Nate Guagenti
@neu5ron
ID: 324391039
https://github.com/neu5ron 26-06-2011 14:45:47
3,3K Tweet
2,2K Followers
1,1K Following
From MISP to ElastAlert via Sigma MISP > Sigmai > Sigma Rule > Sigmac > ElastAlert a simple Bash Script by Wes Lambert MISP (@[email protected]) sigma Elastic github.com/weslambert/mis…
Sigma rule by Roberto Rodriguez 🇵🇪 to detect possible #OMIGOD exploitation attempts in auditd logs github.com/SigmaHQ/sigma/…
🚨 Sharing how to deploy a lab environment w/ #AzureSentinel , a few Linux 🐧 VMs and Microsoft Audit Collection Tool (AUOMS) set up 📡to identify & map sources of data to the execution context of OMI! #MSTIC #OMIGOD 😎 This has been very helpful 💥 techcommunity.microsoft.com/t5/azure-senti…
In the last couple of weeks, we've been working 3CORESec 🛡 on a little project we're calling MAL-CL. It aims to collect and document real-world/common "malicious" CLI execs of different tools/utilities. Feedback and contributions are much appreciated. github.com/3CORESec/MAL-CL