panther-labs / panther_analysis_toolLinks
Command line tool for working with Panther rules and policies
☆47Updated last week
Alternatives and similar repositories for panther_analysis_tool
Users that are interested in panther_analysis_tool are comparing it to the libraries listed below
Sorting:
- ☆65Updated last year
- ☆51Updated last month
- A POC to implement Detection-as-Code with Terraform and Sumo Logic.☆30Updated 2 years ago
- ☆192Updated last week
- Audit log wall of shame.☆41Updated 5 months ago
- Knowledge Report Alert & Normalization Generator☆26Updated last month
- pocket guide for core detection engineering concepts☆31Updated 2 years ago
- Cloud security tutorials and best practices☆38Updated 2 years ago
- Built-in Panther detection rules and policies☆433Updated this week
- Slack bot which promotes Defense in Depth/Zero Trust security practices☆24Updated 3 years ago
- ☆18Updated 4 years ago
- Convert cloudtrail data to MITRE ATT&CK Sightings☆82Updated 3 years ago
- The MITRE Security Automation Framework (SAF) Command Line Interface (CLI) brings together applications, techniques, libraries, and tools…☆171Updated this week
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆55Updated last month
- Serverless honeytoken 🕵🏻♂️☆81Updated 3 years ago
- ☆169Updated 4 months ago
- Fun tools around the EBS Direct API☆19Updated 4 years ago
- This repository contains the research and components of our research into using Sigma for AWS Incident Response.☆31Updated 2 years ago
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆101Updated 2 years ago
- OSSEM Common Data Model☆56Updated 3 years ago
- An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.☆60Updated 3 years ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆74Updated 3 years ago
- An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and secur…☆172Updated last week
- Cloud Analytics helps defenders detect attacks to their cloud infrastructure by developing behavioral analytics for cloud platforms as we…☆54Updated 2 years ago
- A Cloud Security Posture Manager or CSPM with a focus on security analysis for the modern cloud stack and a focus on the emerging threat …☆196Updated last year
- A MITRE ATT&CK Navigator export for AWS GuardDuty Findings☆139Updated 4 years ago
- GCP CSPM using Google Sheets☆38Updated 9 months ago
- defendA Data Lake. A firehose pipeline to athena providing enrichment and normalization for security events☆17Updated 2 years ago
- Attack Range to test detection against nativel serverless cloud services and environments☆35Updated 4 years ago
- Anvilogic Forge☆114Updated 4 months ago