and community-supported sources, enriched and ranked …☆35Updated last year
- Suricata rules for network anomaly detection☆175Updated 2 weeks ago
- evtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.☆156Updated 3 years ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆81Updated 3 weeks ago
- Specific guidance and configuration scripts based on Microsoft-recommended security configuration baselines for Windows.☆14Updated 5 years ago
- Blueteam operational triage registry hunting/forensic tool.☆150Updated 2 months ago
- A Sigma to Wazuh / OSSEC converter including a generated Windows Sysmon ruleset☆36Updated 5 years ago
- Kerberos Haters Guide to Zeek Threat Hunting☆32Updated 4 years ago
- Convert Sigma rules to Wazuh rules☆73Updated last month
- Detection of Log4j in memory☆40Updated 3 years ago
- PowerShell scripts for fast Windows Event Collector configuration with Palantir toolset☆22Updated 3 years ago
- Provides an advanced input.conf file for Windows and 3rd party related software with more than 70 different event log mapped to the MITRE…☆93Updated 4 months ago
- Forensic Artifact Collection Tool Matrix☆91Updated last year
- A collection of useful PowerShell tools to collect, organize, and visualize Sysmon event data☆39Updated 5 years ago
- A script to collect (the most famous) Yara rules from more than 150 free resources. Free alternative to: https://valhalla.nextron-system…☆28Updated 2 years ago
- Fast IOC and YARA Scanner☆84Updated 5 years ago
- A collection of tips for using MISP.☆74Updated 10 months ago
- HXTool is an extended user interface for the FireEye HX Endpoint product. HXTool can be installed on a dedicated server or on your physic…☆84Updated last year