Practical Orientation Of MVISION EDR Query Language
☆35Feb 10, 2023Updated 3 years ago
Alternatives and similar repositories for RTS-Queries
Users that are interested in RTS-Queries are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Collection of various MVISION EDR Integration Scripts☆32Dec 12, 2022Updated 3 years ago
- Automated threat intelligence collection with McAfee ATD, OpenDXL and MISP☆22Feb 21, 2020Updated 6 years ago
- This repository contains a set of rules samples that can be directly used with Trellix Endpoint Security, in the Exploit Prevention polic…☆31Mar 26, 2026Updated last month
- Integration between MISP platform and McAfee MVISION EDR☆14Mar 14, 2022Updated 4 years ago
- Connector for pulling and converting STIX information from TAXII Service Providers into CB Feeds.☆15Jul 1, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆18May 31, 2022Updated 3 years ago
- Automated Real-Time Threat Hunting with ATD, Active Response and Elasticsearch/Kibana☆10Aug 17, 2018Updated 7 years ago
- Exports MISP events to STIX and ingest into McAfee ESM☆15Feb 12, 2020Updated 6 years ago
- Public Landing Page☆16Jan 7, 2023Updated 3 years ago
- User Feedback Space of #MitreAssistant☆38May 19, 2023Updated 2 years ago
- Expert Investigation Guides☆51Mar 18, 2021Updated 5 years ago
- ☆13Feb 6, 2018Updated 8 years ago
- Parse Chrome History and Downloads into TSV or TLN format☆15Sep 3, 2016Updated 9 years ago
- An IntelliJ plugin for RPM SPEC file support☆12Jul 28, 2025Updated 9 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- McAfee Threat Intelligence Exchange (TIE) client library for use with the OpenDXL Python Client☆15Mar 17, 2020Updated 6 years ago
- Scans a malware file and lists down the related MBC (Malware Behavior Catalog) details.☆23Jul 11, 2022Updated 3 years ago
- Carbon Black - LastLine Binary Detonation Connector☆11May 22, 2023Updated 2 years ago
- Simple powershell script to find living off land binaries and scripts on a system.☆22Aug 24, 2019Updated 6 years ago
- ☆10Oct 22, 2017Updated 8 years ago
- INOFFICIAL nfdump with libnfread: library for reading netflow records from nfdump files☆13Jan 28, 2014Updated 12 years ago
- PowerShell scripts for running Magnet RESPONSE forensic collection tool in large enterprises.☆34Jan 9, 2025Updated last year
- My Jupyter Notebooks☆37Mar 14, 2025Updated last year
- ☆29Dec 21, 2025Updated 4 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- THOR Thunderstorm Collectors☆27Apr 27, 2026Updated last week
- Threat Hunting tool about Sysmon and graphs☆339May 28, 2023Updated 2 years ago
- Carbon Black - Facebook Threat Exchange Connector☆13May 1, 2023Updated 3 years ago
- This repository contains ansible roles to automatically deploy the latest version of simplelogin with some optional extra's☆11Jun 25, 2025Updated 10 months ago
- Your Open-Source SOC Assistant☆12Apr 5, 2023Updated 3 years ago
- Research indicators and detection rules☆69Sep 20, 2023Updated 2 years ago
- Cyber threat intelligence crates for Rust☆16Jan 22, 2024Updated 2 years ago
- A CALDERA plugin☆28Apr 27, 2026Updated last week
- CLI tool for testing Office documents with macros using MaliciousMacroBot☆12Dec 3, 2023Updated 2 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- 🌴 The STIX2 Pattern expression parser for humans☆26Jun 29, 2019Updated 6 years ago
- Notepad++ Syntax Highlighting for Languages Used by Cyber Security Professionals☆14May 31, 2020Updated 5 years ago
- AWS EKS Cluster Forensics☆23Aug 16, 2021Updated 4 years ago
- Chocolatey packages supporting the analysis environment projects FLARE-VM & Commando VM.☆224Apr 29, 2026Updated last week
- Repository for SPEED SIEM Use Case Framework☆60May 2, 2020Updated 6 years ago
- Automated OpenDXL Output information via IntelMQ☆14Jul 20, 2017Updated 8 years ago
- A threat sighting collects the behavior of a real threats and the observables used during its engagement.☆12Mar 29, 2022Updated 4 years ago