weslambert

weslambert

Geek Repo

Company:Security Onion Solutions LLC

Location:Augusta, GA

Home Page:https://infosec.exchange/@weslambert

Twitter:@therealwlambert

Github PK Tool:Github PK Tool

weslambert's repositories

velociraptor-docker

Docker image for Velocidex Velociraptor

DinoSOARLab

Security Onion + Automation + Response Lab including n8n and Velociraptor

Language:ShellLicense:GPL-3.0Stargazers:98Issues:7Issues:18
Language:JavaScriptLicense:GPL-3.0Stargazers:45Issues:5Issues:14

securityonion-velociraptor

Run Velociraptor on Security Onion

Language:SaltStackLicense:GPL-3.0Stargazers:33Issues:5Issues:13

securityonion-sublime

Ingest Sublime email alerts into Security Onion

Language:PythonLicense:GPL-3.0Stargazers:6Issues:2Issues:2

Audit

Collection of Audit and Compliance related VQL artifacts

Language:GoStargazers:1Issues:0Issues:0

jamfprotect

A repository for open-source resources created for use with or alongside Jamf Protect.

Language:ShellLicense:MITStargazers:1Issues:1Issues:0

python-apps

Apps to be used for Shuffle automation

Language:PythonLicense:MITStargazers:1Issues:1Issues:0

securityonion-n8n

Install n8n on Security Onion to assist with automating context gathering and response

Language:ShellLicense:GPL-3.0Stargazers:1Issues:2Issues:2

Tools

Distribute third party tools for use with Velociraptor

velociraptor

Digging Deeper....

Language:GoLicense:NOASSERTIONStargazers:1Issues:0Issues:0

aftermath

Aftermath is a free macOS IR framework

Language:SwiftLicense:MITStargazers:0Issues:1Issues:0

ChopChopGo

Rapidly Search and Hunt through Linux Forensics Artifacts

Language:GoLicense:GPL-3.0Stargazers:0Issues:0Issues:0

dockerfiles

Dockerfiles for the official Elastic Stack images

Language:ShellStargazers:0Issues:1Issues:0

elastalert2

ElastAlert 2 is a continuation of the original yelp/elastalert project. Pull requests are appreciated!

Language:PythonLicense:Apache-2.0Stargazers:0Issues:1Issues:0

elasticsearch

Free and Open, Distributed, RESTful Search Engine

Language:JavaLicense:NOASSERTIONStargazers:0Issues:1Issues:0

go-sigma-rule-engine

Golang library that implements a sigma log rule parser and match engine.

Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0

integrations

Elastic Integrations

Language:HandlebarsLicense:NOASSERTIONStargazers:0Issues:0Issues:0

iris-web

Collaborative Incident Response platform

Language:JavaScriptLicense:LGPL-3.0Stargazers:0Issues:0Issues:0
Language:C++License:NOASSERTIONStargazers:0Issues:1Issues:0

Shuffle

Shuffle: A general purpose security automation platform. Our focus is on collaboration and resource sharing.

Language:JavaScriptLicense:AGPL-3.0Stargazers:0Issues:1Issues:0

strelka-ui

Strelka Web UI for File Submission and Analysis

Language:JavaScriptLicense:NOASSERTIONStargazers:0Issues:0Issues:0

velociraptor-docs

Documentation site for Velociraptor

Language:HTMLLicense:NOASSERTIONStargazers:0Issues:1Issues:0
Language:C#License:NOASSERTIONStargazers:0Issues:1Issues:0

yamllint

A linter for YAML files.

Language:PythonLicense:GPL-3.0Stargazers:0Issues:1Issues:0

yara-forge

Automated YARA Rule Standardization and Quality Assurance Tool

Language:PythonLicense:GPL-3.0Stargazers:0Issues:0Issues:0

yara-forge-docker

Run YARA Forge in a Docker container

Language:DockerfileLicense:GPL-3.0Stargazers:0Issues:0Issues:0

zeek-oui

Add an OUI lookup to Bro IDS.

Language:PythonLicense:BSD-3-ClauseStargazers:0Issues:1Issues:0