Security Onion + Automation + Response Lab including n8n and Velociraptor
☆116Sep 14, 2022Updated 3 years ago
Alternatives and similar repositories for DinoSOARLab
Users that are interested in DinoSOARLab are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Run Velociraptor on Security Onion☆42Jul 27, 2022Updated 3 years ago
- Transform EQL detection rules to VQL artifacts☆12Nov 12, 2021Updated 4 years ago
- An experimental Velociraptor implementation using cloud infrastructure☆26Jun 25, 2026Updated last month
- SIEGMA - Transform Sigma rules into SIEM consumables☆161Mar 10, 2025Updated last year
- Docker image for Velocidex Velociraptor☆149Apr 15, 2026Updated 3 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A "hooray I am useful" Cobalt Strike Team Server scanner☆20Oct 22, 2021Updated 4 years ago
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders☆1,075Oct 5, 2023Updated 2 years ago
- Repo to hold mcp server for velociraptor☆40Apr 15, 2026Updated 3 months ago
- ☆54May 14, 2024Updated 2 years ago
- ☆33Jun 27, 2022Updated 4 years ago
- Digging Deeper....☆4,119Updated this week
- ☆13Oct 7, 2019Updated 6 years ago
- PyVelociraptor contains the python bindings for the Velociraptor API.☆23May 5, 2026Updated 2 months ago
- Documentation used for Shuffle☆21Jul 15, 2026Updated last week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ThreatHunt is a PowerShell repository that allows you to train your threat hunting skills.☆135Jul 25, 2019Updated 6 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆81Jun 25, 2026Updated 3 weeks ago
- ☆37Dec 17, 2020Updated 5 years ago
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆17Sep 4, 2021Updated 4 years ago
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆55Jul 9, 2026Updated 2 weeks ago
- ☆34Apr 29, 2021Updated 5 years ago
- Converts Sigma detection rules to a Splunk alert configuration.☆12Jul 1, 2021Updated 5 years ago
- Detect Tactics, Techniques & Combat Threats☆2,311Jun 2, 2026Updated last month
- A curated Cyber "Security Orchestration, Automation and Response (SOAR)" awesome list.☆998Aug 26, 2024Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- DFIRTrack - The Incident Response Tracking Application☆537Jan 13, 2026Updated 6 months ago
- A curated list of KAPE-related resources☆190May 1, 2025Updated last year
- Small and highly portable detection tests based on MITRE's ATT&CK.☆11Feb 17, 2025Updated last year
- Documentation and scripts to properly enable Windows event logs.☆711Oct 3, 2025Updated 9 months ago
- Sigma Detection Rule Repository☆93Jun 18, 2020Updated 6 years ago
- ☆15Oct 24, 2024Updated last year
- Snapshot, patch, health-check, and potentially roll-back Windows VMs☆34Feb 20, 2018Updated 8 years ago
- A curated list of awesome things related to TheHive & Cortex☆184Oct 9, 2021Updated 4 years ago
- A preconfigured Velociraptor triage collector☆77Jun 29, 2026Updated 3 weeks ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Resources for SANS CTI Summit 2021 presentation☆104Nov 8, 2023Updated 2 years ago
- Cast is an installer for any compatible Saltstack based distribution like SIFT or REMnux☆138Updated this week
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆37Jul 11, 2023Updated 3 years ago
- The purpose of this project is to publish and maintain the deployment PowerShell script that automates deployments for Active Directory C…☆266Nov 24, 2023Updated 2 years ago
- A set of Zeek scripts to detect ATT&CK techniques.☆625Jun 26, 2024Updated 2 years ago
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,511Jan 12, 2026Updated 6 months ago
- PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monit…☆849Feb 23, 2026Updated 5 months ago