Skip to content
Change the repository type filter

All

    Repositories list

    • Checks status of USM sensors via selenium.
      Python
      0100Updated Sep 6, 2024Sep 6, 2024
    • cbSweep

      Public
      Sweeps IPs in bulk off of carbon black.
      Python
      0100Updated Jul 7, 2024Jul 7, 2024
    • gitSearch

      Public
      Searches for repositories with keywords and then filter out individual files too.
      Python
      0100Updated Jul 7, 2024Jul 7, 2024
    • Quick & Dirty DFIR scripts developed by Ebryx DFIR team to keep handy during field assignment
      Python
      31400Updated Jul 7, 2024Jul 7, 2024
    • Scouter

      Public
      This repository maintains some of the scripts made by Ebryx DevSecOps team.
      Python
      MIT License
      9000Updated Jun 15, 2024Jun 15, 2024
    • Checks WAF association for ALBs and alerts on slack.
      Python
      0103Updated Dec 8, 2022Dec 8, 2022
    • Vetter

      Public
      Calculate hashes from files and check against VirusTotal (using the PublicAPIV3)
      Python
      0202Updated Dec 8, 2022Dec 8, 2022
    • Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
      HCL
      MIT License
      207000Updated Nov 6, 2020Nov 6, 2020
    • A project to monitor DNS and point out stale values.
      Python
      0400Updated Aug 5, 2020Aug 5, 2020
    • Sysmon configuration file template with default high-quality event tracing
      1.7k000Updated Jul 15, 2020Jul 15, 2020
    • For a file containing list of IPs, shares IP reputation results.
      Python
      0100Updated Jun 24, 2020Jun 24, 2020
    • dExter

      Public
      Checks userdata and launch templates of all EC2s against regexes.
      Python
      0100Updated Jun 21, 2019Jun 21, 2019
    • usm2jira

      Public
      A project to push AlientVault USM alarms to JIRA automatically.
      Python
      Other
      0100Updated Jun 13, 2019Jun 13, 2019
    • forestHog

      Public
      Searches through git repositories for high entropy strings and secrets, digging deep into commit history
      Python
      GNU General Public License v2.0
      1.7k200Updated Jun 10, 2019Jun 10, 2019
    • Easily delete Elasticsearch indices by setting this script as a cron job and managed config file
      Python
      GNU General Public License v3.0
      0000Updated Apr 19, 2019Apr 19, 2019
    • opencrypt

      Public
      Symmetric encryption and decryption compatible with openSSL.
      Python
      MIT License
      0200Updated Mar 20, 2019Mar 20, 2019
    • ebryx

      Public
      Repo for ebryx python library.
      Python
      MIT License
      0300Updated Mar 20, 2019Mar 20, 2019
    • cwl-to-es

      Public
      Send cloudwatch logs to Elasticsearch
      Python
      MIT License
      0400Updated Mar 16, 2019Mar 16, 2019
    • awsip

      Public
      A project to check whether an IP address exists in Amazon infrastructure
      Python
      MIT License
      0300Updated Feb 24, 2019Feb 24, 2019
    • Script to download objects from an S3 bucket
      Python
      0100Updated Jan 20, 2019Jan 20, 2019
    • Gets targeted data out of elastic search automatically.
      Python
      1000Updated Jan 10, 2019Jan 10, 2019
    • Python
      MIT License
      0000Updated Oct 25, 2018Oct 25, 2018
    • A repository of sysmon configuration modules
      PowerShell
      MIT License
      588000Updated Oct 4, 2018Oct 4, 2018
    • Monitors if the AWS role credentials set on any of the EC2 instances are compromised
      Python
      MIT License
      0100Updated Sep 29, 2018Sep 29, 2018
    • Sends Cloudwatch alarms to Slack
      Python
      MIT License
      1000Updated Sep 28, 2018Sep 28, 2018
    • Fake bruteforce attempts on demo APIs and its detection via Kinesis Analytics app
      Python
      MIT License
      0000Updated Sep 28, 2018Sep 28, 2018