Security Onion + Automation + Response Lab including n8n and Velociraptor
☆116Sep 14, 2022Updated 3 years ago
Alternatives and similar repositories for DinoSOARLab
Users that are interested in DinoSOARLab are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Run Velociraptor on Security Onion☆42Jul 27, 2022Updated 4 years ago
- Transform EQL detection rules to VQL artifacts☆12Nov 12, 2021Updated 4 years ago
- An experimental Velociraptor implementation using cloud infrastructure☆26Aug 25, 2026Updated last week
- SIEGMA - Transform Sigma rules into SIEM consumables☆161Mar 10, 2025Updated last year
- Docker image for Velocidex Velociraptor☆149Apr 15, 2026Updated 4 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A "hooray I am useful" Cobalt Strike Team Server scanner☆20Oct 22, 2021Updated 4 years ago
- Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders☆1,077Oct 5, 2023Updated 2 years ago
- Repo to hold mcp server for velociraptor☆40Apr 15, 2026Updated 4 months ago
- ☆54May 14, 2024Updated 2 years ago
- ☆33Jun 27, 2022Updated 4 years ago
- Digging Deeper....☆4,228Updated this week
- ☆13Oct 7, 2019Updated 6 years ago
- PyVelociraptor contains the python bindings for the Velociraptor API.☆23May 5, 2026Updated 3 months ago
- Documentation used for Shuffle☆21Updated this week
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ThreatHunt is a PowerShell repository that allows you to train your threat hunting skills.☆135Jul 25, 2019Updated 7 years ago
- Endpoint detection for remote hosts for consumption by RITA and Elasticsearch☆81Jun 25, 2026Updated 2 months ago
- ☆37Dec 17, 2020Updated 5 years ago
- Creates an ATT&CK Navigator map of an Adversary Emulation Plan☆17Sep 4, 2021Updated 4 years ago
- Technical add-on for Splunk related to TheHive/Cortex from TheHive project☆55Aug 19, 2026Updated 2 weeks ago
- ☆34Apr 29, 2021Updated 5 years ago
- Converts Sigma detection rules to a Splunk alert configuration.☆12Jul 1, 2021Updated 5 years ago
- Detect Tactics, Techniques & Combat Threats☆2,337Aug 6, 2026Updated 3 weeks ago
- A curated Cyber "Security Orchestration, Automation and Response (SOAR)" awesome list.☆1,002Aug 26, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- DFIRTrack - The Incident Response Tracking Application☆538Jan 13, 2026Updated 7 months ago
- A curated list of KAPE-related resources☆193May 1, 2025Updated last year
- Small and highly portable detection tests based on MITRE's ATT&CK.☆11Feb 17, 2025Updated last year
- Documentation and scripts to properly enable Windows event logs.☆718Oct 3, 2025Updated 10 months ago
- Sigma Detection Rule Repository☆93Jun 18, 2020Updated 6 years ago
- ☆16Oct 24, 2024Updated last year
- Snapshot, patch, health-check, and potentially roll-back Windows VMs☆34Feb 20, 2018Updated 8 years ago
- A curated list of awesome things related to TheHive & Cortex☆184Oct 9, 2021Updated 4 years ago
- A preconfigured Velociraptor triage collector☆77Aug 10, 2026Updated 3 weeks ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Resources for SANS CTI Summit 2021 presentation☆104Nov 8, 2023Updated 2 years ago
- Cast is an installer for any compatible Saltstack based distribution like SIFT or REMnux☆139Updated this week
- PowerShell 'Hero': scripts for DFIR and automation with a PowerShell menu example.☆37Jul 11, 2023Updated 3 years ago
- The purpose of this project is to publish and maintain the deployment PowerShell script that automates deployments for Active Directory C…☆268Nov 24, 2023Updated 2 years ago
- A set of Zeek scripts to detect ATT&CK techniques.☆622Jun 26, 2024Updated 2 years ago
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,509Jan 12, 2026Updated 7 months ago
- PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monit…☆847Feb 23, 2026Updated 6 months ago