Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/center-for-threat-informed-defense/cloud-analytics
Cloud Analytics helps defenders detect attacks to their cloud infrastructure by developing behavioral analytics for cloud platforms as well as a blueprint for how others can create and use cloud analytics effectively.
https://github.com/center-for-threat-informed-defense/cloud-analytics
analytics cloud cloud-computing ctid cyber-analytics cyber-threat-intelligence cybersecurity mitre-attack
Last synced: about 1 month ago
JSON representation
Cloud Analytics helps defenders detect attacks to their cloud infrastructure by developing behavioral analytics for cloud platforms as well as a blueprint for how others can create and use cloud analytics effectively.
- Host: GitHub
- URL: https://github.com/center-for-threat-informed-defense/cloud-analytics
- Owner: center-for-threat-informed-defense
- License: apache-2.0
- Created: 2021-12-06T12:32:43.000Z (about 3 years ago)
- Default Branch: main
- Last Pushed: 2023-04-25T15:07:36.000Z (over 1 year ago)
- Last Synced: 2024-05-12T00:45:24.304Z (7 months ago)
- Topics: analytics, cloud, cloud-computing, ctid, cyber-analytics, cyber-threat-intelligence, cybersecurity, mitre-attack
- Language: HCL
- Homepage: https://ctid.mitre-engenuity.org/our-work/cloud-analytics/
- Size: 12.8 MB
- Stars: 49
- Watchers: 73
- Forks: 9
- Open Issues: 1
-
Metadata Files:
- Readme: README.md
- License: LICENSE
Awesome Lists containing this project
README
# Cloud Analytics
This Cloud Analytics project researched and developed best practices to help defenders improve their ability to detect adversary behaviors in today's complex cloud environments. This repository contains behavioral analytics to detect attacks to cloud platforms and a blueprint for how others can create and use cloud analytics effectively.
## Resources
| Resource | Description |
|----------|-------------|
| [Blueprint Document](/docs/Cloud_Analytics_Development_Blueprint.pdf) | Best practices and lessons learned for developing cloud analytics. |
| [Analytics](/analytics/) | Analytics generated in Sigma format for the project. |
| [CALDERA Emulation Tips](/emulation/) | Documentation on reproducing adversary emulation using Caldera. |
| [Sigma Rule Information](/docs/) | Documentation on using Sigma rules in relation to Cloud Analytics. |
| [Support Resources](/support/) | Resources not part of final deliverable, but potentially useful. |## Questions and Feedback
Please submit issues for any technical questions/concerns or contact [email protected] directly for more general inquiries.
Also see the guidance for contributors if are you interested in contributing or simply reporting issues.
## Notice
Copyright 2022 MITRE Engenuity. Approved for public release. Document number CT0053
Licensed under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. You may obtain a copy of the License at
Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License.
This project makes use of ATT&CK®
[ATT&CK Terms of Use](https://attack.mitre.org/resources/terms-of-use/)