MISP (core software) - Open Source Threat Intelligence and Sharing Platform
翻译 - MISP(核心软件)-开源威胁情报和共享平台(以前称为恶意软件信息共享平台)
Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation
翻译 - 域名置换引擎,用于检测打字错误,网络钓鱼和企业间谍活动
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine developed by the OISF and the Suricata community.
翻译 - OISF维护的Suricata git存储库
Sysmon configuration file template with default high-quality event tracing
A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.
翻译 - 威胁猎人的剧本,有助于发展狩猎活动的技术和假设。
#Awesome#✨ A curated list of awesome threat detection and hunting resources 🕵️♂️
IntelOwl: manage your Threat Intelligence at scale
翻译 - 英特尔®猫头鹰:从单个API大规模分析文件,域,IP
The Hunting ELK
翻译 - 狩猎麋鹿
#Awesome#A curated list of awesome YARA rules, tools, and people.
翻译 - 精选的YARA规则,工具和人员的精选清单。
Security Onion is a free and open platform for threat hunting, enterprise security monitoring, and log management. It includes our own interfaces for alerting, dashboards, hunting, PCAP, detections, a...
翻译 - Security Onion 2 - 用于威胁搜寻、企业安全监控和日志管理的 Linux 发行版
Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, Threa...
翻译 - Malwoverview是第一个响应工具,可在包含恶意软件样本,特定恶意软件样本,可疑URL和域的目录中执行初始和快速分类。此外,它还允许下载样本并将其发送到主要的在线沙箱。
Rapidly Search and Hunt through Windows Forensic Artefacts
翻译 - 快速搜索和搜寻 Windows 事件日志
Real-time HTTP Intrusion Detection
翻译 - 实时HTTP入侵检测
A repository of sysmon configuration modules
YARA signature and IOC database for my scanners and tools
Interesting APT Report Collection And Some Special IOC
翻译 - 有趣的报告集和一些特别的IOC Express
Hayabusa (隼) is a sigma-based threat hunting and fast forensics timeline generator for Windows event logs.
Windows Events Attack Samples
翻译 - Windows 事件攻击示例
Your Everyday Threat Intelligence