rapid7 / insightvm-sql-queries
InsightVM helpful SQL queries
☆57Updated 3 months ago
Related projects: ⓘ
- Dashboard for conducting Backdoors and Breaches sessions over Zoom.☆108Updated last year
- Conference presentations☆45Updated 10 months ago
- ☆52Updated 3 years ago
- A port of BHIS's Backdoors & Breaches for playingcards.io☆59Updated last year
- Backdoors & Breaches: Campaigns. These are short guides to help Incident Captains by giving them game ideas based on actual breaches.☆31Updated 9 months ago
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆122Updated last year
- Tools for simulating threats☆170Updated 10 months ago
- Repository of SentinelOne Deep Visibility queries.☆116Updated 3 years ago
- SentinelOne STAR Rules☆45Updated 10 months ago
- A collection of various SIEM rules relating to malware family groups.☆60Updated 3 months ago
- ☆63Updated 6 months ago
- Full of public notes and Utilities☆81Updated 3 weeks ago
- A collection of Splunk's Search Processing Language (SPL) for Threat Hunting with CrowdStrike Falcon☆184Updated 4 years ago
- A browser extension for threat hunting that provides one UI for different SIEMs/EDRs and simplifies investigation☆75Updated 3 months ago
- Open-Source PowerShell module to allow online play of Backdoors & Breaches card game devised by Black Hills Information Security☆55Updated 3 years ago
- Repository of attack and defensive information for Business Email Compromise investigations☆216Updated 3 weeks ago
- Windows Malware Investigation Scripts & Docs☆74Updated 5 months ago
- Threat Hunting Toolkit is a Swiss Army knife for threat hunting, log processing, and security-focused data science☆119Updated this week
- ☆50Updated last year
- ☆72Updated last month
- Security Scripts and Sources for daily usage.☆44Updated last week
- ☆40Updated last year
- ☆40Updated 3 months ago
- Scripts for rapid Windows endpoint "tactical triage" and investigations with Velociraptor and KAPE☆96Updated 5 months ago
- Distribution of the SANS SEC504 Windows Cheat Sheet Lab☆64Updated 4 years ago
- ☆73Updated last year
- MISP to Sentinel integration☆57Updated last week
- Cybersecurity Incident Response Plan☆86Updated 3 years ago
- A list of Splunk queries that I've collected and used over time.☆70Updated 3 years ago