Pinned repositories
Repositories
-
-
sigma-to-elastalert
Ansible playbook to convert Sigma rules to ElastAlert rules
-
-
adversary-emulation-map
Creates an ATT&CK Navigator map of an Adversary Emulation Plan
-
canaries2thehive
Create alerts in The Hive from your Thinkst Canary alerts, to be turned into Hive cases.
-
graylog2thehive
Create alerts in The Hive from your Graylog alerts, to be turned into Hive cases.
-
canarytools
Subset of Thinkst Canary API for Go
-
ChirpForwarder
thinkst canary alerts forwarder
-
geo-ip-visualization
Visualize Geographic IP address information using Python
-
-
KapeFiles
Forked from EricZimmerman/KapeFilesThis repository serves as a place for community created Targets and Modules for use with KAPE.
-
web-traffic-generator
A quick and dirty HTTP/S "organic" traffic generator.
-
ansible-greynoise
Ansible modules for the GreyNoise API
-
-
cylance-logs
Flask application that integrates with Cylance Protect API and logs the events.
-
-
mailgun2thehive
Simple Python flask app that runs as a web server, and accepts POST requests from your Mailgun routes.
-
ansible-nginx-gen
Generates TCP/UDP stream configuration files for NGINX based on the backend servers and ports provided
-
slack-c2bot
Forked from praetorian-inc/slack-c2botSlack C2bot that executes commands and returns the output.
-
query-packs
Ansible role for importing query packs into Kolide (https://kolide.com)
-
-
-
ansible-timesketch-all
Timesketch all-in-one
-
-
thehiveemail
Reading and processing of email folders for TheHive + Autoupdating case histories
-
atomic-red-team
Forked from redcanaryco/atomic-red-teamSmall and highly portable detection tests based on MITRE's ATT&CK.
-
ansible-misp
Ansible role to deploy MISP and Apache on Ubuntu
-
canarytokens
Forked from thinkst/canarytokensCanarytokens helps track activity and actions on your network.
-
canarytokens-docker
Forked from thinkst/canarytokens-dockerDocker configuration to quickly setup your own Canarytokens.
-
DARKSURGEON
Forked from cryps1s/DARKSURGEONDARKSURGEON is a Windows packer project to empower incident response, digital forensics, malware analysis, and network defense.