Repository navigation

#

detection-engineering

matanolabs/matano
Rust
1602
7 个月前

Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying malicious or unauthorized activity before it negatively impacts an individual or an organization.

1036
2 个月前

PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows environments

C#
822
8 个月前

Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).

Jupyter Notebook
747
5 个月前

A flexible threat detection platform that simplifies rule management and deployment using K8s CronJob and Helm, but can also run standalone or with other job schedulers like Nomad.

Go
382
1 年前

Threatest is a CLI and Go framework for end-to-end testing threat detection rules.

Go
331
4 个月前

lolC2 is a collection of C2 frameworks that leverage legitimate services to evade detection

HTML
236
3 个月前

Generate datasets of cloud audit logs for common attacks

Go
218
1 年前