Detection Content Repository Logo

Detection Content Repository

0
Free
Visit Website

This repository contains detection content developed by the delivr.to team, including Sublime, Yara, and Sigma rules with corresponding payloads for testing. It also provides specific rules for Sublime Security, organised into General and Threat Intel folders, and offers integration with Sublime.

FEATURES

ALTERNATIVES

A comprehensive Threat Intelligence Program Management Solution for managing the entire CTI lifecycle.

A system for collecting, managing, and distributing security information on a large scale, developed by CERT Polska.

yarAnalyzer creates statistics on a yara rule set and files in a sample directory, generating tables and CSV files, including an inventory feature.

Threat hunting tool leveraging Windows events for identifying outliers and suspicious behavior.

Malware Patrol offers a range of threat intelligence solutions, including enterprise data feeds, DNS firewall, phishing threat intelligence, and small business protection.

LOKI is a simple IOC and YARA Scanner for Indicators of Compromise Detection.

A threat hunting tool for Windows event logs to detect APT movements and decrease the time to uncover suspicious activity.

A summary of the threat modeling posts and final thoughts on the process