pain0x0 / awesome-incident-response
☆19Updated 2 years ago
Alternatives and similar repositories for awesome-incident-response:
Users that are interested in awesome-incident-response are comparing it to the libraries listed below
- BlueBox Malware analysis Box and Cyber threat intelligence.☆39Updated 2 years ago
- A visualized overview of the Initial Access Broker (IAB) cybercrime landscape☆109Updated 3 years ago
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆125Updated 8 months ago
- Open IOC sharing platform☆54Updated 2 months ago
- ☆41Updated 2 years ago
- ☆156Updated last year
- Providing Azure pipelines to create an infrastructure and run Atomic tests.☆50Updated last year
- yara detection rules for hunting with the threathunting-keywords project☆92Updated this week
- Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.☆15Updated last year
- Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups☆59Updated 2 years ago
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆74Updated 2 months ago
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆84Updated 2 years ago
- Blue Team detection lab created with Terraform and Ansible in Azure.☆143Updated last month
- Generate portable TTP intelligence from a web-based report☆30Updated 2 years ago
- Open Threat Hunting Framework☆105Updated last year
- Linux Evidence Acquisition Framework☆114Updated 3 months ago
- A comprehensive knowledge base for security professionals to keep track of and build defenses against API attack techniques.☆42Updated 4 months ago
- CarbonBlack EDR detection rules and response actions☆71Updated 4 months ago
- Some Threat Hunting queries useful for blue teamers☆123Updated 2 years ago
- This repo is where I store my Threat Hunting ideas/content☆86Updated last year
- Cyber Threat Intelligence Data, Indicators, and Analysis☆80Updated 3 weeks ago
- Triaging Windows event logs based on SANS Poster☆38Updated 2 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆62Updated 2 years ago
- Top ATT&CK Techniques helps defenders approach the breadth and complexity of MITRE ATT&CK® with a prioritized top 10 list of techniques t…☆116Updated 5 months ago
- Slides of my public talks☆48Updated last year
- ☆26Updated 3 years ago
- ☆79Updated last year
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆61Updated 9 months ago
- ☆32Updated 2 months ago
- Lupo - Malware IOC Extractor. Debugging module for Malware Analysis Automation☆105Updated 2 years ago