Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
csirt
Awesome CSIRT is an curated list of links and resources in security and CSIRT daily activities.
https://github.com/spacial/csirt
Last synced: about 10 hours ago
JSON representation
-
Books
- here
- Practical Cryptography for Developers - cryptography-for-developers-book)
- The Book of Secret Knowledge
- The Cyber Plumber's Handbook
-
Links
-
- Malware Analysis Resources
- list
- APT & CyberCriminal Campaign Collection
- Shodan - connected devices. [Shodan 2000](https://2000.shodan.io/)
- CriminalIP - related information such as malicious IP addresses, domains, banners, etc. It can be widely integrated
- hacking-tutorials
- crypto
- tink - language, cross-platform library that provides cryptographic APIs that are secure, easy to use correctly, and hard(er) to misuse.
- SPLOITUS
- Vulmon
- CRYPTO101
- SMHasher - cryptographic hash functions. [another repo](https://github.com/aappleby/smhasher)
- CPDoS
- cacao - open.org/committees/tc_home.php?wg_abbrev=cacao)
- cti-documentation
- SOCless - labs/socless)
- Open CSIRT Foundation - [SIM v3 Model](http://opencsirt.org/wp-content/uploads/2019/12/SIM3-mkXVIIIc.pdf) and [SIM3 Self Assessment](https://sim3-check.opencsirt.org).
- Global Forum on Cyber Expertise (GFCE)
- Ten strategies of a world-class cybersecurity operations center
- my-infosec-awesome
- How to Secure Anything
- Metasploitable3
- Institute for Security and Technology - traditional approach has a bias towards action, as we build trust across domains, provide unprecedented access, and deliver and implement solutions.
- NIST'S CYBERSECURITY FRAMEWORK
- pluto-eris - pairing cycle of elliptic curves.
- cset
- comply
- Illustrated X.509 Certificate
- Open Security Controls Assessment Language (OSCAL) - , JSON-, and YAML-based formats that provide a standardized representations of information pertaining to the publication, implementation, and assessment of security controls.
- DWF
- OASIS Common Security Advisory Framework (CSAF) - tcs/csaf) [secvisogram](https://github.com/secvisogram/secvisogram) [editor](https://secvisogram.github.io/)
- notrandom
- OpenEX - Platform/openex)
- NCSI
- THE EVOLUTION OF TRUST
-
Incident Response
- Pagerduty Incident Response
- security-training
- incident-response-docs
- global-irt
- atc-react
- Request Tracker
- Beagle
- CSIRT Schiltron: Training, Techniques, and Talent
- Practical Tabletop Drills for CSIRTS - Pre-session Material
- DFIRTrack
- FIR
- Aurora Incident Response
- timesketch
- FastIR Collector Linux
- Critical Log Review Checklist for Security Incidents
- How to Write and Execute Great Incident Response Playbooks
- Incident Response: Windows Cheatsheet
- Incident Response: Windows Account Logon and logon Events
- Incident Response: Windows Account Management Event (Part 2)
- Incident Response- Linux Cheatsheet
- Building Better CSIRTs Using Behavioral Psychology - 21/briefings/schedule/index.html#building-better-csirts-using-behavioral-psychology-24331)
- Maltrail
-
Hashing
- MD5 Decryption
- SHA-1 is a Shambles - Prefix Collision on SHA-1 and Application to the PGP Web of Trust
- Sha256 Algorithm Explained
-
-
CVEs
-
Hashing
- here
- MikroTik
- TROMMEL
- cve_manager
- dorkbot - line tool to scan Google search results for vulnerabilities.
- NotQuite0DayFriday
- Exploit Prediction Scoring System (EPSS) - driven effort for predicting when software vulnerabilities will be exploited. Our goal is to assist network defenders to better prioritize vulnerability remediation efforts.
- CVE PoC
-
-
Malware Analysis
-
Hashing
- Awesome Malware Analysis
- course
- CS6038/CS5138 Malware Analysis, UC - Malware-Analysis)
- list
-
Programming Languages
Categories
Sub Categories
Keywords
security
8
incident-response
5
dfir
4
awesome
3
awesome-list
3
hacking
2
json
2
list
2
compliance
2
documentation
2
pagerduty
2
team-security
2
digital-forensics
2
incident-management
2
incident-response-tooling
2
stix2
1
taxii
1
taxii2
1
information-security
1
malware-samples
1
secure-design
1
secure-systems
1
security-architecture
1
security-assurance
1
security-engineering
1
threat-modeling
1
cset
1
security-audit
1
malware-research
1
documentation-toolchain
1
gdpr
1
go
1
golang
1
grc
1
hipaa
1
iso27001
1
pdf-generation
1
soc2
1
templates
1
assessment
1
threatintel
1
threat-sharing
1
bsd
1
cheatsheets
1
devops
1
guidelines
1
threat-intelligence
1
hacks
1
howtos
1
linux
1