Mapping your datasources and detections to the MITRE ATT&CK Navigator framework.
☆61Jun 16, 2026Updated last month
Alternatives and similar repositories for mitre-attack-mapping
Users that are interested in mitre-attack-mapping are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Detect Tactics, Techniques & Combat Threats☆2,323Updated this week
- A datasource assessment on an event level to show potential coverage or the MITRE ATT&CK framework☆357Nov 3, 2020Updated 5 years ago
- attack2jira automates the process of standing up a Jira environment that can be used to track and measure ATT&CK coverage☆114Mar 26, 2023Updated 3 years ago
- See adversary, do adversary: Simple execution of commands for defensive tuning/research (now with more ELF on the shelf)☆109Feb 12, 2023Updated 3 years ago
- Actionable analytics designed to combat threats☆1,012May 25, 2022Updated 4 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Re-play Security Events☆1,796Mar 20, 2024Updated 2 years ago
- ☆11Jun 12, 2023Updated 3 years ago
- Microsoft GPO Readiness Lateral Movement Detection Tool☆16Dec 8, 2022Updated 3 years ago
- This content is analysis and research of the data sources currently listed in ATT&CK.☆412Sep 13, 2023Updated 2 years ago
- ☆19Sep 3, 2018Updated 7 years ago
- Threat Report ATT&CK™ Mapping (TRAM) is a tool to aid analyst in mapping finished reports to ATT&CK.☆353Oct 6, 2021Updated 4 years ago
- Browser Shortcuts for Cyber Security Related Online Services☆78Feb 4, 2021Updated 5 years ago
- ☆10May 25, 2023Updated 3 years ago
- A MITRE Caldera plugin written in Python 3 used to convert Red Canary Atomic Red Team Tests to MITRE Caldera Stockpile YAML ability files…☆74Oct 14, 2021Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- A Darktrace CLI written in Python☆16Nov 28, 2019Updated 6 years ago
- 🚨ATTENTION🚨 The CVE mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept here as…☆245Apr 3, 2024Updated 2 years ago
- Sample code for 3rd party developers working on Android On Snapdragon☆12Sep 4, 2024Updated last year
- Security Monitoring Resolution Categories☆138Nov 25, 2021Updated 4 years ago
- Useful Powershell modules.☆11Mar 10, 2017Updated 9 years ago
- 🚨ATTENTION🚨 The NIST 800-53 mappings have migrated to the Center’s Mappings Explorer project. See README below. This repository is kept…☆499Apr 3, 2024Updated 2 years ago
- Basic c2-matrix analysis enviroment using Suricata + Wazuh + Elastic stack☆13Apr 18, 2020Updated 6 years ago
- Searches for Insider Threat Hunting☆30May 2, 2019Updated 7 years ago
- Some resources to facilitate my blog on auditd for security monitoring☆13Mar 23, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Python Script to access ATT&CK content available in STIX via a public TAXII server☆571Dec 19, 2025Updated 7 months ago
- A lightweight Python module to interact with the MITRE ATT&CK® Enterprise dataset. Built for speed with minimal dependencies. Read the do…☆11Nov 24, 2025Updated 8 months ago
- OSSEM Detection Model☆183Oct 11, 2022Updated 3 years ago
- Scripts to automate standing up C2 infra with firewall settings inside of DigitalOcean.☆18Feb 5, 2021Updated 5 years ago
- Duo MFA auditing tool to test users' likelihood of approving unexpected push notifications☆13Apr 20, 2018Updated 8 years ago
- Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK☆1,076Nov 28, 2024Updated last year
- Converts Sigma detection rules to a Splunk alert configuration.☆117May 18, 2020Updated 6 years ago
- A Powershell incident response framework☆1,660Nov 22, 2022Updated 3 years ago
- VulnServer ROP: An Educational Platform for Exploring Buffer Overflow Vulnerabilities and Return-Oriented Programming Techniques☆18Apr 14, 2024Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Dettectinator - The Python library to your DeTT&CT YAML files.☆117Jan 22, 2026Updated 6 months ago
- A framework for developing alerting and detection strategies for incident response.☆894Sep 8, 2025Updated 11 months ago
- A list of Mitre Caldera compatible emulation-plans☆14Feb 1, 2021Updated 5 years ago
- Python module to interact with the MITRE attack framework via the MITRE API☆92Nov 14, 2017Updated 8 years ago
- Main Build directory☆179May 1, 2019Updated 7 years ago
- ATT&CK Remote Threat Hunting Incident Response☆203Dec 8, 2024Updated last year
- AWS container security survey 2020☆11Dec 2, 2020Updated 5 years ago