thinkst / canary-utilsLinks
Collection of useful Canary tools
☆79Updated 2 weeks ago
Alternatives and similar repositories for canary-utils
Users that are interested in canary-utils are comparing it to the libraries listed below
Sorting:
- RRR (Rapid Response Reporting) is a collection of Incident Response Report objects. They are designed to help incident responders provid…☆37Updated 3 years ago
- Identify Azure blobs using a wordlist of account name and container name strings☆43Updated 2 months ago
- A tool that allows you to document and assess any security automation in your SOC☆46Updated 7 months ago
- ☆118Updated last year
- InsightVM helpful SQL queries☆64Updated 3 months ago
- ☆83Updated 2 months ago
- Open Threat Hunting Framework☆117Updated 2 years ago
- Cyber Range including Velociraptor + HELK system with a Windows VM for security testing and R&D. Azure and AWS terraform support.☆133Updated 2 years ago
- Conference presentations☆47Updated last year
- Unleash the power of the Falcon Platform at the CLI☆119Updated this week
- A browser extension for threat hunting that provides one UI for different SIEMs/EDRs and simplifies investigation☆77Updated last year
- A list of RMMs designed to be used in automation to build alerts☆110Updated last month
- Pushes Sysmon Configs☆88Updated 3 years ago
- Anvilogic Forge☆103Updated this week
- Dorothy is a tool to test security monitoring and detection for Okta environments☆182Updated 9 months ago
- ☆95Updated 2 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆70Updated 2 years ago
- The Threat Hunting In Rapid Iterations (THIRI) Jupyter notebook is designed as a research aide to let you rapidly prototype threat huntin…☆155Updated 3 years ago
- A Python package is used to execute Atomic Red Team tests (Atomics) across multiple operating system environments.☆138Updated 10 months ago
- ☆54Updated 3 years ago
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆202Updated 2 years ago
- ☆120Updated 2 weeks ago
- A collection of Powershell scripts that will help automate the build process for a Marvel domain.☆147Updated last year
- ☆41Updated 2 years ago
- Import CrowdStrike Threat Intelligence into your instance of MISP☆46Updated 2 months ago
- Web based S1 query navigator for one-click threat hunting☆19Updated 4 years ago
- A tool to modify timestamps in a packet capture to a user selected date☆31Updated 3 years ago
- Full of public notes and Utilities☆113Updated 3 months ago
- An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.☆57Updated 3 years ago
- Run Velociraptor on Security Onion☆37Updated 2 years ago