opendr-io / opendrLinks
A FOSS Endpoint Detection and Response (EDR) Alternative Implemented in Python Using PSutil
☆13Updated this week
Alternatives and similar repositories for opendr
Users that are interested in opendr are comparing it to the libraries listed below
Sorting:
- Configuration files for the SOF-ELK VM☆1,608Updated this week
- Incident Response Hierarchy of Needs☆462Updated 2 years ago
- A framework for developing alerting and detection strategies for incident response.☆764Updated 3 years ago
- Open Source Security Events Metadata (OSSEM)☆1,272Updated 2 years ago
- Tools for hunting for threats.☆592Updated 2 months ago
- Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.☆922Updated last year
- A repository for using windows event forwarding for incident detection and response☆1,273Updated 11 months ago
- Documentation of TheHive☆398Updated last year
- Incident Response Methodologies☆1,024Updated 6 years ago
- Actionable analytics designed to combat threats☆992Updated 3 years ago
- A Splunk app mapped to MITRE ATT&CK to guide your threat hunts☆1,162Updated last year
- CyLR - Live Response Collection Tool☆686Updated 3 years ago
- Cortex Analyzers Repository☆466Updated last week
- Configuration guidance for implementing collection of security relevant Windows Event Log events by using Windows Event Forwarding. #nsac…☆871Updated 4 years ago
- Mapping the MITRE ATT&CK Matrix with Osquery☆800Updated 2 years ago
- Customized NXLog configuration used to generate data from Windows endpoints that can be leveraged by teams for better insight into host-a…☆18Updated 4 years ago
- CLI tool to manage a SIFT Install☆420Updated 2 years ago
- The CrowdStrike Falcon SDK for Python☆420Updated this week
- This is a repository for freq.py and freq_server.py☆209Updated 5 years ago
- Vocabulary for Event Recording and Incident Sharing (VERIS)☆608Updated 4 months ago
- A Powershell incident response framework☆1,607Updated 2 years ago
- TrustedSec Sysinternals Sysmon Community Guide☆1,224Updated last week
- Advanced Sysmon ATT&CK configuration focusing on Detecting the Most Techniques per Data source in MITRE ATT&CK, Provide Visibility into …☆808Updated last year
- ☆561Updated 2 years ago
- Logging Made Easy☆712Updated last year
- A knowledge base of actionable Incident Response techniques☆645Updated 3 years ago
- ☆28Updated 5 years ago
- A forensics tool to convert the data in the Windows srum (System Resource Usage Monitor) database to an xlsx spreadsheet.☆699Updated last month
- Re-play Security Events☆1,658Updated last year
- Tools, techniques, cheat sheets, and other resources to assist those defending organizations and detecting adversaries☆455Updated 3 years ago