vulsio / go-cti
Build a local copy of MITRE ATT&CK and CAPEC. Server mode for easy querying.
☆32Updated this week
Alternatives and similar repositories for go-cti:
Users that are interested in go-cti are comparing it to the libraries listed below
- APIs for generating STIX 2.1 and TAXII 2.1 messages with Go (Golang)☆52Updated 2 months ago
- A Go implementation and parser for Sigma rules.☆86Updated 5 months ago
- enpoint detection / live analysis & sandbox host / signatures quality test☆44Updated 3 years ago
- go-atomicredteam is a Golang application to execute tests as defined in the atomics folder of Red Canary's Atomic Red Team project (https…☆49Updated last year
- Collect autorun records from running system☆60Updated 3 years ago
- A Golang API for TheHive☆13Updated 4 years ago
- Firepit - STIX Columnar Storage☆16Updated 8 months ago
- Golang library that implements a sigma log rule parser and match engine.☆94Updated 7 months ago
- MITRE Engage™ is a framework for conducting Denial, Deception, and Adversary Engagements.☆62Updated 10 months ago
- Golang Parser for Microsoft Event Logs☆101Updated last month
- Factual-rules-generator is an open source project which aims to generate YARA rules about installed software from a machine.☆76Updated 3 years ago
- A CALDERA plugin for ATT&CK Evaluations Round 1☆33Updated last year
- Go library for ETW (Event Tracing for Windows) events processing☆62Updated 2 years ago
- A MITRE Caldera plugin☆41Updated 3 months ago
- Signature engine for all your logs☆167Updated last year
- Import Mitre Att&ck into Neo4j database☆34Updated 2 years ago
- Yara powered NIDS with high speed packet capture powered by PF_RING☆68Updated 9 months ago
- Library of threat hunts to get any user started!☆42Updated 4 years ago
- A pure Go library for working with Structured Threat Information Expression (STIX™) version 2.x data☆23Updated 4 months ago
- Sensor Mappings to ATT&CK is a collection of resources to assist cyber defenders with understanding which sensors and events can help det…☆49Updated last week
- Threat Mapping Catalogue☆17Updated 3 years ago
- This repository contains generated contextual data utilized by pyattck.☆19Updated 7 months ago
- A CALDERA plugin☆74Updated 3 months ago
- ☆44Updated last year
- Cont3xt intends to centralize and simplify a structured approach to gathering contextual intelligence in support of technical investigati…☆37Updated 11 months ago
- An extension of the sigma standard to include security metrics.☆15Updated last year
- This repository hosts community contributed Kestrel huntflows (.hf) and huntbooks (.ipynb)☆32Updated last year
- Automated detection rule analysis utility☆29Updated 2 years ago
- Suricata Language Server is an implementation of the Language Server Protocol for Suricata signatures. It adds syntax check, hints and au…☆67Updated last month
- OSSEM Common Data Model☆55Updated 2 years ago