A framework for developing alerting and detection strategies for incident response.
created at Dec. 19, 2017, 1:33 a.m.
Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise
created at April 12, 2022, 8:52 a.m.
A curated list of resources about detecting threats and defending Kubernetes systems.
created at March 4, 2023, 9:20 p.m.
✨ A compilation of suggested tools/services for each component in a detection and response pipeline, along with real-world examples. The purpose is to create a reference hub for designing effective threat detection and response pipelines. 👷 🏗
created at July 6, 2023, 5:01 p.m.