MAD ATT&CK Defender: ATT&CK Adversary Emulation Repository
☆130Apr 24, 2023Updated 3 years ago
Alternatives and similar repositories for AdversaryEmulation
Users that are interested in AdversaryEmulation are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.☆2,144May 28, 2025Updated last year
- A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework☆357Nov 3, 2020Updated 5 years ago
- ☆11Jun 5, 2022Updated 4 years ago
- Community content for LogRhythm Axon. Includes Dashboards, searches, analytics rules, processing policies and more.☆10Jul 26, 2024Updated 2 years ago
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆17Sep 4, 2021Updated 4 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Actionable analytics designed to combat threats☆1,013May 25, 2022Updated 4 years ago
- Cloud Detection & Response GOAT is a scenario-driven, intentionally vulnerable framework designed to help defenders validate detection pi…☆21Jul 15, 2026Updated 2 weeks ago
- An automated Adversary Emulation lab with terraform and MCP server. Build Caldera techniques and operations assisted with LLMs. Built f…☆216Nov 23, 2025Updated 8 months ago
- ☆23Jun 1, 2022Updated 4 years ago
- Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detection…☆868Jan 20, 2022Updated 4 years ago
- Purple Team Resources for Enterprise Purple Teaming: An Exploratory Qualitative Study by Xena Olsen.☆676Jun 14, 2023Updated 3 years ago
- TRAM is an open-source platform designed to advance research into automating the mapping of cyber threat intelligence reports to MITRE AT…☆575May 6, 2025Updated last year
- Granular, Actionable Adversary Emulation for the Cloud☆2,362Updated this week
- A CALDERA plugin☆84Apr 30, 2026Updated 2 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).☆818Updated this week
- Attack Flow helps executives, SOC managers, and defenders easily understand how attackers compose ATT&CK techniques into attacks by devel…☆757Jun 18, 2026Updated last month
- A Canary which fires when uninstalled☆34Mar 16, 2021Updated 5 years ago
- Cheat sheets for threat hunting, detection and other stuff.☆34Oct 7, 2022Updated 3 years ago
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆214Jul 21, 2022Updated 4 years ago
- Detection Ideas & Rules repository.☆179Sep 10, 2021Updated 4 years ago
- ☆50Jun 28, 2026Updated last month
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders☆1,076Oct 5, 2023Updated 2 years ago
- ☆12Mar 24, 2018Updated 8 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Automated Adversary Emulation Platform☆7,148Updated this week
- impersonate trustedinstaller by fiddling with tokens☆14Aug 30, 2021Updated 4 years ago
- This content is analysis and research of the data sources currently listed in ATT&CK.☆412Sep 13, 2023Updated 2 years ago
- 2021 SANS DFIR Summit: Greppin' Logs☆20Oct 30, 2025Updated 8 months ago
- ☆24Jan 2, 2023Updated 3 years ago
- Interface LLMs from within MISP to extract TTPs and threat intel from CTI reports☆18Nov 13, 2023Updated 2 years ago
- A collection of scripts used to support an OffSecOps pipeline.☆15Jan 31, 2021Updated 5 years ago
- Simulates a compromise in a cloud and container environment☆35Dec 18, 2024Updated last year
- Information relating to the governance of the Open Cybersecurity Alliance (OCA) OASIS Open Project. https://github.com/opencybersecuritya…☆29May 15, 2026Updated 2 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Threat Modeling with ATT&CK defines how to integreate MITRE ATT&CK® into your organization’s existing threat modeling methodology.☆15May 28, 2025Updated last year
- powershell script i wrote that can suspend an arbitrary process (with limits)☆22Mar 26, 2023Updated 3 years ago
- Domain Response is a tool that is designed to help you automate the investigation for a domain. This tool is specificly designed to autom…☆53Jan 1, 2026Updated 6 months ago
- Active C&C Detector☆155Oct 5, 2023Updated 2 years ago
- Reference sheet for Threat Hunting Professional Course☆26Mar 10, 2019Updated 7 years ago
- A set of Zeek scripts to detect ATT&CK techniques.☆622Jun 26, 2024Updated 2 years ago
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆70Mar 17, 2024Updated 2 years ago