ThreatHunting_with_Osquery
awesome-incident-response
ThreatHunting_with_Osquery | awesome-incident-response | |
---|---|---|
3 | 4 | |
190 | 7,134 | |
- | - | |
0.0 | 6.1 | |
about 2 years ago | about 1 month ago | |
- | Apache License 2.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
ThreatHunting_with_Osquery
- Threat Hunting & Incident Investigation with Osquery: The objective of this repo is to share 100+ hunting queries (osquery) that will help cyber threat analysts (hunter/investigator) in their hunting or investigation exercises - for Linux & Windows.
- Threat Hunting & Incident Investigation with Osquery
- Threat Hunting and Incident Investigation with Osquery
awesome-incident-response
-
Cybersecurity Repositories
Incident Response
- Questions about getting into DF
-
I started a new role as a Incident Response Analyst and wanted to get some advice.
Here is a good github page that discusses tons of IR stuff. https://github.com/meirwah/awesome-incident-response
-
Has this sub done any curated reasearch collection sharing?
GitHub sounds totally viable. You might consider styling it after something like Awesome Lists. (Ex: Awesome Incident Response). But yes, totally viable.
What are some alternatives?
LinuxForensics - Everything related to Linux Forensics
Kuiper - Digital Forensics Investigation Platform
cyberchef-recipes - A list of cyber-chef recipes and curated links
CyberThreatHunting - A collection of resources for Threat Hunters - Sponsored by Falcon Guard
dfir-orc - Forensics artefact collection tool for systems running Microsoft Windows
DevSecOps - Ultimate DevSecOps library
DFIRMindMaps - A repository of DFIR-related Mind Maps geared towards the visual learners!
awesome-sre - A curated list of Site Reliability and Production Engineering resources.
awesome-pentest - A collection of awesome penetration testing resources, tools and other shiny things
awesome-forensics - A curated list of awesome forensic analysis tools and resources
CTF-tool - A curated list of Capture The Flag (CTF) frameworks, libraries, resources and softwares.