vulsio / go-cti
Build a local copy of MITRE ATT&CK and CAPEC. Server mode for easy querying.
☆30Updated last month
Related projects ⓘ
Alternatives and complementary repositories for go-cti
- A Go implementation and parser for Sigma rules.☆84Updated 2 months ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆42Updated 3 years ago
- Fast, simple library in Go to fetch CVEs from the National Vulnerability Database feeds☆25Updated last year
- APIs for generating STIX 2.1 and TAXII 2.1 messages with Go (Golang)☆51Updated last year
- go-atomicredteam is a Golang application to execute tests as defined in the atomics folder of Red Canary's Atomic Red Team project (https…☆46Updated last year
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆60Updated 7 months ago
- Firepit - STIX Columnar Storage☆15Updated 5 months ago
- A Go implementation of JARM☆119Updated 2 years ago
- Threat Detection & Anomaly Detection rules for popular open-source components☆50Updated 2 years ago
- Collect autorun records from running system☆59Updated 2 years ago
- Cisco Orbital - Osquery queries by Talos☆122Updated 2 months ago
- ☆42Updated last year
- An application allowing users to explore, create, annotate, and share extensions of the MITRE ATT&CK® knowledge base. This repository con…☆42Updated this week
- Automatic detection engineering technical state compliance☆50Updated 4 months ago
- ☆46Updated this week
- Import specific data sources into the Sigma generic and open signature format.☆77Updated 2 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆66Updated 5 months ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆63Updated last month
- A CALDERA plugin☆65Updated 8 months ago
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 2 years ago
- Go library for ETW (Event Tracing for Windows) events processing☆59Updated 2 years ago
- A Golang API for TheHive☆13Updated 4 years ago
- A MITRE Caldera plugin☆36Updated 3 months ago
- Threat Mapping Catalogue☆17Updated 3 years ago
- Golang library that implements a sigma log rule parser and match engine.☆91Updated 3 months ago
- Sensor Mappings to ATT&CK is a collection of resources to assist cyber defenders with understanding which sensors and events can help det…☆45Updated 5 months ago
- Golang Parser for Microsoft Event Logs☆98Updated 3 months ago
- Library of threat hunts to get any user started!☆40Updated 4 years ago
- This repository hosts community contributed Kestrel huntflows (.hf) and huntbooks (.ipynb)☆30Updated 10 months ago
- This repository contains generated contextual data utilized by pyattck.☆17Updated 3 months ago