shadawck / awesome-endpoint-detection-and-response
Collection of tool you need to have in your Endpoint Detection and Response arsenal
☆86Updated last year
Alternatives and similar repositories for awesome-endpoint-detection-and-response:
Users that are interested in awesome-endpoint-detection-and-response are comparing it to the libraries listed below
- Anything Sysmon related from the MSTIC R&D team☆152Updated 10 months ago
- File analysis and management framework.☆82Updated last year
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆91Updated 2 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- Convert Sigma rules to Wazuh rules☆64Updated 11 months ago
- A Self-Contained Open-Source Cyberattack Experimentation Testbed☆40Updated last month
- ☆27Updated 4 years ago
- Rules Shared by the Community from 100 Days of YARA 2023☆76Updated last year
- Sensor Mappings to ATT&CK is a collection of resources to assist cyber defenders with understanding which sensors and events can help det…☆49Updated 3 weeks ago
- Look into EDR events from network☆23Updated 11 months ago
- Open source endpoint agent providing host information to Zeek. [v2]☆80Updated 5 months ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆108Updated 2 years ago
- Elastic Security Labs releases☆61Updated last week
- Repository of tools and resources for analyzing Docker containers☆64Updated last year
- Small web frontend for using openAI's GPT-3.5 and GPT-4's API☆53Updated 7 months ago
- ☆31Updated this week
- yara detection rules for hunting with the threathunting-keywords project☆115Updated last month
- OSSEM Data Dictionaries☆59Updated 2 months ago
- Collection of rules created using YARA-Signator over Malpedia☆127Updated 4 months ago
- Leveraging MISP indicators via a pDNS-based infrastructure as a poor man’s SOC.☆51Updated 3 months ago
- Threat Intel Platform for T-POTs☆144Updated last week
- Cyber Threat Intelligence Data, Indicators, and Analysis☆84Updated 3 months ago
- pySigma Elasticsearch backend☆50Updated this week
- SOARCA - The Open Source CACAO-based Security Orchestrator!☆72Updated this week
- A home for detection content developed by the delivr.to team☆68Updated 2 months ago
- Lupo - Malware IOC Extractor. Debugging module for Malware Analysis Automation☆106Updated 2 years ago
- ☆80Updated last year
- ☆68Updated last month
- ☆42Updated 2 years ago
- The LOLBins CTI-Driven (Living-Off-the-Land Binaries Cyber Threat Intelligence Driven) is a project that aims to help cyber defenders und…☆119Updated last year