mbabinski / InsightIDR4Py
Allows simplified Python interaction with Rapid7's InsightIDR REST API.
☆23Updated 6 months ago
Related projects ⓘ
Alternatives and complementary repositories for InsightIDR4Py
- ☆85Updated 2 years ago
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆97Updated 8 months ago
- ✨ A compilation of suggested tools/services for each component in a detection and response pipeline, along with real-world examples. The …☆257Updated 9 months ago
- Save toil in security operations with: Detection & Intelligence Analysis for New Alerts (D.I.A.N.A. )☆149Updated 2 months ago
- ☆41Updated 2 years ago
- Anvilogic Forge☆86Updated this week
- ☆24Updated last year
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆202Updated last year
- A port of BHIS's Backdoors & Breaches for playingcards.io☆60Updated last year
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆116Updated 11 months ago
- Public script from SANS FOR509 Enterprise Cloud Incident Response☆179Updated 2 months ago
- A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon☆191Updated 4 years ago
- A Command-line tool which leverages the Tenable.io API to reduce the time it takes to get information that is common during remediation o…☆72Updated last month
- Resources for SANS CTI Summit 2021 presentation☆102Updated last year
- Creating a resource to help build and manage an Insider Threat program.☆61Updated 7 months ago
- Real-time Response scripts and schema☆104Updated 11 months ago
- Repository of public reference frameworks for the DFIR community.☆108Updated last year
- Dorothy is a tool to test security monitoring and detection for Okta environments☆175Updated 3 months ago
- Repository of SentinelOne Deep Visibility queries.☆118Updated 3 years ago
- Tools for simulating threats☆174Updated last year
- ALFA stands for Automated Audit Log Forensic Analysis for Google Workspace. You can use this tool to acquire all Google Workspace audit l…☆144Updated this week
- A list of Splunk queries that I've collected and used over time.☆72Updated 4 years ago
- Repo for Concierge AI dev work☆177Updated this week
- These are files that a new CISO or someone introducing security to an organization can leverage to bridge the gap between security and th…☆69Updated 3 weeks ago
- Cybersecurity Incident Response Plan☆87Updated 4 years ago
- Resources To Learn And Understand SIGMA Rules☆167Updated last year
- ☆20Updated last year
- A browser extension for threat hunting that provides one UI for different SIEMs/EDRs and simplifies investigation☆75Updated 5 months ago
- Dashboard for conducting Backdoors and Breaches sessions over Zoom.☆111Updated 3 weeks ago