tstromberg / ttp-benchLinks
Adversary emulation for EDR/SIEM testing (macOS/Linux)
☆49Updated last week
Alternatives and similar repositories for ttp-bench
Users that are interested in ttp-bench are comparing it to the libraries listed below
Sorting:
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆58Updated last year
- Automated testing, generation & manipulation of #osquery packs☆73Updated 9 months ago
- ☆81Updated 3 weeks ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆29Updated 5 months ago
- Modron - Cloud security compliance☆34Updated 7 months ago
- ☆180Updated 3 months ago
- Golang-based SDK to CrowdStrike's APIs☆71Updated 2 weeks ago
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆31Updated 9 months ago
- ☆46Updated 8 months ago
- ForgeArmory provides TTPs that can be used with the TTPForge (https://github.com/facebookincubator/ttpforge).☆115Updated 10 months ago
- Clean accounts over permissions in GCP infra at scale☆71Updated 2 years ago
- ☆45Updated 4 months ago
- K8s API Honeypot with Active Defense Capabilities☆40Updated last year
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆71Updated 2 years ago
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆104Updated last year
- Compares and analyzes GCP IAM roles.☆77Updated 4 months ago
- Repository to archive GCP Documentation for local use☆16Updated 5 months ago
- pocket guide for core detection engineering concepts☆29Updated 2 years ago
- ☆55Updated last week
- AWS STS token decoder☆41Updated 4 months ago
- Tool for obfuscating and deobfuscating data.☆72Updated last year
- kubernetes-for-soc aims to fast-track the learning curve for SOC analysts by enabling them to swiftly grasp the essential concepts and kn…☆54Updated last year
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆110Updated last week
- ☆34Updated 3 months ago
- ☆113Updated last week
- ☆30Updated last month
- ☆12Updated 6 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆61Updated 2 years ago
- A PoC to Simulate Ransomware Attack on AWS Environment☆32Updated 9 months ago
- ☆48Updated 9 months ago