microsoft / CyberBattleSim
An experimentation and research platform to investigate the interaction of automated agents in an abstract simulated network environments.
☆1,667Updated last month
Related projects ⓘ
Alternatives and complementary repositories for CyberBattleSim
- Understand adversary tradecraft and improve detection strategies☆703Updated last year
- Threat Pursuit Virtual Machine (VM): A fully customizable, open-sourced Windows-based distribution focused on threat intelligence analysi…☆1,237Updated last year
- ☆2,649Updated 8 months ago
- Guidance for mitigation web shells. #nsacyber☆967Updated last year
- Cybersecurity Evaluation Tool☆1,464Updated this week
- Rapidly Search and Hunt through Windows Forensic Artefacts☆2,886Updated this week
- Defences against Cobalt Strike☆1,280Updated 2 years ago
- Sparrow.ps1 was created by CISA's Cloud Forensics team to help detect possible compromised accounts and applications in the Azure/m365 en…☆1,418Updated last year
- Detect Tactics, Techniques & Combat Threats☆2,067Updated this week
- A DFIR tool written in Python.☆1,043Updated 3 years ago
- ☆1,970Updated this week
- GOAL: Incident Response Playbooks Mapped to MITRE Attack Tactics and Techniques. [Contributors Friendly]☆1,405Updated 3 months ago
- APT-Hunter is Threat Hunting tool for windows event logs which made by purple team mindset to provide detect APT movements hidden in the …☆1,258Updated 2 weeks ago
- Cyber Threat Intelligence Repository expressed in STIX 2.0☆1,755Updated last week
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,508Updated 4 months ago
- A toolset to make a system look as if it was the victim of an APT attack☆2,472Updated last year
- Sophos-ReversingLabs 20 million sample dataset☆638Updated 3 years ago
- Web app that provides basic navigation and annotation of ATT&CK matrices☆2,007Updated this week
- Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK☆1,061Updated last year
- An open library of adversary emulation plans designed to empower organizations to test their defenses based on real-world TTPs.☆1,726Updated 10 months ago
- Watcher - Open Source Cybersecurity Threat Hunting Platform. Developed with Django & React JS.☆865Updated 2 weeks ago
- An Active Defense and EDR software to empower Blue Teams☆1,239Updated last year
- A curated Cyber "Security Orchestration, Automation and Response (SOAR)" awesome list.☆812Updated 2 months ago
- ☆2,191Updated last year
- Re-play Security Events☆1,605Updated 8 months ago
- Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Po…☆2,970Updated last week
- Materials for Windows Malware Analysis training (volume 1)☆1,937Updated 4 months ago
- Microsoft Threat Intelligence Security Tools☆1,775Updated this week
- Sysmon event simulation utility which can be used to simulate the attacks to generate the Sysmon Event logs for testing the EDR detection…☆833Updated 2 years ago
- Malware samples, analysis exercises and other interesting resources.☆1,478Updated 10 months ago