shadawck / awesome-endpoint-detection-and-response
Collection of tool you need to have in your Endpoint Detection and Response arsenal
☆78Updated 10 months ago
Alternatives and similar repositories for awesome-endpoint-detection-and-response:
Users that are interested in awesome-endpoint-detection-and-response are comparing it to the libraries listed below
- Anything Sysmon related from the MSTIC R&D team☆148Updated 7 months ago
- Open IOC sharing platform☆54Updated 2 months ago
- yara detection rules for hunting with the threathunting-keywords project☆94Updated this week
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆87Updated 2 years ago
- Our collection of Wazuh detection rules for our Offense Lab☆12Updated 2 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- ☆41Updated 2 years ago
- pySigma Elasticsearch backend☆49Updated this week
- Cyber Threat Intelligence Data, Indicators, and Analysis☆81Updated last month
- ☆18Updated 3 years ago
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆111Updated last year
- Rules Shared by the Community from 100 Days of YARA 2023☆77Updated last year
- Look into EDR events from network☆23Updated 9 months ago
- Data visualization for blue teams☆124Updated 2 years ago
- Lupo - Malware IOC Extractor. Debugging module for Malware Analysis Automation☆104Updated 2 years ago
- Convert Sigma rules to Wazuh rules☆60Updated 9 months ago
- ☆86Updated 5 months ago
- ☆49Updated this week
- Visually inspect and force decode YARA and regex matches found in both binary and text data. With Colors.☆110Updated last month
- File analysis and management framework.☆79Updated last year
- Website for ail-typo-squatting library☆56Updated 8 months ago
- Collection of rules created using YARA-Signator over Malpedia☆125Updated 2 months ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆183Updated this week
- A MITRE Caldera plugin☆40Updated 2 months ago
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆84Updated 2 years ago
- Elastic Security Labs releases☆57Updated 3 months ago
- Cisco Orbital - Osquery queries by Talos☆129Updated 5 months ago
- A Self-Contained Open-Source Cyberattack Experimentation Testbed☆38Updated 3 weeks ago
- Threat Intel Platform for T-POTs☆139Updated this week
- Memory Forensic System on Cloud☆87Updated last year