CIRTKit
A Sysmon configuration repository for customizing Microsoft Sysinternals Sysmon configurations with modular setup.
Tools for security operations including incident response, threat hunting and SOC automation
A Sysmon configuration repository for customizing Microsoft Sysinternals Sysmon configurations with modular setup.
An open-source, drag-and-drop security workflow builder with integrated case management for automating security workflows and tackling alert fatigue.
npm security team foils plot to steal $13 million in cryptocurrency
A panic button app for triggering a ripple effect across apps responding to panic events
A remediation orchestration platform that consolidates security alerts, automates triage, and streamlines the remediation process across hybrid environments.
Automated Digital Forensics and Incident Response (DFIR) software for rapid incident response and intrusion investigations.
Scumblr is a web application for periodic syncs of data sources and security analysis to streamline proactive security.
A robust and flexible hunt and incident response tool for investigating AzureAD, Azure, and M365 environments.
A panic button app for triggering a ripple effect across apps responding to panic events
AWS Community repository of custom Config rules with instructions for leveraging and developing AWS Config Rules.
Open source application to instantly remediate common security issues through the use of AWS Config.
A Sysmon configuration repository for customizing Microsoft Sysinternals Sysmon configurations with modular setup.
Repository of default playbooks and custom functions for Splunk SOAR instances with content migration to Splunk's GitHub.
Detailed analysis of the event-stream incident and actions taken by npm Security.
Incident response and digital forensics tool for transforming data sources and logs into graphs.
A DFIR console integrating various cybersecurity tools and frameworks for efficient incident response.
A custom activity repository for Ayehu NG automation platform, allowing users to create and modify activities to fit their specific needs.
A robust and flexible hunt and incident response tool for investigating AzureAD, Azure, and M365 environments.
Open-source, free, and scalable cyber threat intelligence and security incident response solution with improved performance and new features.
Receive important notifications and updates related to North American electric grid security.
A Live Response collection script for Incident Response that automates the collection of artifacts from various Unix-like operating systems.
A collection of incident response methodologies for various security incidents, providing easy-to-use operational best practices.