Threat-Hunting-With-Splunk by west-wind

Awesome Splunk SPL hunt queries that can be used to detect the latest vulnerability exploitation attempts & subsequent compromise

created at April 12, 2022, 8:52 a.m.

Unknown languages

3 +0

57 +1

8 +0

GitHub
armory by anvilogic-forge

Anvilogic Forge

created at Feb. 5, 2024, 4:37 p.m.

Unknown languages

5 +0

86 +0

5 +0

GitHub
loghub by logpai

A large collection of system log datasets for AI-driven log analytics [ISSRE'23]

created at June 8, 2016, 2:51 p.m.

Unknown languages

59 +0

1,833 +11

602 +2

GitHub
Content-Library-CIM2 by ExabeamLabs

None

created at Aug. 31, 2022, 4:47 p.m.

Unknown languages

1 +0

16 +0

3 +0

GitHub
CIMLibrary by ExabeamLabs

CIM Library

created at June 15, 2022, 7:32 p.m.

Unknown languages

0 +0

8 +0

3 +0

GitHub
detection-and-response-pipeline by 0x4D31

✨ A compilation of suggested tools/services for each component in a detection and response pipeline, along with real-world examples. The purpose is to create a reference hub for designing effective threat detection and response pipelines. 👷 🏗

created at July 6, 2023, 5:01 p.m.

Unknown languages

13 +0

258 +3

23 +0

GitHub
awesome-kubernetes-threat-detection by jatrost

A curated list of resources about detecting threats and defending Kubernetes systems.

created at March 4, 2023, 9:20 p.m.

Unknown languages

11 +0

364 +0

33 +0

GitHub
alerting-detection-strategy-framework by palantir

A framework for developing alerting and detection strategies for incident response.

created at Dec. 19, 2017, 1:33 a.m.

Unknown languages

296 +1

689 +3

120 +1

GitHub