FireEye Red Team Tool Countermeasures Logo

FireEye Red Team Tool Countermeasures

0
Free
Visit Website

These rules are provided freely to the community without warranty. In this GitHub repository you will find rules in multiple languages: Snort Yara ClamAV HXIOC The rules are categorized and labeled into two release states: Production: rules that are expected to perform with minimal tuning. Supplemental: rules that are known to require further environment-specific tuning and tweaking to perform, and are often used for hunting workflows. Please check back to this GitHub for updates to these rules. FireEye customers can refer to the FireEye Community (community.fireeye.com) for information on how FireEye products detect these threats. The entire risk as to quality and performance of these rules is with the users.

FEATURES

ALTERNATIVES

A daily collection of IOCs from various sources, including articles and tweets.

Platform for the latest threat intelligence information

CyBot is a free and open source threat intelligence chat bot with a community-driven plugin framework.

A library of Amazon S3 attack scenarios with mitigation strategies.

YARA signature and IOC database for LOKI and THOR Lite scanners with high quality rules and IOCs.

A collection of tools and resources for threat hunters.

Provides advanced external threat intelligence to help organizations proactively identify and mitigate potential security threats.

Automated framework for collecting and processing samples from VirusTotal with YARA rule integration.