shadawck / awesome-endpoint-detection-and-response
Collection of tool you need to have in your Endpoint Detection and Response arsenal
☆92Updated last year
Alternatives and similar repositories for awesome-endpoint-detection-and-response
Users that are interested in awesome-endpoint-detection-and-response are comparing it to the libraries listed below
Sorting:
- yara detection rules for hunting with the threathunting-keywords project☆117Updated this week
- ☆69Updated 2 months ago
- Anything Sysmon related from the MSTIC R&D team☆153Updated 11 months ago
- ☆43Updated 2 years ago
- Elastic Security Labs releases☆64Updated last month
- A MITRE Caldera plugin☆43Updated 5 months ago
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆92Updated 3 years ago
- Open source endpoint agent providing host information to Zeek. [v2]☆80Updated this week
- Look into EDR events from network☆23Updated 2 weeks ago
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆114Updated last year
- File analysis and management framework.☆83Updated last year
- Enhance your malware detection with WAF + YARA (WAFARAY)☆108Updated 2 years ago
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆65Updated last year
- Small web frontend for using openAI's GPT-3.5 and GPT-4's API☆53Updated last month
- Collection of rules created using YARA-Signator over Malpedia☆129Updated 6 months ago
- Rules Shared by the Community from 100 Days of YARA 2023☆76Updated 2 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- Convert Sigma rules to Wazuh rules☆64Updated last year
- Open IOC sharing platform☆56Updated 6 months ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆104Updated this week
- pySigma Elasticsearch backend☆53Updated 2 weeks ago
- A Self-Contained Open-Source Cyberattack Experimentation Testbed☆41Updated 2 months ago
- Sensor Mappings to ATT&CK is a collection of resources to assist cyber defenders with understanding which sensors and events can help det…☆50Updated last month
- ☆65Updated 4 years ago
- OSSEM Data Dictionaries☆59Updated 3 months ago
- This repository is for Indicators of Compromise (IOCs) from Zscaler ThreatLabz public reports☆73Updated 5 months ago
- Roota is a public-domain language of threat detection and response that combines native queries from a SIEM, EDR, XDR, or Data Lake with …☆127Updated 9 months ago
- ☆80Updated 2 years ago
- Data visualization for blue teams☆126Updated 2 years ago
- A curated list of awesome things related to TheHive & Cortex☆179Updated 3 years ago