nccgroup / Cyber-DefenceLinks
Information released publicly by NCC Group's Cyber Incident Response Team
☆476Updated 3 years ago
Alternatives and similar repositories for Cyber-Defence
Users that are interested in Cyber-Defence are comparing it to the libraries listed below
Sorting:
- A PowerShell script to interact with the MITRE ATT&CK Framework via its own API☆368Updated 6 years ago
- Deception based detection techniques mapped to the MITRE’s ATT&CK framework☆289Updated 7 years ago
- FCL (Fileless Command Lines) - Known command lines of fileless malicious executions☆472Updated 4 years ago
- Detecting ATT&CK techniques & tactics for Linux☆258Updated 4 years ago
- 16,432 Free Yara rules created by☆384Updated 6 years ago
- Automated Tactics Techniques & Procedures☆255Updated 2 years ago
- Praetorian's public release of our Metasploit automation of MITRE ATT&CK™ TTPs☆723Updated 5 years ago
- ☆351Updated 4 years ago
- Test Blue Team detections without running any attack.☆271Updated last year
- Elemental - An ATT&CK Threat Library☆318Updated 2 years ago
- Data from a BRAWL Automated Adversary Emulation Exercise☆210Updated 4 years ago
- Searches For Threat Hunting and Security Analytics☆241Updated 4 months ago
- DejaVU - Open Source Deception Framework☆412Updated 2 years ago
- snake - a malware storage zoo☆216Updated 2 years ago
- ☆1,080Updated 6 years ago
- Malware Configuration And Payload Extraction☆760Updated 8 months ago
- ☆427Updated 2 years ago
- A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework☆352Updated 4 years ago
- Tool Analysis Result Sheet☆355Updated 7 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆267Updated 4 years ago
- Imaginary C2 is a python tool which aims to help in the behavioral (network) analysis of malware. Imaginary C2 hosts a HTTP server which …☆447Updated 2 years ago
- Artifact analysis tools by JPCERT/CC Analysis Center☆460Updated last year
- A fully functional DanderSpritz lab in 2 commands☆432Updated 6 years ago
- The GOSINT framework is a project used for collecting, processing, and exporting high quality indicators of compromise (IOCs).☆548Updated 2 years ago
- Open Source Threat Intelligence Chat Bot☆323Updated 5 years ago
- ☆278Updated 2 years ago
- Utilities for MITRE™ ATT&CK☆1,038Updated last year
- FireEye Publicly Shared Indicators of Compromise (IOCs)☆469Updated 6 years ago
- PowerShell Obfuscation Detection Framework☆740Updated last year
- ☆283Updated 7 years ago