k-sec-tools / ExchangeFilter
☆20Updated 3 years ago
Alternatives and similar repositories for ExchangeFilter
Users that are interested in ExchangeFilter are comparing it to the libraries listed below
Sorting:
- MP SIEM SDK☆25Updated 3 months ago
- Enterprise Response Model & Common Knowledge☆36Updated 11 months ago
- Chrome extension for SOC automations☆34Updated 2 weeks ago
- Powershell Event Tracing Toolbox☆75Updated 3 years ago
- ☆65Updated 4 years ago
- A collection of useful PowerShell tools to collect, organize, and visualize Sysmon event data☆39Updated 5 years ago
- Aggregated Indicators of Compromise collected and cross-verified from multiple open and community-supported sources, enriched and ranked …☆34Updated 8 months ago
- Потом объясню, что это такое☆15Updated 6 years ago
- A repository with data about APTs☆12Updated 2 years ago
- THOR Thunderstorm Collectors☆24Updated last month
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆78Updated last year
- System of Orchestration, Lifecycle control, Detection and Response☆58Updated last year
- SDDL Viewer☆62Updated 6 years ago
- This repository was created to aid in the deployment/maintenance of the Sysmon service on a large number of computers.☆82Updated 2 years ago
- Kerberos Haters Guide to Zeek Threat Hunting☆25Updated 3 years ago
- ☆39Updated 2 years ago
- Pushes Sysmon Configs☆88Updated 3 years ago
- Convert Sigma rules to Wazuh rules☆64Updated last year
- Harvest Linux forensic data for operational triage of an event.☆51Updated 11 months ago
- ☆41Updated 2 years ago
- An implementation of a Windows Event Collector server running on GNU/Linux.☆71Updated 2 weeks ago
- This repository contains supplemental items including IOCs, and signatures discussed in Huntress blogposts, and other media.☆37Updated last month
- A Sigma to Wazuh / OSSEC converter including a generated Windows Sysmon ruleset☆33Updated 4 years ago
- Ansible role for installing Sysmon with popular config files included.☆25Updated 2 years ago
- Blueteam operational triage registry hunting/forensic tool.☆145Updated last year
- Look into EDR events from network☆23Updated last week
- Sysmon and wazuh integration with Sigma sysmon rules [updated]☆65Updated 3 years ago
- Setting up a Windows Event Collector☆11Updated last year
- PowerShell scripts for fast Windows Event Collector configuration with Palantir toolset☆22Updated 2 years ago
- An Inofficial Sysmon Version History (Change Log)☆32Updated 4 years ago