magoo / Incident-Response-PlanLinks
Boilerplate Incident Response Plan from "Starting Up Security"
☆164Updated 4 years ago
Alternatives and similar repositories for Incident-Response-Plan
Users that are interested in Incident-Response-Plan are comparing it to the libraries listed below
Sorting:
- A Terraform module for GRR: the distributed incident forensics and response framework☆52Updated 5 years ago
- Remote Memory Acquisition Tool☆248Updated 4 years ago
- Multithreaded threat Intelligence gathering built with Python3☆175Updated 7 years ago
- Serverless, low cost, threat intel aggregation for enterprise or personal use, backed by ElasticSearch.☆141Updated 2 years ago
- Various public documents, white-papers, articles, data, analysis, and statistics about breaches and security trends.☆93Updated 6 years ago
- Security Monitoring Resolution Categories☆138Updated 3 years ago
- Vendor Security Model Contract☆98Updated 3 years ago
- Dashboard to collect, analyze, and respond to reported phishing emails.☆292Updated 2 years ago
- A small set of scripts to summarize AWS Security Groups, and generate visualizations of the rules.☆63Updated 5 years ago
- Threat Feed Aggregation, Made Easy☆168Updated 5 years ago
- Tools to automate and/or expedite response.☆115Updated last year
- ☆219Updated last year
- Mark Baggett's (@MarkBaggett - GSE #15, SANS SEC573 Author) tool for detecting randomness using NLP techniques rather than pure entropy c…☆129Updated 2 years ago
- ☆173Updated last year
- A MITRE ATT&CK Navigator export for AWS GuardDuty Findings☆138Updated 4 years ago
- A threat hunting / data analysis environment based on Python, Pandas, PySpark and Jupyter Notebook.☆246Updated 4 years ago
- Main Build directory☆179Updated 6 years ago
- This script is used to generate some basic detections of the aws security services☆71Updated 3 years ago
- Dorothy is a tool to test security monitoring and detection for Okta environments☆184Updated last year
- Python installable command line utiltity for mitigation of host and key compromises.☆347Updated 4 years ago
- Automated Use Case Testing☆167Updated 7 years ago
- A collection of static files maintained by the Sublime team, primarily used for phishing defense.☆87Updated this week
- Recon Hunt Queries☆77Updated 4 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 4 years ago
- A Python library to help with some common threat hunting data analysis operations☆143Updated 2 years ago
- Assimilate is a series of scripts for using the Naïve Bayes algorithm to find potential malicious activity in HTTP headers☆91Updated 7 years ago
- ☆65Updated last year
- Python-based utility that uses supervised machine learning to detect phishing domains from the Certificate Transparency log network.☆324Updated 11 months ago
- A Splunk app to use MISP in background☆111Updated last week
- DPS' Lightweight Investigation Notebook☆432Updated last year