panther-labs / panther_analysis_tool
Command line tool for working with Panther rules and policies
☆39Updated last week
Alternatives and similar repositories for panther_analysis_tool
Users that are interested in panther_analysis_tool are comparing it to the libraries listed below
Sorting:
- Cloud security tutorials and best practices☆38Updated 2 years ago
- ☆43Updated last month
- pocket guide for core detection engineering concepts☆28Updated 2 years ago
- Audit log wall of shame.☆41Updated 6 months ago
- ☆18Updated 3 years ago
- A POC to implement Detection-as-Code with Terraform and Sumo Logic.☆27Updated last year
- Attack Range to test detection against nativel serverless cloud services and environments☆35Updated 3 years ago
- ☆65Updated 11 months ago
- Cloud Analytics helps defenders detect attacks to their cloud infrastructure by developing behavioral analytics for cloud platforms as we…☆53Updated 2 years ago
- Fun tools around the EBS Direct API☆18Updated 4 years ago
- Workflows for Shuffle☆22Updated 2 years ago
- GCP CSPM using Google Sheets☆36Updated last month
- Public release of Whalehoney Honeypot☆29Updated 3 years ago
- A MITRE ATT&CK Navigator export for AWS GuardDuty Findings☆137Updated 3 years ago
- Recon Hunt Queries☆77Updated 3 years ago
- This repository contains the research and components of our research into using Sigma for AWS Incident Response.☆29Updated last year
- Slack bot which promotes Defense in Depth/Zero Trust security practices☆24Updated 2 years ago
- Cisco Orbital - Osquery queries by Talos☆132Updated 8 months ago
- This script is used to generate some basic detections of the aws security services☆71Updated 3 years ago
- OSSEM Common Data Model☆55Updated 2 years ago
- Knowledge Report Alert & Normalization Generator☆27Updated last year
- An application allowing users to explore, create, annotate, and share extensions of the MITRE ATT&CK® knowledge base. This repository con…☆46Updated last week
- AWS EKS Cluster Forensics☆23Updated 3 years ago
- A Python-native Detection as Code Framework☆14Updated 2 weeks ago
- Convert cloudtrail data to MITRE ATT&CK Sightings☆80Updated 2 years ago
- A tool that allows you to document and assess any security automation in your SOC☆46Updated 6 months ago
- Infrastructure as code for deploying Panther☆1Updated last week
- Updated incident response generator for training classes☆44Updated 3 years ago
- Automatic detection engineering technical state compliance☆55Updated 10 months ago
- Manage GuardDuty At Enterprise Scale☆22Updated 4 years ago