panther-labs / pypanther-starter-kit
A Python-native Detection as Code Framework
☆14Updated 2 weeks ago
Alternatives and similar repositories for pypanther-starter-kit
Users that are interested in pypanther-starter-kit are comparing it to the libraries listed below
Sorting:
- Anvilogic Forge☆103Updated this week
- pocket guide for core detection engineering concepts☆28Updated 2 years ago
- A tool that allows you to document and assess any security automation in your SOC☆46Updated 6 months ago
- The Event Maturity Matrix (EMM) is a comprehensive framework that provides clarity regarding the capabilities and nuances of SaaS audit l…☆21Updated 8 months ago
- This repository contains the research and components of our research into using Sigma for AWS Incident Response.☆29Updated last year
- ☆43Updated last month
- Command line tool for working with Panther rules and policies☆39Updated last week
- ☆53Updated 3 weeks ago
- Workflows for Shuffle☆22Updated 2 years ago
- An application allowing users to explore, create, annotate, and share extensions of the MITRE ATT&CK® knowledge base. This repository con…☆46Updated last week
- ☆18Updated 3 years ago
- ☆65Updated 11 months ago
- ATT&CK Sync is a Center for Threat-Informed Defense project that aims to improve the ability for organizations to consume MITRE ATT&CK® v…☆20Updated 2 weeks ago
- Mappings Explorer enables cyber defenders to understand how security controls and capabilities map onto the adversary behaviors catalogue…☆62Updated 3 weeks ago
- Knowledge Report Alert & Normalization Generator☆27Updated last year
- Cloud Analytics helps defenders detect attacks to their cloud infrastructure by developing behavioral analytics for cloud platforms as we…☆53Updated 2 years ago
- Collects a listing of MITRE ATT&CK Techniques, then discovers Splunk ESCU detections for each technique☆67Updated last year
- ☆94Updated 2 years ago
- ☆40Updated 2 months ago
- An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and secur…☆159Updated 2 weeks ago
- Convert cloudtrail data to MITRE ATT&CK Sightings☆80Updated 2 years ago
- An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.☆55Updated 3 years ago
- A POC to implement Detection-as-Code with Terraform and Sumo Logic.☆27Updated last year
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆94Updated last year
- ☆88Updated 2 months ago
- This repository provides a comprehensive collection of Pulumi scenarios utilized by cnappgoat☆21Updated 3 months ago
- Slack bot which promotes Defense in Depth/Zero Trust security practices☆24Updated 2 years ago
- MITRE ATT&CK Based App in Power BI☆13Updated last year
- A CALDERA plugin☆26Updated 9 months ago
- This directory features proven systems that demonstrate value to your threat-informed efforts using metrics.☆111Updated 5 months ago