What Lab setup do you use for testing TTPs?

This page summarizes the projects mentioned and recommended in the original post on /r/redteamsec

Our great sponsors
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • SaaSHub - Software Alternatives and Reviews
  • DetectionLab

    Automate the creation of a lab environment complete with security tooling and logging best practices

  • So far I’ve been using a computer with 64 GB of RAM st spin up vm’s using this: https://github.com/clong/DetectionLab

  • Adaz

    :wrench: Deploy customizable Active Directory labs in Azure - automatically.

  • I built https://github.com/christophetd/Adaz for this purpose. It's slightly more opiniated than DetectionLab (i.e. easier to use but less flexible) and includes 1 DC + workstations. You get an ELK stack out of the box with a WEC centralizing workstation logs. It takes around 20 minutes from start to finish to spin it up in Azure.

  • WorkOS

    The modern identity platform for B2B SaaS. The APIs are flexible and easy-to-use, supporting authentication, user identity, and complex enterprise features like SSO and SCIM provisioning.

    WorkOS logo
NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts