Security Onion + Automation + Response Lab including n8n and Velociraptor
☆114Sep 14, 2022Updated 3 years ago
Alternatives and similar repositories for DinoSOARLab
Users that are interested in DinoSOARLab are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Run Velociraptor on Security Onion☆41Jul 27, 2022Updated 3 years ago
- Transform EQL detection rules to VQL artifacts☆12Nov 12, 2021Updated 4 years ago
- An experimental Velociraptor implementation using cloud infrastructure☆26Jun 25, 2026Updated last week
- Repo to hold mcp server for velociraptor☆39Apr 15, 2026Updated 2 months ago
- SIEGMA - Transform Sigma rules into SIEM consumables☆160Mar 10, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Docker image for Velocidex Velociraptor☆149Apr 15, 2026Updated 2 months ago
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders☆1,073Oct 5, 2023Updated 2 years ago
- ☆54May 14, 2024Updated 2 years ago
- ☆13Oct 7, 2019Updated 6 years ago
- Digging Deeper....☆4,066Jun 24, 2026Updated last week
- ☆33Jun 27, 2022Updated 4 years ago
- PyVelociraptor contains the python bindings for the Velociraptor API.☆23May 5, 2026Updated 2 months ago
- Documentation used for Shuffle☆21Jun 20, 2026Updated 2 weeks ago
- ThreatHunt is a PowerShell repository that allows you to train your threat hunting skills.☆135Jul 25, 2019Updated 6 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆81Jun 25, 2026Updated last week
- An IDE and translation engine for detection engineers and threat hunters. Be faster, write smarter, keep 100% privacy.☆191Dec 2, 2025Updated 7 months ago
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆17Sep 4, 2021Updated 4 years ago
- Converts Sigma detection rules to a Splunk alert configuration.☆12Jul 1, 2021Updated 5 years ago
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆55Jun 27, 2026Updated last week
- ☆34Apr 29, 2021Updated 5 years ago
- ☆37Dec 17, 2020Updated 5 years ago
- A curated Cyber "Security Orchestration, Automation and Response (SOAR)" awesome list.☆997Aug 26, 2024Updated last year
- Python script for carving Bitlocker VMK keys☆26Feb 4, 2026Updated 5 months ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆37Jul 11, 2023Updated 2 years ago
- Detect Tactics, Techniques & Combat Threats☆2,303Jun 2, 2026Updated last month
- ☆15Oct 24, 2024Updated last year
- DFIRTrack - The Incident Response Tracking Application☆536Jan 13, 2026Updated 5 months ago
- A curated list of KAPE-related resources☆189May 1, 2025Updated last year
- Small and highly portable detection tests based on MITRE's ATT&CK.☆11Feb 17, 2025Updated last year
- Documentation and scripts to properly enable Windows event logs.☆708Oct 3, 2025Updated 9 months ago
- Sigma Detection Rule Repository☆93Jun 18, 2020Updated 6 years ago
- Snapshot, patch, health-check, and potentially roll-back Windows VMs☆34Feb 20, 2018Updated 8 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A curated list of awesome things related to TheHive & Cortex☆184Oct 9, 2021Updated 4 years ago
- Resources for SANS CTI Summit 2021 presentation☆104Nov 8, 2023Updated 2 years ago
- Cast is an installer for any compatible Saltstack based distribution like SIFT or REMnux☆138Updated this week
- The purpose of this project is to publish and maintain the deployment PowerShell script that automates deployments for Active Directory C…☆263Nov 24, 2023Updated 2 years ago
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,507Jan 12, 2026Updated 5 months ago
- A set of Zeek scripts to detect ATT&CK techniques.☆624Jun 26, 2024Updated 2 years ago
- Serverless SOAR (Security Orchestration, Automation and Response) framework for automatic inspection and evaluation of security alert☆51Jun 20, 2026Updated 2 weeks ago