shadawck / awesome-endpoint-detection-and-responseLinks
Collection of tool you need to have in your Endpoint Detection and Response arsenal
☆97Updated last year
Alternatives and similar repositories for awesome-endpoint-detection-and-response
Users that are interested in awesome-endpoint-detection-and-response are comparing it to the libraries listed below
Sorting:
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆93Updated 3 years ago
- Convert Sigma rules to Wazuh rules☆67Updated last year
- Anything Sysmon related from the MSTIC R&D team☆153Updated last year
- Fast IOC and YARA Scanner☆80Updated 5 years ago
- ☆31Updated last week
- Wazuh integration TheHive☆35Updated 2 years ago
- Docker image for Velocidex Velociraptor☆126Updated 3 months ago
- ☆43Updated 2 years ago
- yara detection rules for hunting with the threathunting-keywords project☆121Updated last month
- Repository of tools and resources for analyzing Docker containers☆65Updated last year
- A Self-Contained Open-Source Cyberattack Experimentation Testbed☆41Updated last week
- Open source endpoint agent providing host information to Zeek. [v2]☆83Updated last week
- File analysis and management framework.☆84Updated last year
- ☆54Updated this week
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆86Updated 3 years ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆63Updated 2 years ago
- ☆80Updated 2 years ago
- YARA rule metadata specification and validation utility / Spécification et validation pour les règles YARA☆104Updated last month
- A MITRE Caldera plugin☆43Updated 6 months ago
- OSSEM Data Dictionaries☆60Updated 4 months ago
- Look into EDR events from network☆23Updated last month
- LOKI2 - Simple IOC and YARA Scanner☆93Updated 10 months ago
- ☆68Updated 3 months ago
- Collection of rules created using YARA-Signator over Malpedia☆130Updated 7 months ago
- ☆130Updated last year
- Suricata rules for network anomaly detection☆164Updated last month
- Cisco Orbital - Osquery queries by Talos☆131Updated 9 months ago
- ☆131Updated 2 weeks ago
- Security Onion + Automation + Response Lab including n8n and Velociraptor☆109Updated 2 years ago
- Rapidly Search and Hunt through Linux Forensics Artifacts☆193Updated last year