
A framework for executing cloud attacker tactics, techniques, and procedures (TTPs) that can generate APIs, Sigma detection rules, and documentation from YAML-based definitions.

A framework for executing cloud attacker tactics, techniques, and procedures (TTPs) that can generate APIs, Sigma detection rules, and documentation from YAML-based definitions.
Leonidas is a Detection Engineering product. Pricing is free.
Leonidas is a framework designed for executing attacker actions in cloud environments. The tool provides a YAML-based format for defining cloud attacker tactics, techniques, and procedures (TTPs) along with their associated detection properties. The framework can compile these definitions into multiple outputs including a web API that exposes each test case as an individual endpoint, Sigma rules for detection purposes, and documentation. The API deployment utilizes an AWS-native CI/CD pipeline and requires API key authentication for access. The tool includes a local generator component that can be installed to create Sigma rules and documentation from the defined test cases. This allows security teams to both simulate cloud-based attacks and develop corresponding detection capabilities.
Common questions about Leonidas including features, pricing, alternatives, and user reviews.
Leonidas is A framework for executing cloud attacker tactics, techniques, and procedures (TTPs) that can generate APIs, Sigma detection rules, and documentation from YAML-based definitions. It is a Security Operations solution designed to help security teams with Red Team, MITRE Attack, AWS.
Leonidas is built for security teams handling Red Team, MITRE Attack, AWS, Sigma. Teams typically adopt Leonidas when they need to security operations capabilities integrated into their existing stack. Explore similar tools at https://cybersectools.com/alternatives/leonidas
Leonidas is a free Security Operations tool. This makes it accessible for organizations of all sizes, from startups to enterprises. Visit https://github.com/fsecurelabs/leonidas/ for download and installation instructions.
Popular alternatives to Leonidas include:
Compare all Leonidas alternatives at https://cybersectools.com/alternatives/leonidas
Leonidas is for security teams and organizations that need Red Team, MITRE Attack, AWS, Sigma, Detection Rules. It's particularly suitable for small to medium-sized teams looking for cost-effective solutions. Other Security Operations tools can be found at https://cybersectools.com/categories/security-operations
Head-to-head feature, pricing, and rating breakdowns.
Threat detection marketplace with Sigma rules for SIEM and shift-left detection
IDE for detection engineering with cross-platform translation for 65+ SIEM/EDR/XDR
Detection-as-code platform for managing detection rules across SIEM/EDR/XDR