socfortress / iris-velociraptorartifact-module
IRIS Module to Run Any Velociraptor Artifact
☆12Updated last year
Alternatives and similar repositories for iris-velociraptorartifact-module:
Users that are interested in iris-velociraptorartifact-module are comparing it to the libraries listed below
- A production ready Dockered MISP☆190Updated this week
- Docker image for Velocidex Velociraptor☆116Updated 6 months ago
- A curated repository of incident response playbooks☆69Updated last year
- A repository to share publicly available Velociraptor detection content☆124Updated this week
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆214Updated last year
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆87Updated 2 years ago
- This project is a SIEM with SIRP and Threat Intel, all in one.☆417Updated last month
- Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques☆128Updated 10 months ago
- Rules generated from our investigations.☆188Updated 2 months ago
- SOCFortress CoPilot☆238Updated this week
- ☆33Updated last year
- An opensource sigma conversion tool built using pysigma☆112Updated last month
- A collection of files with indicators supporting social media posts from Palo Alto Network's Unit 42 team to disseminate timely threat in…☆217Updated this week
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆149Updated this week
- Harness the power of Splunk for your investigations☆83Updated last month
- MISP Playbooks☆182Updated last month
- ☆51Updated 8 months ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆159Updated last year
- 🏴☠️💰 Another Ransomware gang tracker☆171Updated this week
- Sample evtx files to use for testing hayabusa detection rules☆45Updated 2 months ago
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆136Updated this week
- Set of SIGMA rules (>350) mapped to MITRE ATT&CK tactic and techniques☆329Updated this week
- ☆65Updated last month
- Docker image for MISP☆121Updated this week
- Integrate your Wazuh-Manager or Graylog with the SOCFortress Threat Intel Service☆28Updated 3 months ago
- ☆94Updated this week
- ☆11Updated last year
- LotL RMM☆113Updated 2 months ago
- Tools and Techniques for Blue Team / Incident Response☆22Updated last year
- Automated YARA Rule Standardization and Quality Assurance Tool☆179Updated last week