panther-labs / panther-auxiliary
Infrastructure as code for deploying Panther
☆10Updated this week
Alternatives and similar repositories for panther-auxiliary:
Users that are interested in panther-auxiliary are comparing it to the libraries listed below
- Command line tool for working with Panther rules and policies☆38Updated this week
- Attack Range to test detection against nativel serverless cloud services and environments☆35Updated 3 years ago
- Cloud security tutorials and best practices☆38Updated last year
- ALFA stands for Automated Audit Log Forensic Analysis for Google Workspace. You can use this tool to acquire all Google Workspace audit l…☆156Updated this week
- Search a filesystem for indicators of compromise (IoC).☆70Updated last week
- A POC to implement Detection-as-Code with Terraform and Sumo Logic.☆25Updated last year
- Recon Hunt Queries☆76Updated 3 years ago
- ☆65Updated 9 months ago
- ☆33Updated 6 years ago
- ☆18Updated 3 years ago
- ☆117Updated last year
- A tool that allows you to document and assess any security automation in your SOC☆45Updated 3 months ago
- Actionable analytics designed to combat threats based on MITRE's ATT&CK.☆22Updated 5 years ago
- Simple Docker-based quickstart for osquery, Fleet, and ELK stack☆62Updated last year
- Ansible Collection for Splunk Enterprise☆13Updated this week
- Security Alert Decoration☆26Updated 3 weeks ago
- Unleash the power of the Falcon Platform at the CLI☆115Updated 2 weeks ago
- BulkStrike enables the usage of CrowdStrike Real Time Response (RTR) to bulk execute commands on multiple machines.☆42Updated 2 years ago
- OSSEM Common Data Model☆55Updated 2 years ago
- CrowdStrike Falcon log forwarder from falcon S3 bucket to your S3 bucket☆11Updated 3 years ago
- A community event for security researchers to share their favorite notebooks☆107Updated last year
- ☆33Updated 2 years ago
- VMware Carbon Black Cloud Python SDK☆44Updated 3 months ago
- misp-cloud - Cloud-ready images of MISP☆72Updated 2 years ago
- Collection of useful Canary tools☆75Updated this week
- Knowledge Report Alert & Normalization Generator☆27Updated 11 months ago
- Convert Sigma rules to LogRhythm searches☆20Updated 2 years ago
- pocket guide for core detection engineering concepts☆27Updated last year
- An application allowing users to explore, create, annotate, and share extensions of the MITRE ATT&CK® knowledge base. This repository con…☆44Updated 2 weeks ago
- ☆18Updated 3 years ago