wagga40 / Zircolite-RulesLinks
Sigma rules converted for direct use with Zircolite
☆13Updated this week
Alternatives and similar repositories for Zircolite-Rules
Users that are interested in Zircolite-Rules are comparing it to the libraries listed below
Sorting:
- Bring Your Own Mitre Att&ck © Matrix !☆13Updated 2 years ago
- Scripts to integrate DFIR-IRIS, MISP and TimeSketch☆34Updated 3 years ago
- pySigma Splunk backend☆41Updated 3 months ago
- Digital Forensics Artifacts Knowledge Base☆88Updated last week
- Remote access and Antivirus Logging Database☆44Updated last year
- Jupyter Notebooks for Cyber Threat Intelligence☆35Updated 2 years ago
- The Linux DFIR Collector is a stand-alone collection tool for Gnu / Linux. Dump artifacts in json format with very few impacts on the hos…☆32Updated 3 years ago
- A collection of tips for using MISP.☆75Updated 11 months ago
- Incident response teams usually working on the offline data, collecting the evidence, then analyze the data☆45Updated 3 years ago
- Information about the open-source-dfir slack community☆30Updated 2 years ago
- ☆35Updated last year
- Cumulonimbus-UAL_Extractor is a PowerShell based tool created by the Tesorion CERT team to help gather the Unified Audit Logging out of a…☆21Updated 2 years ago
- Documentation site for Velociraptor☆55Updated this week
- An experimental script to perform bulk parsing of arbitrary file features with YARA and console logging.☆21Updated 3 years ago
- Hunt malware with Volatility☆47Updated 4 months ago
- Accelerating the collection, processing, analysis and outputting of digital forensic artefacts.☆32Updated last month
- A MITRE ATT&CK Lookup Tool☆45Updated last year
- Open source training materials for law-enforcement and organisations interested in DFIR.☆61Updated 5 months ago
- Scripts and lists to help generate YARA friendly string mutations☆22Updated 2 years ago
- Library of threat hunts to get any user started!☆45Updated 5 years ago
- ☆38Updated 4 years ago
- PowerShell scripts for running Magnet RESPONSE forensic collection tool in large enterprises.☆29Updated 10 months ago
- Yara Based Detection Engine for web browsers☆50Updated 4 years ago
- Sigma detection rules for hunting with the threathunting-keywords project☆56Updated 8 months ago
- A repository hosting example goodware evtx logs containing sample software installation and basic user interaction☆83Updated last month
- Malformed Access Log to CSV - Convert Web Server Access Logs to CSV☆17Updated last year
- MasterParser is a simple, all-in-one, digital forensics artifact parser☆23Updated 4 years ago
- Get-MiniTimeline - Triage Collection and Timeline Generation w/ KAPE☆33Updated last year
- A sample VHDX file with multiple verbose examples of forensic and anti-forensics artifacts. Meant to be basic and can be expanded upon. P…☆28Updated 2 years ago
- ☆88Updated 3 months ago