wiz-sec-public / wiz-research-iocs
☆37Updated 2 months ago
Alternatives and similar repositories for wiz-research-iocs:
Users that are interested in wiz-research-iocs are comparing it to the libraries listed below
- A cheatsheet containing AWS CloudTrail events that can be used for Incident Response purposes or Detection Engineering.☆67Updated 9 months ago
- Cloud Analytics helps defenders detect attacks to their cloud infrastructure by developing behavioral analytics for cloud platforms as we…☆52Updated last year
- ☆65Updated 9 months ago
- Open Threat-Informed Detection Engineering☆37Updated last month
- This repository contains the research and components of our research into using Sigma for AWS Incident Response.☆27Updated last year
- Enriching the NVD CVSS scores to include Temporal & Threat Metrics☆67Updated this week
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆91Updated last year
- Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult. The research…☆35Updated this week
- Azure Activity Log Axe is a continually developing tool that simplifies the transactional log format provided by Microsoft. The tool leve…☆26Updated 5 months ago
- A powerful tool that leverages AI to automatically generate comprehensive security documentation for your projects☆39Updated this week
- The Event Maturity Matrix (EMM) is a comprehensive framework that provides clarity regarding the capabilities and nuances of SaaS audit l…☆19Updated 5 months ago
- Anvilogic Forge☆93Updated last week
- Mappings Explorer enables cyber defenders to understand how security controls and capabilities map onto the adversary behaviors catalogue…☆53Updated last week
- pocket guide for core detection engineering concepts☆27Updated last year
- The ultimate solution for remotely deploying Crowdstrike sensors quickly and discreetly on any other EDR platform.☆22Updated 5 months ago
- Cloud Offensive Breach and Risk Assessment (COBRA) Tool☆85Updated this week
- A guide to simplify the process of evaluating Datadog's Cloud SIEM security capabilities to detect AWS threats.☆18Updated last year
- An evolving repository of CloudTrail events with detailed descriptions, MITRE ATT&CK insights, real-world incidents, references and secur…☆140Updated this week
- ADXFlowmaster helps SecOps teams Threat Hunt suspicious network traffic inside & outside of Azure.☆31Updated 3 months ago
- ATT&CK Sync is a Center for Threat-Informed Defense project that aims to improve the ability for organizations to consume MITRE ATT&CK® v…☆18Updated 2 months ago
- ☆93Updated 2 years ago
- A tool that allows you to document and assess any security automation in your SOC☆45Updated 3 months ago
- A browser extension for threat hunting that provides one UI for different SIEMs/EDRs and simplifies investigation☆76Updated 9 months ago
- Adversarial Interception Mission Oriented Discovery and Disruption Framework, or AIMOD2, is a structured threat hunting approach to proac…☆86Updated last year
- ☆40Updated last month
- Repository documenting how Threat Intelligence and / or a Threat Intelligence Platform can prove its value to an organisation.☆51Updated 3 months ago
- ☆38Updated 10 months ago
- ☆15Updated 2 months ago
- Generates runbooks for GuardDuty findings☆35Updated 7 months ago
- ☆18Updated 3 years ago