target / strelkaLinks
Real-time, container-based file scanning at enterprise scale
☆940Updated 3 weeks ago
Alternatives and similar repositories for strelka
Users that are interested in strelka are comparing it to the libraries listed below
Sorting:
- Mapping the MITRE ATT&CK Matrix with Osquery☆802Updated 2 years ago
- A framework for developing alerting and detection strategies for incident response.☆782Updated 3 years ago
- Cortex Analyzers Repository☆466Updated last week
- Actionable analytics designed to combat threats☆998Updated 3 years ago
- A knowledge base of actionable Incident Response techniques☆648Updated 3 years ago
- Beagle is an incident response and digital forensics tool which transforms security logs and data into graphs.☆1,322Updated 2 years ago
- DFIRTrack - The Incident Response Tracking Application☆525Updated 11 months ago
- Open Source Security Events Metadata (OSSEM)☆1,273Updated 2 years ago
- A set of Zeek scripts to detect ATT&CK techniques.☆600Updated last year
- A repository for using osquery for incident detection and response☆859Updated 3 years ago
- Online hash checker for Virustotal and other services☆834Updated 5 months ago
- Extract and aggregate threat intelligence.☆880Updated last year
- A utility to safely generate malicious network traffic patterns and evaluate controls.☆1,320Updated last year
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders☆936Updated last year
- A Python package to interact with the Mitre ATT&CK Framework☆477Updated last year
- A Splunk app mapped to MITRE ATT&CK to guide your threat hunts☆1,163Updated 2 years ago
- Re-play Security Events☆1,669Updated last year
- Your Everyday Threat Intelligence☆1,894Updated last week
- A repository of curated datasets from various attacks☆672Updated this week
- Python Script to access ATT&CK content available in STIX via a public TAXII server☆566Updated 8 months ago
- Documentation of TheHive☆398Updated last year
- An information security preparedness tool to do adversarial simulation.☆1,131Updated 6 years ago
- Repository of YARA rules made by Trellix ATR Team☆608Updated 5 months ago
- IntelMQ is a solution for IT security teams for collecting and processing security feeds using a message queuing protocol.☆1,076Updated this week
- FAME Automates Malware Evaluation☆908Updated last week
- Digital Forensics artifact repository☆1,152Updated this week
- ReversingLabs YARA Rules☆840Updated last month
- Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux☆501Updated 2 years ago
- Digital Forensics Investigation Platform☆840Updated 10 months ago
- Python library using the MISP Rest API☆471Updated 2 weeks ago