
Skadi
Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Collect, Process, and Hunt with host based data from MacOS, Windows, and Linux

Easy-to-use live forensics toolbox for Linux endpoints


Cloud-native SIEM for intelligent security analytics for your entire enterprise.

A list of cyber-chef recipes and curated links

This project aims to compare and evaluate the telemetry of various EDR products.

A curated list of awesome Security Hardening techniques for Windows.

Curated collection of Microsoft Sentinel KQL queries and tutorials for hunting threats, analyzing Azure AD sign-in logs, detecting anomalies, and…

TrustedSec Sysinternals Sysmon Community Guide

Community-driven project for documenting, standardizing, and modeling security event logs to improve detection analytics and data normalization…

Useful resources for SOC Analyst and SOC Analyst candidates.

Awesome list of keywords and artifacts for Threat Hunting sessions

A curated collection of DFIR skills and workflows for InfoSec practitioners.

Zeek Log Cheatsheets


Sigma rules from Joe Security

Rules generated from our investigations.

The Sigma command line interface based on pySigma