The DFIR Report Logo

The DFIR Report

0
Free
Visit Website

The DFIR Report provides in-depth threat intelligence reports and services, including detection rules, mentoring and coaching programs, and case artifacts. The platform offers insights into real-world intrusions, malware analysis, and threat briefs, helping cybersecurity professionals stay up-to-date with the latest threats and tactics. The reports cover various topics, such as ransomware, phishing campaigns, and exploit analysis, with detailed key takeaways and technical analysis. The website also offers a range of services, including threat feeds, DFIR labs, and merchandise, making it a comprehensive resource for cybersecurity professionals.

FEATURES

ALTERNATIVES

A collection of APT and cybercriminals campaigns with various resources and references.

CyBot is a free and open source threat intelligence chat bot with a community-driven plugin framework.

Sample detection rules and dashboards for Google Security Operations

Lists of sources and utilities to hunt, detect, and prevent evildoers.

Repository containing IoCs related to Volexity's threat intelligence blog posts and tools.

The Ransomware Tool Matrix is a repository that lists and categorizes tools used by ransomware gangs, aiding in threat hunting, incident response, and adversary emulation.

A collection of companies that disclose adversary TTPs after being breached, useful for analysis of intrusions.

A PowerShell module for threat hunting via Windows Event Logs

PINNED