AWS-Threat-Simulation-and-Detection

Attack simulation tool

This repository documents the simulation and detection of various AWS attack scenarios using Stratus Red Team and SumoLogic for logging and analysis.

Playing around with Stratus Red Team (Cloud Attack simulation tool) and SumoLogic

GitHub

284 stars
4 watching
43 forks
last commit: over 3 years ago

Related projects:

RepositoryDescriptionStars
nshalabi/attack-toolsUtilities for simulating adversary behavior in the context of threat intelligence and security analysis1,011
datadog/stratus-red-teamProvides a tool to emulate offensive attack techniques in the cloud1,863
martabyte/red-team-opsA collection of tools and techniques for simulating cyber attacks on computer systems19
n0dec/malwlessA tool designed to simulate system compromise or attack behaviors without running processes or PoCs.271
sbousseaden/slidesCollection of resources and concepts for threat hunting and detection engineering.372
trustoncloud/threatmodel-for-aws-s3An inventory of common attack scenarios on Amazon S3 storage and recommended countermeasures151
stamusnetworks/kts6Templates for Kibana 6 to visualize and analyze Suricata threat intelligence data24
infosecn1nja/red-teaming-toolkitA collection of tools to simulate an adversary's actions and test security controls9,158
sergiomarotco/azure-devops-server-supply-chain-attack-treeAn attack tree model for identifying potential security vulnerabilities in an Azure DevOps Server supply chain.7
securityriskadvisors/vectrA tool for simulating and tracking adversary threats to measure detection and prevention capabilities1,403
stamusnetworks/kts7Templates and dashboards for threat hunting with Suricata IDPS/NSM and the ELK 7 stack40
azure/simulandA collaboration to create realistic test environments for simulating real-world attacks and improving detection strategies.704
elastic/swatA tool designed to simulate malicious behavior against Google Workspace environments for threat research and detection rule effectiveness testing163
nccgroup/nccfsasContains publicly released information on simulated full-spectrum attacks on file systems and security protocols.607
mvelazc0/purplesharpAn adversary simulation tool for Windows environments to generate attack telemetry and improve detection capabilities.782