
SOC-Analyst-Portfolio
A curated portfolio showcasing my SOC investigations, threat hunting projects, DFIR labs, detection engineering, technical blogs, and cybersecurity…

A curated portfolio showcasing my SOC investigations, threat hunting projects, DFIR labs, detection engineering, technical blogs, and cybersecurity…

Community Detection Signature Build and Distribution Pipeline for YARA, Suricata, Snort and Sigma

This repository contains a list of new remediation scripts.

Curated collection of Microsoft Sentinel KQL queries and tutorials for hunting threats, analyzing Azure AD sign-in logs, detecting anomalies, and…


The Sigma command line interface based on pySigma

Rules generated from our investigations.

A list of cyber-chef recipes and curated links

Sigma rules from Joe Security

A repository to release detection rules to the public

Some Threat Hunting queries useful for blue teamers

A curated list of awesome Security Hardening techniques for Windows.


This project aims to compare and evaluate the telemetry of various EDR products.

Awesome list of keywords and artifacts for Threat Hunting sessions

TrustedSec Sysinternals Sysmon Community Guide

Sigma rules to share with the community

A repository hosting example goodware evtx logs containing sample software installation and basic user interaction