Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to run a full investigation against a customer’s Azure Active Directory (AzureAD), Azure, and M365 environments. It gathers additional telemetry from Microsoft Defender for Endpoint (MDE) and Defender for Internet of Things (D4IoT). This tool assists incident response teams by exporting cloud artifacts after an incident for environments that aren't ingesting logs into a Security Information and Events Management (SIEM) or other long term solution for logs.
StackStorm is an open-source automation platform that connects and automates DevOps workflows and integrates with existing infrastructure.
Modular SOAR implementation in Python for security orchestration, automation, and response.
A Sysmon configuration repository for customizing Microsoft Sysinternals Sysmon configurations with modular setup.
Collection of scripts and resources for DevSecOps, Security Automation and Automated Incident Response Remediation.
Exabeam Security Operations Platform is a cloud-native security platform that applies AI and automation to security operations workflows for threat detection, investigation, and response.
An automation platform with community support and documentation for easy development.
A public incident response process documentation used at PagerDuty
Repository of default playbooks and custom functions for Splunk SOAR instances with content migration to Splunk's GitHub.
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.