sentinel-attack
Tools to rapidly deploy a threat hunting capability on Azure Sentinel that leverages Sysmon and MITRE ATT&CK
How to download and setup sentinel-attack
Open terminal and run command
git clone https://github.com/BlueTeamLabs/sentinel-attack.git
git clone is used to create a copy or clone of sentinel-attack repositories.
You pass git clone a repository URL. it supports a few different network protocols and corresponding URL formats.
Also you may download zip file with sentinel-attack https://github.com/BlueTeamLabs/sentinel-attack/archive/master.zip
Or simply clone sentinel-attack with SSH
[email protected]:BlueTeamLabs/sentinel-attack.git
If you have some problems with sentinel-attack
You may open issue on sentinel-attack support forum (system) here: https://github.com/BlueTeamLabs/sentinel-attack/issuesSimilar to sentinel-attack repositories
Here you may see sentinel-attack alternatives and analogs
fluentd logstash tty-command ololog poco zentral riemann sematext-agent-docker logdna-agent XCGLogger simple-go-server graylog2-server concurrency-logger debug oklog awesome-monitoring CocoaDebug bash-oo-framework NLog syslog-ng rsyslog longview SwiftyBeaver Dotzu logrus zap clockwork easyloggingpp tracker xLog