volexity / threat-intelLinks
Signatures and IoCs from public Volexity blog posts.
☆354Updated 3 months ago
Alternatives and similar repositories for threat-intel
Users that are interested in threat-intel are comparing it to the libraries listed below
Sorting:
- ☆513Updated 10 months ago
- Rules generated from our investigations.☆197Updated 2 months ago
- Automated YARA Rule Standardization and Quality Assurance Tool☆238Updated last week
- Set of SIGMA rules (>350) mapped to MITRE ATT&CK tactic and techniques☆377Updated 7 months ago
- Curated Windows event log Sigma rules used in Hayabusa and Velociraptor.☆194Updated this week
- Set of EVTX samples (>270) mapped to MITRE ATT&CK tactic and techniques to measure your SIEM coverage or developed new use cases.☆589Updated 7 months ago
- ☆141Updated last month
- Threat Hunting queries for various attacks☆239Updated this week
- Sigma rules from Joe Security☆218Updated 9 months ago
- Incident Response collection and processing scripts with automated reporting scripts☆308Updated last year
- A python script developed to process Windows memory images based on triage type.☆265Updated last year
- Threat Hunting tool about Sysmon and graphs☆334Updated 2 years ago
- ☆130Updated last year
- Automatically created C2 Feeds☆637Updated this week
- ☆212Updated 2 months ago
- A standalone SIGMA-based detection tool for EVTX, Auditd and Sysmon for Linux logs☆741Updated 4 months ago
- Sigma rule specification☆146Updated 2 weeks ago
- Implementation of RITA (Real Intelligence Threat Analytics) in Jupyter Notebook with improved scoring algorithm.☆204Updated 3 years ago
- Live forensic artifacts collector☆170Updated last year
- The Sigma command line interface based on pySigma☆158Updated this week
- Zeek-Formatted Threat Intelligence Feeds☆375Updated this week
- An easy to use PowerShell script to collect memory and disk forensics for DFIR investigations.☆330Updated 3 months ago
- MAL-CL (Malicious Command-Line)☆316Updated 2 years ago
- Indicators of Compromise☆217Updated last week
- Anything Sysmon related from the MSTIC R&D team☆156Updated last year
- Python library to parse and convert Sigma rules into queries (and whatever else you could imagine)☆481Updated last week
- Welcome to the SEKOIA.IO Community repository!☆163Updated last month
- Ransomware simulator written in Golang☆447Updated 3 years ago
- ☆197Updated last year
- Collection of private Yara rules.☆369Updated last month