secmon-lab / alertchainLinks
Simple SOAR (Security Orchestration, Automation and Response) framework integrated with OPA/Rego
☆24Updated last week
Alternatives and similar repositories for alertchain
Users that are interested in alertchain are comparing it to the libraries listed below
Sorting:
- Serverless SOAR (Security Orchestration, Automation and Response) framework for automatic inspection and evaluation of security alert☆49Updated 2 years ago
- Hands-on Exercises for "Dangerous attack paths: Modern Development Environment Security - Devices and CI/CD pipelines"☆45Updated 2 years ago
- Trivy based vulnerability management service☆55Updated 4 months ago
- Kilt is a project that defines how to inject foreign apps into containers☆13Updated last year
- Decentralized Cyber Threat Intelligence Kaizen Framework☆26Updated 3 years ago
- The Dirty Pipe Vulnerability☆46Updated 3 years ago
- GCP Secret Management Demo Tool☆13Updated 6 years ago
- Kubernetes CTF☆43Updated 4 years ago
- Tracing security events in container with BPF☆15Updated last year
- CVEs <--> Metasploit-Framework modules☆25Updated 2 weeks ago
- DNS at ludicrous speed for Go, powered by XDP sockets. [EXPERIMENTAL]☆11Updated 2 weeks ago
- Zero trust proxy for using in corporate☆71Updated 5 months ago
- The tutorial of "Kubernetes Security for Microservices"☆14Updated last year
- RPM DB bindings for go☆65Updated last month
- OpenCSPM Community Controls☆14Updated 4 years ago
- Open Source runtime tool which help to detect malware code execution and run time mis-configuration change on a kubernetes cluster☆36Updated 3 years ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆28Updated 4 months ago
- [PoC] A socket-based tracing system for discovering network service dependencies. (renamed from transtracer)☆56Updated last week
- Scalable security network sensor as low interaction honeypot☆16Updated last year
- RustyBlue is a rust implementation of DeepblueCLI, a forensics log analyzer for finding evidence of compromise from windows event logs.☆72Updated 2 years ago
- RISKEN is a monitoring tool for visualizing security risks.☆22Updated 3 weeks ago
- VulsRepo is visualized based on the json report output in vuls.☆35Updated 3 years ago
- A Go library for parsing and verifying versions and version constraints.☆44Updated 2 months ago
- Build a local copy of Known Exploited Vulnerabilities Catalog by CISA. Server mode for easy querying.☆21Updated last week
- silence negligible CVE alerts using LLM☆59Updated 3 weeks ago
- General GitHub event notification tool to Slack with Open Policy Agent and Rego☆21Updated 2 months ago
- A recon tool for GCP Service Account Keys that requires no permissions☆22Updated 3 months ago
- Automated testing, generation & manipulation of #osquery packs☆73Updated 8 months ago
- Validate "terraform plan" changes against a customizable ruleset☆29Updated 8 months ago
- A Go implementation and parser for Sigma rules.☆88Updated 2 months ago