Resources

This is a work in progress. These are resource that I found to be useful or interesting.

this is a new test

Resources

https://www.malwarearchaeology.com/cheat-sheets
https://github.com/hslatman/awesome-threat-intelligence
https://github.com/olafhartong/sysmon-modular
https://github.com/ezpickinz/Ansible-Playbooks
https://lzone.de/cheat-sheet.html
https://github.com/akiser1996/OSINT
https://frack113.github.io/sigma_redcanaryco/tests/b32b1ccf-f7c1-49bc-9ddd-7d7466a7b297.html

Redteam/test Resources

https://github.com/redcanaryco/atomic-red-team

Detection Resources

https://github.com/SigmaHQ/sigma
https://github.com/atc-project/atomic-threat-coverage
https://github.com/clong/DetectionLab
https://www.mitre.org/sites/default/files/2021-11/getting-started-with-attack-october-2019.pdf
https://github.com/mdecrevoisier/EVTX-to-MITRE-Attack

Splunk resources

https://github.com/sduff/awesome-splunk
https://github.com/shauntdergrigorian/splunkqueries
https://www.rfaircloth.com/2015/11/06/get-started-with-splunk-app-stream-6-4-dns/