Add: DataDog/threatest to DFIR section

This commit is contained in:
pe3zx 2022-08-16 23:43:49 +07:00
parent 08c0278801
commit 758ceb8353

View File

@ -1573,6 +1573,10 @@ This repository is created as an online bookmark for useful links, resources and
<td><a href="https://github.com/DamonMohammadbagher/ETWProcessMon2">DamonMohammadbagher/ETWProcessMon2</a></td> <td><a href="https://github.com/DamonMohammadbagher/ETWProcessMon2">DamonMohammadbagher/ETWProcessMon2</a></td>
<td>ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection etc.</td> <td>ETWProcessMon2 is for Monitoring Process/Thread/Memory/Imageloads/TCPIP via ETW + Detection for Remote-Thread-Injection etc.</td>
</tr> </tr>
<tr>
<td><a href="https://github.com/DataDog/threatest">DataDog/threatest</a></td>
<td>Threatest is a Go framework for end-to-end testing threat detection rules.</td>
</tr>
<tr> <tr>
<td><a href="https://github.com/davehull/Kansa">davehull/Kansa</a></td> <td><a href="https://github.com/davehull/Kansa">davehull/Kansa</a></td>
<td>A Powershell incident response framework</td> <td>A Powershell incident response framework</td>