Incident-Playbook VS EDR-Testing-Script

Compare Incident-Playbook vs EDR-Testing-Script and see what are their differences.

EDR-Testing-Script

Test the accuracy of Endpoint Detection and Response (EDR) software with simple script which executes various ATT&CK/LOLBAS/Invoke-CradleCrafter/Invoke-DOSfuscation payloads (by op7ic)
InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
Incident-Playbook EDR-Testing-Script
10 1
1,329 278
- -
0.0 0.0
over 1 year ago over 2 years ago
Python Batchfile
MIT License MIT License
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

EDR-Testing-Script

Posts with mentions or reviews of EDR-Testing-Script. We have used some of these posts to build our list of alternatives and similar projects.
  • Kaspersky Endpoint Security issue
    1 project | /r/antivirus | 1 Jun 2021
    I downloaded and executed script from GitHub, EDR Testing Script and it failed miserably. It allowed everything to be downloaded and executed, let remote shell scripts to be run, files to install, and it did that as a user. I didn't even run that script as an admin. Worse thing is, KES uninstalled itself afterwards.

What are some alternatives?

When comparing Incident-Playbook and EDR-Testing-Script you can also consider the following projects:

atomic-red-team - Small and highly portable detection tests based on MITRE's ATT&CK.

security - Collection of CVEs from Sick Codes, or collaborations on https://sick.codes security research & advisories.

ansible-navigator - A text-based user interface (TUI) for Ansible.

iMonitorSDK - 系统监控开发套件(sysmon、procmon、edr、终端安全、主机安全、零信任、上网行为管理、沙箱)

caldera - Automated Adversary Emulation Platform

WhiteBeam - WhiteBeam: Transparent endpoint security

threathunting - A Splunk app mapped to MITRE ATT&CK to guide your threat hunts

plgx-esp - Community Edition of the PolyLogyx Endpoint Security Platform; An open source and extensible platform to manage and monitor endpoints, based on osqery agent

content - Demisto is now Cortex XSOAR. Automate and orchestrate your Security Operations with Cortex XSOAR's ever-growing Content Repository. Pull Requests are always welcome and highly appreciated!

Atlas - 🚀 An open and lightweight modification to Windows, designed to optimize performance, privacy and security.

Incident-Response-Playbooks

Wazuh - Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.