scottleyg / SecOpsSamplesLinks
Sample SecOps scripts and Utilities
☆12Updated last year
Alternatives and similar repositories for SecOpsSamples
Users that are interested in SecOpsSamples are comparing it to the libraries listed below
Sorting:
- A preconfigured Windows-based system designed for rapid forensic investigations in both Azure and AWS.☆39Updated last year
- Sigma detection rules for hunting with the threathunting-keywords project☆57Updated 9 months ago
- Actively hunt for attacker infrastructure by filtering Shodan results with URLScan data.☆63Updated last year
- ☆49Updated 2 weeks ago
- Cumulonimbus-UAL_Extractor is a PowerShell based tool created by the Tesorion CERT team to help gather the Unified Audit Logging out of a…☆21Updated 2 years ago
- A browser extension for threat hunting that provides one UI for different SIEMs/EDRs and simplifies investigation☆77Updated last year
- My Jupyter Notebooks☆36Updated 9 months ago
- ☆22Updated 2 years ago
- Elastic version of SOC prime watcher rules☆30Updated last year
- Domain Response is a tool that is designed to help you automate the investigation for a domain. This tool is specificly designed to autom…☆50Updated 3 months ago
- ☆28Updated 2 months ago
- Cyber Threat Intelligence☆68Updated 2 weeks ago
- Ingesting Shodan Monitor Alerts to Microsoft Sentinel☆34Updated 2 years ago
- A list of RMMs designed to be used in automation to build alerts☆116Updated last month
- A series of PowerShell scripts to automate collection of forensic artefacts in most Incident Response environments☆65Updated 3 years ago
- Linux Baseline and Forensic Triage Tool - BETA☆57Updated 3 years ago
- God Mode Detection Rules☆134Updated last year
- ☆34Updated 2 years ago
- ReWrite of AChoir in Go for Cross Platform forensic artifact collection and processing☆42Updated last week
- The ultimate repository for remotely deploying Crowdstrike sensors quickly and discreetly on any other EDR platform.☆23Updated 4 months ago
- my MSTICpy practice and custom tools repository☆11Updated 8 months ago
- A repository to help CTI teams tackle the challenges around collection and research by providing guidance from experienced practitioners☆114Updated last year
- Easily create index of your SANS books☆19Updated 3 years ago
- A runbook for handling security incidents in cooperation with 0xsyr0☆52Updated 3 years ago
- ☆17Updated 3 years ago
- Conference presentations☆60Updated 2 months ago
- This guide describes a process for developing Cyber Threat Intelligence Priority Intelligence Requirements☆125Updated 2 years ago
- Digital Forensic Analysis and Incident Response Playbooks to handle real world security incidents☆49Updated last year
- CSIRT Jump Bag☆26Updated last year
- ☆29Updated 5 years ago