socfortress / iris-velociraptorartifact-module
IRIS Module to Run Any Velociraptor Artifact
☆11Updated last year
Alternatives and similar repositories for iris-velociraptorartifact-module:
Users that are interested in iris-velociraptorartifact-module are comparing it to the libraries listed below
- Docker image for Velocidex Velociraptor☆122Updated 3 weeks ago
- A production ready Dockered MISP☆218Updated this week
- A repository to share publicly available Velociraptor detection content☆139Updated this week
- ☆12Updated last year
- An opensource sigma conversion tool built using pysigma☆121Updated 3 months ago
- Windows Malware Investigation Scripts & Docs☆75Updated 4 months ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆200Updated last week
- Sample evtx files to use for testing hayabusa detection rules☆51Updated 4 months ago
- Purpleteam scripts simulation & Detection - trigger events for SOC detections☆183Updated 3 months ago
- ☆31Updated 3 years ago
- This repository contains helper scripts and custom configs to get the best out of Google's Timesketch project.☆108Updated last year
- MISP Playbooks☆188Updated last month
- A repository of my own Sigma detection rules.☆157Updated 6 months ago
- Sigma rules to share with the community☆119Updated 2 months ago
- CTI Blueprints is a free suite of templates and tools that helps Cyber Threat Intelligence analysts create high-quality, actionable repor…☆233Updated last week
- Integrate your Wazuh-Manager or Graylog with the SOCFortress Threat Intel Service☆29Updated 6 months ago
- LotL RMM☆152Updated this week
- Harness the power of Splunk for your investigations☆95Updated 2 weeks ago
- Welcome to the SEKOIA.IO Community repository!☆143Updated last week
- Set of SIGMA rules (>350) mapped to MITRE ATT&CK tactic and techniques☆354Updated 2 months ago
- Rules generated from our investigations.☆192Updated this week
- Scripts for rapid Windows endpoint "tactical triage" and investigations with Velociraptor and KAPE☆115Updated this week
- A collection of CVEs weaponized by ransomware operators☆111Updated 2 weeks ago
- A really good DFIR automation for collecting and analyzing evidence designed for cybersecurity professionals.☆153Updated 10 months ago
- A Ruleset to enhance detection capabilities of Ossec using Sysmon☆91Updated 2 years ago
- ☆51Updated 10 months ago
- Open Source Platform for storing, organizing, and searching documents related to cyber threats☆163Updated last year
- A repo that aims to centralize a current, running list of relevant parsers/tools for known DFIR artifacts☆59Updated 4 months ago
- Powershell module for VMWare vSphere forensics☆150Updated 4 months ago
- SOCFortress CoPilot☆263Updated this week