tstromberg / ttp-benchLinks
Adversary emulation for EDR/SIEM testing (macOS/Linux)
☆50Updated this week
Alternatives and similar repositories for ttp-bench
Users that are interested in ttp-bench are comparing it to the libraries listed below
Sorting:
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆59Updated last year
- Automated testing, generation & manipulation of #osquery packs☆73Updated 10 months ago
- ☆82Updated 2 months ago
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆32Updated 10 months ago
- Repository to archive GCP Documentation for local use☆16Updated 7 months ago
- K8s API Honeypot with Active Defense Capabilities☆42Updated last year
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆29Updated 6 months ago
- ☆46Updated 10 months ago
- ☆47Updated 5 months ago
- pocket guide for core detection engineering concepts☆30Updated 2 years ago
- ☆180Updated 4 months ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆72Updated 2 years ago
- Fun tools around the EBS Direct API☆19Updated 4 years ago
- Modron - Cloud security compliance☆34Updated 9 months ago
- A recon tool for GCP Service Account Keys that requires no permissions☆24Updated 4 months ago
- Pentester-focused Docker registry tool to enumerate and pull images☆33Updated last month
- Golang-based SDK to CrowdStrike's APIs☆72Updated last week
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆104Updated last year
- Compares and analyzes GCP IAM roles.☆77Updated 6 months ago
- Clean accounts over permissions in GCP infra at scale☆71Updated 2 years ago
- Security Alert Decoration☆27Updated last month
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆56Updated 7 months ago
- ☆12Updated 2 months ago
- Tool for obfuscating and deobfuscating data.☆72Updated last year
- ForgeArmory provides TTPs that can be used with the TTPForge (https://github.com/facebookincubator/ttpforge).☆117Updated 11 months ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆110Updated 2 weeks ago
- ☆114Updated 3 weeks ago
- Knowledge Report Alert & Normalization Generator☆27Updated last year
- Semgrep-based Policy Controller for Kubernetes☆47Updated 5 months ago
- AWS STS token decoder☆42Updated 5 months ago