WefflesBuild a fast, free, and effective Threat Hunting/Incident Response Console with Windows Event Forwarding and PowerBI
Stars: ✭ 176 (+5.39%)
KuiperDigital Forensics Investigation Platform
Stars: ✭ 257 (+53.89%)
ResponseMonzo's real-time incident response and reporting tool ⚡️
Stars: ✭ 1,252 (+649.7%)
InfosecHouseInfosec resource center for offensive and defensive security operations.
Stars: ✭ 61 (-63.47%)
Wazuh DockerWazuh - Docker containers
Stars: ✭ 213 (+27.54%)
SyntheticSunSyntheticSun is a defense-in-depth security automation and monitoring framework which utilizes threat intelligence, machine learning, managed AWS security services and, serverless technologies to continuously prevent, detect and respond to threats.
Stars: ✭ 49 (-70.66%)
Yara EndpointYara-Endpoint is a tool useful for incident response as well as anti-malware enpoint base on Yara signatures.
Stars: ✭ 75 (-55.09%)
aws-customer-playbook-frameworkThis repository provides sample templates for security playbooks against various scenarios when using Amazon Web Services.
Stars: ✭ 43 (-74.25%)
Aurora Incident ResponseIncident Response Documentation made easy. Developed by Incident Responders for Incident Responders
Stars: ✭ 171 (+2.4%)
CASECyber-investigation Analysis Standard Expression (CASE) Ontology
Stars: ✭ 46 (-72.46%)
DfirtrackDFIRTrack - The Incident Response Tracking Application
Stars: ✭ 232 (+38.92%)
catalystCatalyst is an open source SOAR system that helps to automate alert handling and incident response processes
Stars: ✭ 91 (-45.51%)
HistoricprocesstreeAn Incident Response tool that visualizes historic process execution evidence (based on Event ID 4688 - Process Creation Event) in a tree view.
Stars: ✭ 46 (-72.46%)
complianceLegal, procedural and policies document templates for operating an IRT
Stars: ✭ 57 (-65.87%)
ThehiveTheHive: a Scalable, Open Source and Free Security Incident Response Platform
Stars: ✭ 2,300 (+1277.25%)
Analyst CasefileMaltego CaseFile entities for information security investigations, malware analysis and incident response
Stars: ✭ 41 (-75.45%)
GDPatrolA Lambda-powered Security Orchestration framework for AWS GuardDuty
Stars: ✭ 50 (-70.06%)
Dfir OrcForensics artefact collection tool for systems running Microsoft Windows
Stars: ✭ 202 (+20.96%)
EvilizeParses Windows event logs files based on SANS Poster
Stars: ✭ 24 (-85.63%)
OrianaOriana is a threat hunting tool that leverages a subset of Windows events to build relationships, calculate totals and run analytics. The results are presented in a Web layer to help defenders identify outliers and suspicious behavior on corporate environments.
Stars: ✭ 152 (-8.98%)
LinuxCatScaleIncident Response collection and processing scripts with automated reporting scripts
Stars: ✭ 143 (-14.37%)
Cortex4pyPython API Client for Cortex
Stars: ✭ 22 (-86.83%)
uacUAC is a Live Response collection script for Incident Response that makes use of native binaries and tools to automate the collection of AIX, Android, ESXi, FreeBSD, Linux, macOS, NetBSD, NetScaler, OpenBSD and Solaris systems artifacts.
Stars: ✭ 260 (+55.69%)
CDIRCDIR (Cyber Defense Institute Incident Response) Collector - live collection tool based on oss tool/library
Stars: ✭ 122 (-26.95%)
BashfuscatorA fully configurable and extendable Bash obfuscation framework. This tool is intended to help both red team and blue team.
Stars: ✭ 690 (+313.17%)
IntelowlIntel Owl: analyze files, domains, IPs in multiple ways from a single API at scale
Stars: ✭ 2,114 (+1165.87%)
MindMaps#ThreatHunting #DFIR #Malware #Detection Mind Maps
Stars: ✭ 224 (+34.13%)
INDXRipperCarve file metadata from NTFS index ($I30) attributes
Stars: ✭ 32 (-80.84%)
PypowershellxrayPython script to decode common encoded PowerShell scripts
Stars: ✭ 192 (+14.97%)
iris-webCollaborative Incident Response platform
Stars: ✭ 560 (+235.33%)
FameFAME Automates Malware Evaluation
Stars: ✭ 663 (+297.01%)
ThePhishThePhish: an automated phishing email analysis tool
Stars: ✭ 676 (+304.79%)
Edr Testing ScriptTest the accuracy of Endpoint Detection and Response (EDR) software with simple script which executes various ATT&CK/LOLBAS/Invoke-CradleCrafter/Invoke-DOSfuscation payloads
Stars: ✭ 136 (-18.56%)
macOS-irPrototype to collect data and analyse it from a compromised macOS device.
Stars: ✭ 16 (-90.42%)
Osquery ConfigurationA repository for using osquery for incident detection and response
Stars: ✭ 618 (+270.06%)
pyarascannerA simple many-rules to many-files YARA scanner for incident response or malware zoos.
Stars: ✭ 23 (-86.23%)
Atc ReactA knowledge base of actionable Incident Response techniques
Stars: ✭ 226 (+35.33%)
PowerSponsePowerSponse is a PowerShell module focused on targeted containment and remediation during incident response.
Stars: ✭ 35 (-79.04%)
CyphonOpen source incident management and response platform.
Stars: ✭ 543 (+225.15%)
Adversarial Robustness ToolboxAdversarial Robustness Toolbox (ART) - Python Library for Machine Learning Security - Evasion, Poisoning, Extraction, Inference - Red and Blue Teams
Stars: ✭ 2,638 (+1479.64%)
ShonyDanzaA customizable, easy-to-navigate tool for researching, pen testing, and defending with the power of Shodan.
Stars: ✭ 86 (-48.5%)
HowtheysreA curated collection of publicly available resources on how technology and tech-savvy organizations around the world practice Site Reliability Engineering (SRE)
Stars: ✭ 6,962 (+4068.86%)
WazuhWazuh - The Open Source Security Platform
Stars: ✭ 3,154 (+1788.62%)
FclFCL (Fileless Command Lines) - Known command lines of fileless malicious executions
Stars: ✭ 409 (+144.91%)
evtx-hunterevtx-hunter helps to quickly spot interesting security-related activity in Windows Event Viewer (EVTX) files.
Stars: ✭ 122 (-26.95%)
AsnASN / RPKI validity / BGP stats / IPv4v6 / Prefix / URL / ASPath / Organization / IP reputation and geolocation lookup tool / Traceroute server
Stars: ✭ 242 (+44.91%)
OsctrlFast and efficient osquery management
Stars: ✭ 183 (+9.58%)
SiacSIAC is an enterprise SIEM built on open-source technology.
Stars: ✭ 100 (-40.12%)
UrlextractorInformation gathering & website reconnaissance | https://phishstats.info/
Stars: ✭ 341 (+104.19%)