
MISP
MISP (core software) - Open Source Threat Intelligence and Sharing Platform

MISP (core software) - Open Source Threat Intelligence and Sharing Platform

Cloud-native SIEM for intelligent security analytics for your entire enterprise.

YARA signature and IOC database for my scanners and tools

TrustedSec Sysinternals Sysmon Community Guide

A python2 script for sweeping a network to find windows systems compromised with the DOUBLEPULSAR implant.

AV/EDR Lab environment setup references to help in Malware development

Zeek Log Cheatsheets

Sigma rules from Joe Security

Rules generated from our investigations.

The Sigma command line interface based on pySigma

Capturing, analysing and responding to cyber attacks

Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types

🛡️Awesome lists about all kinds of interesting topics of Wazuh XDR/SIEM

Some Threat Hunting queries useful for blue teamers

Sigma rules to share with the community

Machine Learning based Intrusion Detection Systems are difficult to evaluate due to a shortage of datasets representing accurately network traffic…

BlackBerry Threat Research & Intelligence

Yara Rules for Modern Malware