pan-unit42 / Wireshark-quizzesLinks
Packet captures of malicious traffic for analysis using Wireshark
☆59Updated 2 years ago
Alternatives and similar repositories for Wireshark-quizzes
Users that are interested in Wireshark-quizzes are comparing it to the libraries listed below
Sorting:
- yara detection rules for hunting with the threathunting-keywords project☆124Updated 2 months ago
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆86Updated 3 years ago
- Initial triage of Windows Event logs☆101Updated last year
- ☆51Updated 3 years ago
- Helping Incident Responders hunt for potential persistence mechanisms on UNIX-based systems.☆15Updated last year
- pySigma Splunk backend☆40Updated 2 months ago
- pcaps of traffic for traffic analysis workshop☆84Updated 3 years ago
- BlackBerry Threat Research & Intelligence☆98Updated last year
- Linux Evidence Acquisition Framework☆119Updated 9 months ago
- User Feedback Space of #MitreAssistant☆37Updated 2 years ago
- Passive OS detection based on SYN packets without Transmitting any Data☆47Updated 2 years ago
- Library of threat hunts to get any user started!☆44Updated 4 years ago
- ☆69Updated 4 months ago
- Open Threat Hunting Framework☆117Updated 2 years ago
- Repository of tools and resources for analyzing Docker containers☆66Updated last year
- Pathfinder is a plugin for mapping network vulnerabilities, scanned by CALDERA or imported by a supported network scanner, and translatin…☆126Updated 3 months ago
- A MITRE ATT&CK Lookup Tool☆45Updated last year
- Rapid7 Labs operates as the division of Rapid7 focused on threat research. It is renowned for providing comprehensive threat intelligence…☆67Updated last month
- Forensic Artifact Collection Tool Matrix☆85Updated 8 months ago
- Open IOC sharing platform☆56Updated 8 months ago
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆61Updated 11 months ago
- Cyber Threat Intelligence Data, Indicators, and Analysis☆91Updated last month
- CarbonBlack EDR detection rules and response actions☆71Updated 10 months ago
- ☆11Updated 2 years ago
- ATT&CK Powered Suit is a browser extension that puts the complete MITRE ATT&CK® knowledge base at your fingertips with text search, conte…☆78Updated last month
- A Jupyter notebook to assist with the analysis of the output generated from Volatility memory extraction framework.☆96Updated 2 years ago
- Sigma rules to share with the community☆121Updated 5 months ago
- MAD ATT&CK Defender: ATT&CK Adversary Emulation Repository☆117Updated 2 years ago
- Intel Retrieval Augmented Generation (RAG) Utilities☆90Updated last year
- Incident Response with Threat Intelligence, published by Packt☆52Updated last year