spotify / terraform-google-grrLinks
A Terraform module for GRR: the distributed incident forensics and response framework
☆52Updated 5 years ago
Alternatives and similar repositories for terraform-google-grr
Users that are interested in terraform-google-grr are comparing it to the libraries listed below
Sorting:
- Remote Memory Acquisition Tool☆251Updated 5 years ago
- This script is used to generate some basic detections of the aws security services☆72Updated 3 years ago
- Python module for evaluation of AWS account best practices around incident handling readieness.☆55Updated 5 years ago
- Serverless, low cost, threat intel aggregation for enterprise or personal use, backed by ElasticSearch.☆141Updated 2 years ago
- Assimilate is a series of scripts for using the Naïve Bayes algorithm to find potential malicious activity in HTTP headers☆92Updated 8 years ago
- 1-Click push forensics evidence to the cloud☆144Updated 3 months ago
- Osquery Mangement Server☆115Updated 5 years ago
- Threat Feed Aggregation, Made Easy☆169Updated 5 years ago
- Bro/Zeek integration with osquery☆94Updated 5 years ago
- Security Monitoring Resolution Categories☆138Updated 4 years ago
- Terraform stack to deploy ELK Threat Hunting on Amazon AWS.☆88Updated 6 years ago
- Things to know when DFIR occurs near a vault deployment.☆44Updated 7 years ago
- ☆55Updated 3 years ago
- Extension to Cuckoo Sandbox open source projects, adds support to AWS cloud functionalities and enables running emulation on auto-scaling…☆135Updated 3 years ago
- misp-cloud - Cloud-ready images of MISP☆74Updated 3 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Updated 7 years ago
- InvestigationPlaybookSpec☆71Updated 8 years ago
- Automated Docker MISP container - Malware Information Sharing Platform and Threat Sharing☆177Updated 4 years ago
- Carbon Black API Resources☆93Updated 8 years ago
- Automated Use Case Testing☆171Updated 7 years ago
- A collection of notebooks built for defensive and offensive operations.☆77Updated 5 years ago
- A python module for orchestrating content acquisitions and analysis via amazon ssm.☆58Updated 2 years ago
- Threat Alert Logic Repository☆93Updated 6 years ago
- Main Build directory☆179Updated 6 years ago
- automate your MISP installs☆68Updated 5 years ago
- A simple Docker container that serves the MITRE ATT&CK Navigator web app☆27Updated 2 years ago
- Splunk Boss of the SOC v1 data set.☆113Updated 7 years ago
- Push-button Security Operations Center using Kubernetes☆13Updated 9 years ago
- A MITRE ATT&CK Navigator export for AWS GuardDuty Findings☆139Updated 4 years ago
- Docker container for MISP☆96Updated 7 years ago