mrwadams / attackgen
AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK framework. The tool generates tailored incident response scenarios based on user-selected threat actor groups and your organisation's details.
☆1,095Updated last month
Alternatives and similar repositories for attackgen:
Users that are interested in attackgen are comparing it to the libraries listed below
- A resource containing all the tools each ransomware gangs uses☆989Updated last week
- This repository contains Open Source freely usable Threat Intel feeds that can be used without additional requirements. Contains multiple…☆651Updated last month
- Streamline vulnerability patching with CVSS, EPSS, and CISA's Known Exploited Vulnerabilities. Prioritize actions based on real-time thre…☆613Updated last week
- Awesome Security lists for SOC/CERT/CTI☆891Updated this week
- PurpleLab is an efficient and readily deployable lab solution, providing a swift setup for cybersecurity professionals to test detection…☆610Updated 3 weeks ago
- Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation o…☆943Updated 2 months ago
- Awesome list of keywords and artifacts for Threat Hunting sessions☆553Updated 2 weeks ago
- Purple Team Exercise Framework☆684Updated last year
- A collection of sources of documentation, as well as field best practices, to build/run a SOC☆1,347Updated last month
- Incident Response Methodologies 2022☆1,039Updated last year
- This project aims to compare and evaluate the telemetry of various EDR products.☆1,780Updated 2 weeks ago
- Attack Flow helps executives, SOC managers, and defenders easily understand how attackers compose ATT&CK techniques into attacks by devel…☆592Updated this week
- Map tracking ransomware, by OCD World Watch team☆460Updated 2 weeks ago
- Purple Team Resources for Enterprise Purple Teaming: An Exploratory Qualitative Study by Xena Olsen.☆645Updated last year
- practical toolkit for cybersecurity and IT professionals. It features a detailed Linux cheatsheet for incident response☆394Updated last year
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆266Updated this week
- Galah: An LLM-powered web honeypot.☆515Updated 5 months ago
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders☆892Updated last year
- A curated list of annual cyber security reports☆477Updated last week
- This is a Project Designed for Security Analysts and all SOC audiences who wants to play with implementation and explore the Modern SOC a…☆658Updated 6 months ago
- MITRE Caldera™ for OT Plugins & Capabilities☆206Updated 4 months ago
- Playbooks for SOC Analysts☆431Updated 2 years ago
- Cover various security approaches to attack techniques and also provides new discoveries about security breaches.☆469Updated 2 months ago
- Invoke-AtomicRedTeam is a PowerShell module to execute tests as defined in the [atomics folder](https://github.com/redcanaryco/atomic-red…☆890Updated 3 weeks ago
- A repo to conduct vulnerability enrichment.☆587Updated this week
- Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.☆557Updated 2 months ago
- ✨ A compilation of suggested tools/services for each component in a detection and response pipeline, along with real-world examples. The …☆272Updated last year
- MasterParser is a powerful DFIR tool designed for analyzing and parsing Linux logs☆717Updated 9 months ago
- Practical Windows Forensics Training☆649Updated last year