mitre / human
Caldera plugin to deploy "humans" to emulate user behavior on systems
☆25Updated 6 months ago
Related projects ⓘ
Alternatives and complementary repositories for human
- Automatic detection engineering technical state compliance☆50Updated 4 months ago
- A CALDERA plugin for autonomous incident response☆24Updated 9 months ago
- Converting data from services like Censys and Shodan to a common data model☆48Updated 2 months ago
- An elevated STIX representation of the MITRE ATT&CK Groups knowledge base☆23Updated 2 years ago
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 3 years ago
- Collection of walkthroughs on various threat hunting techniques☆75Updated 4 years ago
- Convert Sigma rules to LogRhythm searches☆19Updated 2 years ago
- Sharing Threat Hunting runbooks☆24Updated 5 years ago
- A CALDERA plugin☆72Updated 3 weeks ago
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆65Updated 8 months ago
- A MITRE Caldera plugin☆38Updated this week
- Small-scale threat emulation and detection range built on Elastic and Atomic Redteam.☆35Updated 11 months ago
- DNS Dashboard for hunting and identifying beaconing☆14Updated 4 years ago
- ☆46Updated 2 years ago
- Python library for threat intelligence☆80Updated 4 months ago
- A CALDERA plugin☆21Updated 9 months ago
- Generic Signature Format for SIEM Systems☆14Updated 3 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆62Updated 2 years ago
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆72Updated 2 weeks ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆31Updated 3 weeks ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆50Updated 2 years ago
- A happy place for detection engineers, purple teamers and threat hunters focusing on macOS.☆20Updated 2 years ago
- A CALDERA plugin☆25Updated 3 months ago
- CyCAT.org API back-end server including crawlers☆30Updated last year
- A community event for security researchers to share their favorite notebooks☆106Updated 9 months ago
- ☆41Updated 7 months ago
- A python script to acquire multiple aws ec2 instances in a forensically sound-ish way☆37Updated 3 years ago
- This CALDERA Plugin converts Adversary Emulation Plans from the Center for Threat Informed Defense☆29Updated 9 months ago
- A collection of tips for using MISP.☆74Updated 7 months ago