mandiant / flare-gsoc-2023
Supporting resources and documentation for FLARE @ Google Summer of Code 2023
☆15Updated last year
Related projects ⓘ
Alternatives and complementary repositories for flare-gsoc-2023
- This Repository gives the best and possible strategies against hunting the ransomware☆24Updated 2 years ago
- Linux Baseline and Forensic Triage Tool - BETA☆50Updated 2 years ago
- ☆32Updated 2 weeks ago
- BlackBerry Threat Research & Intelligence☆93Updated last year
- orc2timeline extracts and analyzes artifacts contained in archives generated with DFIR-ORC.exe to create a timeline from them☆25Updated last month
- A home for detection content developed by the delivr.to team☆59Updated 2 months ago
- This project aims to bridge the gap between Microsoft Attack Surface Reduction (ASR) rules and MITRE ATT&CK by mapping ASR rules to their…☆23Updated 2 months ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆62Updated 2 years ago
- SubCrawl is a modular framework for discovering open directories, identifying unique content through signatures and organizing the data w…☆49Updated 5 months ago
- Threat Hunting is time consuming enough as it is. Coming up with and tracking metrics to justify your hunt team to the Execs often takes…☆11Updated last year
- Detection rule validation☆41Updated last year
- Resources for DFIR. And more.☆11Updated 4 months ago
- The ultimate solution for remotely deploying Crowdstrike sensors quickly and discreetly on any other EDR platform.☆22Updated 2 months ago
- ☆43Updated 3 weeks ago
- simple webapp for converting sigma rules into siem queries using the pySigma library☆47Updated last year
- Repo to hold my PowerShell Scripts☆17Updated 2 years ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆110Updated 7 months ago
- ☆19Updated last year
- This repository is created to store the artifacts for any intrusions I share publicly.☆24Updated last year
- Remote access and Antivirus Logging Database☆41Updated 6 months ago
- Contains compiled binaries of Volatility☆29Updated last month
- ☆23Updated last year
- An exercise to practice deobfuscating PowerShell Scripts.☆28Updated last year
- Baseline a Windows System against LOLBAS☆25Updated 6 months ago
- Sigma detection rules for hunting with the threathunting-keywords project☆47Updated last week
- ESXi Cyber Security Incident Response Script☆20Updated 2 months ago
- Repository for different Windows DFIR related CMDs, PowerShell CMDlets, etc, plus workshops that I did for different conferences or event…☆75Updated 3 years ago
- A specification and style guide for YARA rules☆37Updated 8 months ago
- ASR Configurator, Essentials and Atomic Testing☆36Updated last week
- Jupyter Univere is a search engine for all infosec jupyter notebooks☆19Updated 3 months ago
- The core backend server handling API requests and task management☆31Updated this week