Red Canary (redcanaryco)

Red Canary

redcanaryco

Geek Repo

Home Page:www.redcanary.com

Twitter:@redcanary

Github PK Tool:Github PK Tool

Red Canary's repositories

atomic-red-team

Small and highly portable detection tests based on MITRE's ATT&CK.

mac-monitor

Red Canary Mac Monitor is an advanced, stand-alone system monitoring tool tailor-made for macOS security research. Beginning with Endpoint Security (ES), it collects and enriches system events, displaying them graphically, with an expansive feature set designed to reduce noise.

invoke-atomicredteam

Invoke-AtomicRedTeam is a PowerShell module to execute tests as defined in the [atomics folder](https://github.com/redcanaryco/atomic-red-team/tree/master/atomics) of Red Canary's Atomic Red Team project.

Language:PowerShellLicense:MITStargazers:800Issues:52Issues:58

chain-reactor

Chain Reactor is an open source framework for composing executables that simulate adversary behaviors and techniques on Linux endpoints.

Language:CLicense:MITStargazers:288Issues:32Issues:9

AtomicTestHarnesses

Public Repo for Atomic Test Harness

Language:PowerShellLicense:BSD-3-ClauseStargazers:242Issues:30Issues:1

surveyor

A cross-platform baselining, threat hunting, and attack surface analysis tool for security teams.

Language:PythonLicense:MITStargazers:168Issues:31Issues:74

oxidebpf

A Rust library for managing eBPF programs.

Language:RustLicense:BSD-3-ClauseStargazers:115Issues:23Issues:1

redcanary-response-utils

Tools to automate and/or expedite response.

Language:PythonLicense:MITStargazers:113Issues:34Issues:7

redcanary-ebpf-sensor

Red Canary's eBPF Sensor

Language:CLicense:GPL-2.0Stargazers:94Issues:21Issues:1
Language:GoLicense:BSD-3-ClauseStargazers:79Issues:16Issues:0

wwhf

Exercises for C# Workshop at Wild West Hackin' Fest 2018 & 2019.

Language:HTMLStargazers:64Issues:19Issues:0

vscode-attack

Visual Studio Code extension for MITRE ATT&CK

Language:TypeScriptLicense:BSD-3-ClauseStargazers:50Issues:19Issues:11

public-research

Public repository for Red Canary Research

Language:CLicense:MITStargazers:33Issues:20Issues:0

ansible-atomic-red-team

This project is an Ansible Role to execute Atomic Red Team tests against multiple machines by wrapping Invoke-AtomicRedTeam

Language:ShellLicense:MITStargazers:22Issues:12Issues:0

cb-response-smb1-utility

A simple utility to check the status of and/or disable SMBv1 on Windows system via Cb Response's Live Response functionality.

Language:PythonLicense:MITStargazers:15Issues:25Issues:1

cb-event-forwarder

Subscribe to raw Carbon Black event feed and forward to another system, such as Splunk, etc.

Language:JavaScriptLicense:NOASSERTIONStargazers:8Issues:14Issues:0

openapi

Public API clients for connecting to the Red Canary APIs

Language:PythonLicense:MITStargazers:7Issues:26Issues:0

Azure-Sentinel

Cloud-native SIEM for intelligent security analytics for your entire enterprise.

Language:Jupyter NotebookLicense:MITStargazers:6Issues:2Issues:0

zendesk_api_client_rb

Official Ruby Zendesk API Client

Language:RubyLicense:Apache-2.0Stargazers:4Issues:1Issues:0
Language:C++License:BSD-3-ClauseStargazers:3Issues:15Issues:0

cbapi-python

Carbon Black API - Python language bindings

Language:PythonLicense:NOASSERTIONStargazers:2Issues:7Issues:0
Language:RubyLicense:NOASSERTIONStargazers:1Issues:3Issues:0

client_ruby

Prometheus instrumentation library for Ruby applications

Language:RubyLicense:Apache-2.0Stargazers:1Issues:12Issues:0

gh-action-publish-gem-on-tag

A Github action for publishing to the package registry on tag pushes

Language:ShellStargazers:1Issues:2Issues:0

helm-charts

Red Canary's Public Helm Chart Repository

Language:SmartyLicense:BSD-3-ClauseStargazers:1Issues:14Issues:0

protobuf

Protocol Buffers - Google's data interchange format

Language:C++License:NOASSERTIONStargazers:1Issues:2Issues:0

homebrew-cask

🍻 A CLI workflow for the administration of macOS applications distributed as binaries

Language:RubyLicense:BSD-2-ClauseStargazers:0Issues:1Issues:0

timescale

The timescaledb gem. Pack of helpers to work with TimescaleDB extension in Ruby.

Language:RubyLicense:MITStargazers:0Issues:2Issues:0