Ghidra is a software reverse engineering (SRE) framework
created at March 1, 2019, 3:27 a.m.
Small and highly portable detection tests based on MITRE's ATT&CK.
created at Oct. 11, 2017, 5:23 p.m.
Sysmon configuration file template with default high-quality event tracing
created at Feb. 1, 2017, 6:49 p.m.
Cuckoo Sandbox is an automated dynamic malware analysis system
created at Sept. 7, 2011, 12:12 p.m.
An advanced memory forensics framework
created at April 24, 2014, 3:45 p.m.
A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more efficient.
created at March 28, 2017, 3:07 a.m.
⭐️ A curated list of awesome forensic analysis tools and resources
created at March 29, 2016, 8:54 p.m.
A repository of sysmon configuration modules
created at Jan. 13, 2018, 9:20 p.m.
Please no pull requests for this repository. Thanks!
created at May 8, 2015, 11:21 a.m.
Security Onion 16.04 - Linux distro for threat hunting, enterprise security monitoring, and log management
created at March 24, 2015, 8:15 p.m.