shadawck / awesome-endpoint-detection-and-responseLinks
Collection of tool you need to have in your Endpoint Detection and Response arsenal
☆102Updated last year
Alternatives and similar repositories for awesome-endpoint-detection-and-response
Users that are interested in awesome-endpoint-detection-and-response are comparing it to the libraries listed below
Sorting:
- File analysis and management framework.☆86Updated last year
- yara detection rules for hunting with the threathunting-keywords project☆127Updated 3 months ago
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆94Updated 3 years ago
- This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.☆116Updated last year
- Data visualization for blue teams☆126Updated 2 years ago
- A Self-Contained Open-Source Cyberattack Experimentation Testbed☆41Updated 2 months ago
- ☆34Updated 2 weeks ago
- ☆68Updated 4 years ago
- Collection of rules created using YARA-Signator over Malpedia☆134Updated 9 months ago
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆65Updated last year
- A curated list of awesome things related to Suricata☆187Updated 5 months ago
- A visualized overview of the Initial Access Broker (IAB) cybercrime landscape☆114Updated 3 years ago
- Cyber Threat Intelligence Data, Indicators, and Analysis☆95Updated last month
- YaraScanner is a file pattern-matching tool based on YARA rules.☆58Updated 2 years ago
- QuickSand document and PDF malware analysis tool written in Python☆128Updated 3 months ago
- Small web frontend for using openAI's GPT-3.5 and GPT-4's API☆56Updated 4 months ago
- Website for ail-typo-squatting library☆63Updated last year
- Enhance your malware detection with WAF + YARA (WAFARAY)☆109Updated 2 years ago
- Further investigation in to APT campaigns disclosed by private security firms and security agencies☆86Updated 3 years ago
- Repository of tools and resources for analyzing Docker containers☆67Updated last year
- OpenCTI–Wazuh connector looking for indicators in Wazuh and creating sightings☆18Updated last year
- ☆69Updated 6 months ago
- Look into EDR events from network☆23Updated 3 months ago
- CyberChef - Detection Engineering, TI, DFIR, Malware Analysis Edition☆65Updated 3 years ago
- Rules Shared by the Community from 100 Days of YARA 2023☆78Updated 2 years ago
- ☆80Updated 2 years ago
- Entropy scanner for Linux to detect packed or encrypted binaries related to malware. Finds malicious files and Linux processes and gives …☆160Updated last year
- An ongoing & curated collection of awesome software best practices and remediation techniques, libraries and frameworks, E-books and vide…☆46Updated 2 years ago
- Threat Intel Platform for T-POTs☆161Updated last week
- BSidesRoc 2022 Linux Malware/Forensics Course☆77Updated 3 years ago