45 results found Sort:

Windows Events Attack Samples
Created 2019-03-15
676 commits to master branch, last one 2 years ago
237
2.0k
apache-2.0
36
:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
Created 2022-01-07
732 commits to main branch, last one 20 days ago
Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.
Created 2021-08-06
81 commits to main branch, last one about a year ago
111
1.5k
apache-2.0
21
Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS
Created 2022-07-03
576 commits to main branch, last one 3 months ago
393
1.4k
apache-2.0
71
Splunk Security Content
Created 2018-12-18
26,782 commits to develop branch, last one 5 days ago
A resource containing all the tools each ransomware gangs uses
Created 2024-08-12
592 commits to main branch, last one 24 days ago
Open Source Security Guide. Learn all about Security Standards (FIPS, CIS, FedRAMP, FISMA, etc.), Frameworks, Threat Models, Encryption, and Benchmarks.
Created 2020-10-17
118 commits to main branch, last one about a year ago
Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying m...
Created 2020-09-26
129 commits to main branch, last one 2 months ago
Awesome Security lists for SOC/CERT/CTI
Created 2022-12-11
37,083 commits to main branch, last one 10 hours ago
109
799
bsd-3-clause
31
PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows environments
Created 2019-09-08
177 commits to master branch, last one 3 months ago
Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).
Created 2020-11-02
31 commits to main branch, last one 27 days ago
25
650
apache-2.0
5
Pipelined Query Language
Created 2024-01-26
124 commits to main branch, last one 3 months ago
Awesome list of keywords and artifacts for Threat Hunting sessions
Created 2023-05-16
544 commits to main branch, last one about a month ago
60
374
unknown
33
Misc Threat Hunting Resources
Created 2019-10-20
75 commits to master branch, last one 3 years ago
A flexible threat detection platform that simplifies rule management and deployment using K8s CronJob and Helm, but can also run standalone or with other job schedulers like Nomad.
Created 2024-09-30
11 commits to main branch, last one 6 months ago
23
328
apache-2.0
12
Threatest is a CLI and Go framework for end-to-end testing threat detection rules.
Created 2022-06-16
99 commits to main branch, last one about a year ago
16
211
apache-2.0
3
Generate datasets of cloud audit logs for common attacks
Created 2023-01-24
48 commits to main branch, last one 8 months ago
19
183
unknown
7
Purpleteam scripts simulation & Detection - trigger events for SOC detections
Created 2022-12-05
726 commits to main branch, last one 3 months ago
Resources To Learn And Understand SIGMA Rules
Created 2021-10-10
13 commits to main branch, last one 2 years ago
18
166
gpl-3.0
13
Signature engine for all your logs
Created 2017-07-20
114 commits to master branch, last one about a year ago
18
160
apache-2.0
4
Mapping of open-source detection rules and atomic tests.
Created 2024-12-29
14 commits to main branch, last one 2 months ago
22
149
agpl-3.0
8
SIEGMA - Transform Sigma rules into SIEM consumables
Created 2020-09-28
234 commits to master branch, last one about a month ago
Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques
Created 2022-01-24
182 commits to main branch, last one 2 years ago
Microsoft 365 Advanced Hunting Queries with hotlinks that plug the query right into your tenant.
Created 2021-08-13
140 commits to main branch, last one 8 months ago
yara detection rules for hunting with the threathunting-keywords project
Created 2023-10-19
121 commits to main branch, last one about a month ago
28
111
bsd-3-clause
8
attack2jira automates the process of standing up a Jira environment that can be used to track and measure ATT&CK coverage
Created 2019-10-02
48 commits to master branch, last one 2 years ago
Anvilogic Forge
Created 2024-02-05
803 commits to main branch, last one 6 days ago
A Go implementation and parser for Sigma rules.
Created 2020-09-10
70 commits to main branch, last one 7 months ago
Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools, logging configuration and best practices, event log reference...
Created 2025-01-26
238 commits to main branch, last one 15 days ago
Hunting Queries for Defender ATP
Created 2023-09-12
287 commits to main branch, last one 22 days ago