tstromberg / ttp-benchLinks
Adversary emulation for EDR/SIEM testing (macOS/Linux)
☆52Updated last month
Alternatives and similar repositories for ttp-bench
Users that are interested in ttp-bench are comparing it to the libraries listed below
Sorting:
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆60Updated last year
- ## Auto-archived due to inactivity. ## Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Securit…☆36Updated last year
- Automated testing, generation & manipulation of #osquery packs☆73Updated last year
- ☆84Updated 2 weeks ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆30Updated 8 months ago
- Pentester-focused Docker registry tool to enumerate and pull images☆37Updated 3 weeks ago
- Repository to archive GCP Documentation for local use☆16Updated 9 months ago
- ☆47Updated last year
- ☆182Updated 6 months ago
- K8s API Honeypot with Active Defense Capabilities☆42Updated last year
- ForgeArmory provides TTPs that can be used with the TTPForge (https://github.com/facebookincubator/ttpforge).☆117Updated last year
- Fun tools around the EBS Direct API☆19Updated 4 years ago
- AWS STS token decoder☆42Updated 7 months ago
- ☆14Updated 4 months ago
- ☆90Updated this week
- pocket guide for core detection engineering concepts☆30Updated 2 years ago
- Semgrep-based Policy Controller for Kubernetes☆47Updated 7 months ago
- Compares and analyzes GCP IAM roles.☆77Updated 8 months ago
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.☆23Updated last year
- Tool for obfuscating and deobfuscating data.☆74Updated last year
- ☆52Updated last year
- ☆51Updated last month
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆103Updated last year
- Modron - Cloud security compliance☆34Updated 11 months ago
- A recon tool for GCP Service Account Keys that requires no permissions☆24Updated 6 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆61Updated 2 years ago
- Golang-based SDK to CrowdStrike's APIs☆76Updated last week
- Clean accounts over permissions in GCP infra at scale☆71Updated 2 years ago
- ☆13Updated 9 months ago
- A repository to store Rad Fingerprinting data.☆24Updated last year