Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

https://github.com/nasbench/mindmaps

#ThreatHunting #DFIR #Malware #Detection Mind Maps
https://github.com/nasbench/mindmaps

detection dfir forensics incident-response mindmap threat-hunting threat-intelligence windows

Last synced: 13 days ago
JSON representation

#ThreatHunting #DFIR #Malware #Detection Mind Maps

Awesome Lists containing this project

README

        

# MindMaps

This repository contains a collection of MindMaps that i've created

## Windows System Processes

- [Svchost (Service Host Process)](./Windows%20System%20Processes/Svchost/)
- [Windows Services](./Windows%20System%20Processes/Services/)
- [Windows System Processes](./Windows%20System%20Processes/)

## Understanding & Detecting C2 Frameworks

- [HARS - HTTPS Asynchronous Reverse Shell (Server Handler)](./Understanding%20%26%20Detecting%20C2%20Frameworks/HARS%20-%20HTTPS%20Asynchronous%20Reverse%20Shell/)
- [TrevorC2 (Main Callback Flow)](./Understanding%20%26%20Detecting%20C2%20Frameworks/TrevorC2)

## Finding Detection and Forensic Goodness In ETW Providers

- [Finding Detection and Forensic Goodness In ETW Providers](./Finding%20Detection%20and%20Forensic%20Goodness%20In%20ETW%20Providers/)

## ETW Providers

- TBD

## Visualize

Currently the Mind Maps are only available in **".xmind"** format. You can visualize them using [XMind](https://www.xmind.net/) or by importing them into [EdrawMind](https://www.edrawmind.com/)