detection-engineering topic
sigmaio
simple webapp for converting sigma rules into siem queries using the pySigma library
attack2jira
attack2jira automates the process of standing up a Jira environment that can be used to track and measure ATT&CK coverage
PurpleSharp
PurpleSharp is a C# adversary simulation tool that executes adversary techniques with the purpose of generating attack telemetry in monitored Windows environments
awesome-detection-engineering
Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying m...
security_content
Splunk Security Content
EVTX-ATTACK-SAMPLES
Windows Events Attack Samples
Slides
Misc Threat Hunting Resources
stratus-red-team
:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
threatest
Threatest is a CLI and Go framework for end-to-end testing threat detection rules.
ControlCompass.github.io
Pointing cybersecurity teams to thousands of detection rules and offensive security tests aligned with common attacker techniques