sttor / osquery-wazuh-responseLinks
Active Response plugin. Osquery to execute wazuh/ossec active response plugins. You can write your own plugins, easy to plug
☆11Updated 5 years ago
Alternatives and similar repositories for osquery-wazuh-response
Users that are interested in osquery-wazuh-response are comparing it to the libraries listed below
Sorting:
- Documentation used for Shuffle☆20Updated this week
- Examples on how to maintain security/compliance as code and to automate SecOps using the JupiterOne platform.☆54Updated last year
- Rapid cybersecurity toolkit based on Elastic in Docker. Designed to quickly build elastic-based environments to analyze and execute threa…☆18Updated 5 years ago
- A collection of awesome tools, software, libraries, learning tutorials & videos, frameworks, best practices and technical resources abou…☆57Updated 2 years ago
- Sharing Threat Hunting runbooks☆25Updated 6 years ago
- Workflows for Shuffle☆23Updated 2 years ago
- OSSEM Common Data Model☆56Updated 3 years ago
- defendA Data Lake. A firehose pipeline to athena providing enrichment and normalization for security events☆16Updated 2 years ago
- A library of data visualization dashboard templates that can be imported into JupiterOne.☆18Updated last month
- An ongoing collection of of AWS tools, frameworks, libraries, learning tutorials for InfoSec and security professionals☆24Updated 3 years ago
- Osquery Resources☆62Updated 6 years ago
- Posture Attribute Collection and Evaluation☆23Updated 2 years ago
- Short deep dive into Threat Hunting on AWS☆14Updated last year
- A Lambda-powered Security Orchestration framework for AWS GuardDuty☆53Updated 5 years ago
- Collection of Dashboards for Threat Hunting and more!☆70Updated 4 years ago
- ☆10Updated 3 years ago
- This repository contains the research and components of our research into using Sigma for AWS Incident Response.☆30Updated 2 years ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆53Updated 3 years ago
- OSCAL SSP content for technologies shipped by Red Hat☆15Updated 2 years ago
- Falcon Integration Gateway (FIG)☆20Updated last week
- Jimi is an automation first no-code platform designed and developed originally for Security Orchestration and Response. Since its launch …☆167Updated last year
- A python script to acquire multiple aws ec2 instances in a forensically sound-ish way☆38Updated 3 years ago
- Corelight-Ansible-Roles are a collection of Ansible Roles and playbooks that install, configure, run and manage a variety of Corelight, S…☆16Updated 4 years ago
- ☆31Updated 3 months ago
- Remotely collect linux live forensics artifacts.☆14Updated 3 years ago
- ☁️Haven GRC - easier governance, risk, and compliance 👨⚕️👮♀️🦸♀️🕵️♀️👩🔬☆103Updated 4 years ago
- Core incident handling plugins for aws_ir cli, incident pony, and more.☆22Updated 7 years ago
- Cisco Orbital - Osquery queries by Talos☆136Updated last year
- Serverless honeytoken 🕵🏻♂️☆81Updated 2 years ago
- Legal, procedural and policies document templates for operating MISP and information sharing communities☆38Updated 2 years ago