From a042fb0e4a8274f5bfcc6f15a58dac76b35cb7fd Mon Sep 17 00:00:00 2001 From: 0xACAB <18677+fabacab@users.noreply.github.com> Date: Mon, 14 Dec 2020 02:05:07 -0500 Subject: [PATCH] Add Sunburst countermeasures IoC collection. --- README.md | 1 + 1 file changed, 1 insertion(+) diff --git a/README.md b/README.md index 28d6310..e095758 100644 --- a/README.md +++ b/README.md @@ -312,6 +312,7 @@ See also [awesome-threat-intelligence](https://github.com/hslatman/awesome-threa ### Threat signature packages and collections - [FireEye's Red Team Tool Countermeasures](https://github.com/fireeye/red_team_tool_countermeasures) - Collection of Snort and YARA rules to detect attacks carried out with FireEye's own Red Team tools, first released after FireEye disclosed a breach in December 2020. +- [FireEye's Sunburst Countermeasures](https://github.com/fireeye/sunburst_countermeasures) - Collection of IoC in various languages for detecting backdoored SolarWinds Orion NMS activities and related vulnerabilities. - [YARA Rules](https://github.com/Yara-Rules/rules) - Project covering the need for IT security researchers to have a single repository where different Yara signatures are compiled, classified and kept as up to date as possible. ## Tor Onion service defenses