45 results found Sort:
- Filter by Primary Language:
- Python (11)
- Go (8)
- YARA (3)
- HTML (3)
- JavaScript (2)
- C++ (2)
- PowerShell (2)
- Jupyter Notebook (1)
- C# (1)
- Makefile (1)
- Rust (1)
- +
Windows Events Attack Samples
Created
2019-03-15
676 commits to master branch, last one 2 years ago
:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
Created
2022-01-07
732 commits to main branch, last one 20 days ago
Digital Forensics Guide. Learn all about Digital Forensics, Computer Forensics, Mobile device Forensics, Network Forensics, and Database Forensics.
dfir
siem
osint
alerting
security
forensics
mitre-attack
port-scanning
cyber-security
forensics-tools
digitalforensics
network-security
digital-forensics
forensic-analysis
offensive-security
intrusion-detection
threat-intelligence
detection-engineering
digitalforensicreadiness
forensics-investigations
Created
2021-08-06
81 commits to main branch, last one about a year ago
Open source security data lake for threat hunting, detection & response, and cybersecurity analytics at petabyte scale on AWS
Created
2022-07-03
576 commits to main branch, last one 3 months ago
Splunk Security Content
Created
2018-12-18
26,782 commits to develop branch, last one 5 days ago
A resource containing all the tools each ransomware gangs uses
Created
2024-08-12
592 commits to main branch, last one 24 days ago
Open Source Security Guide. Learn all about Security Standards (FIPS, CIS, FedRAMP, FISMA, etc.), Frameworks, Threat Models, Encryption, and Benchmarks.
siem
infosec
compliance
kali-linux
pentesters
mitre-attack
surveillance
scanning-tool
cyber-security
forensics-tools
vulnerabilities
network-analysis
incident-response
offensive-security
privacy-protection
incident-management
intrusion-detection
information-security
detection-engineering
vulnerability-detection
Created
2020-10-17
118 commits to main branch, last one about a year ago
Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying m...
Created
2020-09-26
129 commits to main branch, last one 2 months ago
Awesome Security lists for SOC/CERT/CTI
Created
2022-12-11
37,083 commits to main branch, last one 10 hours ago
PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows environments
Created
2019-09-08
177 commits to master branch, last one 3 months ago
Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).
Created
2020-11-02
31 commits to main branch, last one 27 days ago
Pipelined Query Language
Created
2024-01-26
124 commits to main branch, last one 3 months ago
Awesome list of keywords and artifacts for Threat Hunting sessions
Created
2023-05-16
544 commits to main branch, last one about a month ago
Misc Threat Hunting Resources
Created
2019-10-20
75 commits to master branch, last one 3 years ago
A flexible threat detection platform that simplifies rule management and deployment using K8s CronJob and Helm, but can also run standalone or with other job schedulers like Nomad.
Created
2024-09-30
11 commits to main branch, last one 6 months ago
Threatest is a CLI and Go framework for end-to-end testing threat detection rules.
Created
2022-06-16
99 commits to main branch, last one about a year ago
Generate datasets of cloud audit logs for common attacks
Created
2023-01-24
48 commits to main branch, last one 8 months ago
Purpleteam scripts simulation & Detection - trigger events for SOC detections
Created
2022-12-05
726 commits to main branch, last one 3 months ago
Resources To Learn And Understand SIGMA Rules
Created
2021-10-10
13 commits to main branch, last one 2 years ago
Signature engine for all your logs
Created
2017-07-20
114 commits to master branch, last one about a year ago
Mapping of open-source detection rules and atomic tests.
Created
2024-12-29
14 commits to main branch, last one 2 months ago
SIEGMA - Transform Sigma rules into SIEM consumables
Created
2020-09-28
234 commits to master branch, last one about a month ago
Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques
Created
2022-01-24
182 commits to main branch, last one 2 years ago
Microsoft 365 Advanced Hunting Queries with hotlinks that plug the query right into your tenant.
Created
2021-08-13
140 commits to main branch, last one 8 months ago
yara detection rules for hunting with the threathunting-keywords project
Created
2023-10-19
121 commits to main branch, last one about a month ago
attack2jira automates the process of standing up a Jira environment that can be used to track and measure ATT&CK coverage
Created
2019-10-02
48 commits to master branch, last one 2 years ago
Anvilogic Forge
Created
2024-02-05
803 commits to main branch, last one 6 days ago
A Go implementation and parser for Sigma rules.
Created
2020-09-10
70 commits to main branch, last one 7 months ago
Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools, logging configuration and best practices, event log reference...
Created
2025-01-26
238 commits to main branch, last one 15 days ago
Hunting Queries for Defender ATP
Created
2023-09-12
287 commits to main branch, last one 22 days ago