Collaborative, web-based case management for incident response
☆24Jan 23, 2024Updated 2 years ago
Alternatives and similar repositories for true-positive
Users that are interested in true-positive are comparing it to the libraries listed below
Sorting:
- Please use https://github.com/veeral-patel/true-positive instead☆71Jan 19, 2023Updated 3 years ago
- Pritunl Access Control System☆10Feb 16, 2023Updated 3 years ago
- Threat hunting repo for my independent study on threat hunting with OSQuery☆27Jan 16, 2018Updated 8 years ago
- MalwareAnalysis☆12Dec 19, 2020Updated 5 years ago
- The official Prelude SIEM GitHub of https://www.prelude-siem.org☆40Jun 12, 2016Updated 9 years ago
- Parser for Sdba memory pool tags☆21Jul 16, 2021Updated 4 years ago
- A Real-time Event Correlation platform☆16Jan 30, 2017Updated 9 years ago
- Mass Triage Tools☆20Dec 16, 2025Updated 2 months ago
- Swagger/ OpenAPI specifications for security products and services☆77Feb 9, 2026Updated last month
- Firepit - STIX Columnar Storage☆18Jun 5, 2024Updated last year
- The Repository pattern adds a separation layer between the data and domain layers of an application. It also makes the data access parts …☆28Jul 19, 2012Updated 13 years ago
- Microsoft Sentinel, Defender for Endpoint - KQL Detection Packs☆55Jul 20, 2023Updated 2 years ago
- Workflows for Shuffle☆24Oct 26, 2022Updated 3 years ago
- UI based on react awesome query builder to visualize rule building on rule engine☆29Apr 29, 2022Updated 3 years ago
- The project is called GreatSCT (Great Scott). GreatSCT is an open source project to generate application white list bypasses. This tool i…☆29May 5, 2018Updated 7 years ago
- Intelligence around common attacker behaviors (MITRE ATT&CK TTPs), in the form of ATT&CK Navigator "layer" json files.☆36Aug 12, 2022Updated 3 years ago
- My favorite resources and tools for malware analysis.☆43Aug 18, 2020Updated 5 years ago
- A lightweight bash script that automatically deploys and updates all of your docker containers run with 'docker run'. MacOS and Linux com…☆34Dec 18, 2024Updated last year
- ☆11Updated this week
- CloudPathSniffer is an open-source, easy to use and extensible Cloud Anomaly Detection platform designed to help security teams to find h…☆13Nov 30, 2023Updated 2 years ago
- This repository contains Splunk queries to hunt some anomalies☆46Jul 28, 2022Updated 3 years ago
- Notes on managing and coordinating the response to major cyber incidents☆41May 30, 2020Updated 5 years ago
- Dashboard Boilerplate from Mapbox Live☆39Dec 28, 2019Updated 6 years ago
- OSINT=*, Chrome extension that searches all the threat feeds☆11Dec 5, 2021Updated 4 years ago
- Remote Access and Push Notifications for Node-RED☆11Dec 31, 2025Updated 2 months ago
- MFT Fast Transcoder is a fast forensic tool to analyze MFT of NTFS partitions.☆12Feb 27, 2023Updated 3 years ago
- Personal notes and lab results pertaining to the text "Practical Malware Analysis" by Michael Sikorski and Andrew Honiq.☆12Oct 28, 2017Updated 8 years ago
- GPO Bypass is a tool / proof-of-concept that highlights how one can bypass Group Policy enforced policies. It uses Firefox as an example.☆14Jan 28, 2023Updated 3 years ago
- An AI trading agents platform built on LangChain☆28Nov 11, 2025Updated 3 months ago
- Indicators of compromise relating to our report on APT10's targeting of global MSPs☆10Sep 26, 2017Updated 8 years ago
- OpenSelfie is an Open Source (hardware and software) photobooth based on the Raspberry Pi and Wyolum's AlaMode☆15Oct 15, 2015Updated 10 years ago
- Sample queries for Advanced hunting in Windows Defender ATP☆11Apr 22, 2020Updated 5 years ago
- GPS software using open street maps. Draw tracks, waypoints. Can find actual position.☆11Jun 1, 2011Updated 14 years ago
- A Virtual Reality platform for interactive, immersive network exploration.☆39Sep 18, 2023Updated 2 years ago
- OpenFGA website and documentation☆48Updated this week
- A repo to centralize some of the regular expressions I've found useful over the course of my DFIR career.☆107Nov 23, 2022Updated 3 years ago
- A repository to share publicly available Velociraptor detection content☆196Updated this week
- Import AbuseCH IOC Feeds into MISP☆12Feb 17, 2021Updated 5 years ago
- ☆11Dec 3, 2025Updated 3 months ago