tenable / atomic-red-teamLinks
Small and highly portable detection tests based on MITRE's ATT&CK.
☆10Updated 9 months ago
Alternatives and similar repositories for atomic-red-team
Users that are interested in atomic-red-team are comparing it to the libraries listed below
Sorting:
- Sharing Threat Hunting runbooks☆25Updated 6 years ago
- My Jupyter Notebooks☆36Updated 8 months ago
- A few quick recipes for those that do not have much time during the day☆22Updated last year
- Cyber Analytics Platform and Examination System (CAPES) Project Page☆14Updated 3 years ago
- SANS Slingshot Linux Distribution☆55Updated 5 years ago
- Acheron is a RESTful vulnerability assessment and management framework built around search and dedicated to terminal extensibility.☆32Updated 2 years ago
- ☆39Updated 5 years ago
- Open source training materials for law-enforcement and organisations interested in DFIR.☆62Updated 6 months ago
- Table Top Exercise (TTX) for Computer Security Incident Response (CSIRT) teams. The templatized artifacts provided will hopefully help te…☆43Updated 5 years ago
- Use Terraform to Provision Your Own Cloud-Based Remote Browsing Workstation☆26Updated last year
- ☆55Updated 4 years ago
- Tool used to perform threat intelligence against packet data☆36Updated 10 months ago
- DNS Dashboard for hunting and identifying beaconing☆16Updated 5 years ago
- Collection of walkthroughs on various threat hunting techniques☆76Updated 5 years ago
- ☆79Updated 3 weeks ago
- Generate a histogram of TCP and UDP payload bytes from a pcap file☆24Updated 3 years ago
- ☆30Updated 7 years ago
- Python command line tool used for generating GIAC Certification indexes.☆29Updated 2 years ago
- Indices for courses in SANS' Network Security Operations curriculum☆16Updated 9 years ago
- CSIRT Jump Bag☆26Updated last year
- A CALDERA plugin☆26Updated last month
- ☆11Updated 4 years ago
- Threat Hunter's Knowledge Base☆22Updated 3 years ago
- A python script to acquire multiple aws ec2 instances in a forensically sound-ish way☆38Updated 4 years ago
- Intelligence around common attacker behaviors (MITRE ATT&CK TTPs), in the form of ATT&CK Navigator "layer" json files.☆35Updated 3 years ago
- Tool for quickly gathering information from Shodan.io about the number of IPs which satisfy large number of different queries☆49Updated 2 years ago
- Submits multiple domains to VirusTotal API☆59Updated 4 years ago
- an awesome list of active defense resources☆127Updated 5 years ago
- Various components we use in labs☆10Updated 5 years ago
- Scapy packet fragment reassembly engines☆33Updated 4 years ago