
reversemap
Analyse SQL injection attempts in web server logs

Analyse SQL injection attempts in web server logs

A comprehensive Security Operations Centre (SOC) incident response simulation demonstrating threat detection, triage, analysis, and mitigation of the…

This package extends the Intel package to log more fields

Kyanos is a networking analysis tool using eBPF. It can visualize the time packets spend in the kernel, capture requests/responses, makes…

A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).

A tool to assess data quality, built on top of the awesome OSSEM.

A Zeek OpenVPN protocol analyzer plugin.

PEAK Baseline Threat Hunt dashboards for Security Onion 3.0 — covering DNS, HTTP, TLS, SMB, Kerberos, SSH, RDP, DCE/RPC, LDAP, Modbus, DNP3,…

This project is a SIEM with SIRP and Threat Intel, all in one.

A python package for use in generating fake data for SOC and security automation.

tshark + ELK analytics virtual machine