w8mej / ThreatPlays
Sharing Threat Hunting runbooks
☆24Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for ThreatPlays
- Repo of python/bash scripts for identifying IoC's in threat feed and other online tools☆26Updated 4 years ago
- Incident Response Playbooks☆14Updated 5 years ago
- A few quick recipes for those that do not have much time during the day☆21Updated 3 weeks ago
- These are some of the commands which I use frequently during Malware Analysis and DFIR.☆25Updated 10 months ago
- A MITRE ATT&CK Lookup Tool☆43Updated 6 months ago
- Supporting materials for my "Intelligence-Led Adversarial Threat Modelling with VECTR" workshop☆56Updated last week
- Send High & New Incidents to The Hive incident management Platform☆17Updated 3 years ago
- Recon Hunt Queries☆75Updated 3 years ago
- ☆21Updated 3 years ago
- A collection of hunting and blue team scripts. Mostly others, some my own.☆38Updated last year
- Provides detection capabilities and log conversion to evtx or syslog capabilities☆52Updated 2 years ago
- Expert Investigation Guides☆50Updated 3 years ago
- Defensive Origins Training Schedule☆36Updated 11 months ago
- FIles and guides related to using Elasticstack as a SIEM☆12Updated 4 years ago
- Acheron is a RESTful vulnerability assessment and management framework built around search and dedicated to terminal extensibility.☆31Updated last year
- Repository for SPEED SIEM Use Case Framework