Security Datasets @SecDatasets
Contributing datasets, from different platforms, to the InfoSec community to expedite data analysis and threat research! https://t.co/j62Xx21lEc securitydatasets.com Datastore Joined September 2019-
Tweets66
-
Followers2K
-
Following5
-
Likes99
Today, Microsoft is open sourcing Cloud Katana, a cloud-native serverless application built on the top of Azure Functions to assess security controls in the cloud and hybrid cloud environments. Read about the design principles and learn how to deploy: msft.it/6011n46MT
🚨 We decided to re-brand Mordor to @SecDatasets 😈 We’ll cover new types of datasets to extend its application 💜 more coming soon.. 🍻 Help us build the largest library of datasets for the InfoSec community! 🚀 Site: securitydatasets.com/introduction.h… Repo: github.com/OTRF/Security-…
We shared a dataset that contains the core behavior 🍻 You can add more context around it! (i.e. Service creation & execution) @OTR_Community 😈 Data: mordordatasets.com/notebooks/smal… 🛡️@sigma_hq rules: 1⃣ github.com/SigmaHQ/sigma/… 2⃣ github.com/SigmaHQ/sigma/… How Do I use the data? ⏬
We shared a dataset that contains the core behavior 🍻 You can add more context around it! (i.e. Service creation & execution) @OTR_Community 😈 Data: mordordatasets.com/notebooks/smal… 🛡️@sigma_hq rules: 1⃣ github.com/SigmaHQ/sigma/… 2⃣ github.com/SigmaHQ/sigma/… How Do I use the data? ⏬ https://t.co/wNZLlUHmIh
Importance of data sets for SecOps research and rule testing with projects by @SBousseaden, @Mordor_Project, @Cyb3rWard0g's SimuLand
🚨 In less than 24h 😉, we are sharing telemetry ( #Sysmon, Security & System) through the @Mordor_Project to help everyone 🌎 expedite the validation process of detection rules! @Cyb3rPandaH #CobaltStrike 🗒️Metadata: mordordatasets.com/notebooks/smal… 😈Dataset: raw.githubusercontent.com/OTRF/mordor/ma…
🚨 In less than 24h 😉, we are sharing telemetry ( #Sysmon, Security & System) through the @Mordor_Project to help everyone 🌎 expedite the validation process of detection rules! @Cyb3rPandaH #CobaltStrike 🗒️Metadata: mordordatasets.com/notebooks/smal… 😈Dataset: raw.githubusercontent.com/OTRF/mordor/ma… https://t.co/mScFav7AqP
It's time to go to SimuLand! 🎠🎡🎢 But it isn't a new vacation theme park hot spot, it's a new open-source initiative that will help you deploy a lab environment to reproduce real attack scenarios to test your security defenses. Get the details: msft.it/6017VxcHv
Sharing @Mordor_Project datasets for "Getting AD FS Database Config Remotely" (Security, Sysmon & PCAP) @Cyb3rWard0g 🍻🙏 mordordatasets.com/notebooks/smal… 1⃣ A few tool-based comments at the host level 2⃣ Group hosts & processes connecting to AD FS server over port 80 (Usually 443)
Sharing @Mordor_Project datasets for "Getting AD FS Database Config Remotely" (Security, Sysmon & PCAP) @Cyb3rWard0g 🍻🙏 mordordatasets.com/notebooks/smal… 1⃣ A few tool-based comments at the host level 2⃣ Group hosts & processes connecting to AD FS server over port 80 (Usually 443) https://t.co/MGATslvJIn
Sharing some data samples (PCAP & WinEvents) to validate detection of lateral movement via remote scheduled task creation & update 🍻 @OTR_Community 1⃣ Creation: mordordatasets.com/notebooks/smal… 2⃣ Update: mordordatasets.com/notebooks/smal… @HunterPlaybook Library Doc: github.com/OTRF/ThreatHun…
Sharing some data samples (PCAP & WinEvents) to validate detection of lateral movement via remote scheduled task creation & update 🍻 @OTR_Community 1⃣ Creation: mordordatasets.com/notebooks/smal… 2⃣ Update: mordordatasets.com/notebooks/smal… @HunterPlaybook Library Doc: github.com/OTRF/ThreatHun…
Looking forward to it! 🍻 Let's talk about some of the steps taken before sharing a dataset with the community 💜
Looking forward to it! 🍻 Let's talk about some of the steps taken before sharing a dataset with the community 💜
Big news ya'll: @Cyb3rWard0g will be hosting our next Atomic Friday on December 11! Join us for a deep dive into @Mordor_Project and learn strategies for expediting data analysis. bit.ly/33AKlil
Don`t Forget to checkout Project SimuLand for ☁️Cloud Datasets mordordatasets.com/notebooks/smal…
Looking for ways to validate detection rules for that specific behavior? A small sample of data and a few rules! Thank you @rbmaslen @domchell @tifkin_ @OTR_Community 😈 Dataset: mordordatasets.com/notebooks/smal… 🏹 @sigma_hq: 1) github.com/OTRF/sigma/blo… 2) github.com/OTRF/sigma/blo…
Looking for ways to validate detection rules for that specific behavior? A small sample of data and a few rules! Thank you @rbmaslen @domchell @tifkin_ @OTR_Community 😈 Dataset: mordordatasets.com/notebooks/smal… 🏹 @sigma_hq: 1) github.com/OTRF/sigma/blo… 2) github.com/OTRF/sigma/blo… https://t.co/9XPRkez187
So cool to see this! 👍
So cool to see this! 👍
If you are wondering what this might look like in Sysmon, we got you covered with a new small dataset. You can simply download it from the link below and explore it with PSH as shown in the second image below 😊 Thank you @jxy__s ! 😈 mordordatasets.com/notebooks/smal…
If you are wondering what this might look like in Sysmon, we got you covered with a new small dataset. You can simply download it from the link below and explore it with PSH as shown in the second image below 😊 Thank you @jxy__s ! 😈 mordordatasets.com/notebooks/smal… https://t.co/u4cJBWlBg3
😈 Adding more Windows datasets after using @redcanary Atomic Red Team and @mvelazco PurpleSharp 💜 Thank you all for everything you share with the Infosec Community 🌎 Courtesy of the @OTR_Community ! Commit: github.com/OTRF/mordor/co…
HOW to contribute a @Mordor_Project dataset in 2 mins ⏳w/ the help of @redcanary ART & then contribute to @sigma_hq after exploring the data! @OTR_Community ♻️ Clear, Exec & Collect: youtu.be/6iteEfbuwU8 😈 Data: mordordatasets.com/notebooks/smal… 🏹 Rule: github.com/OTRF/sigma/blo…
Check out mordordatasets.com/notebooks/smal… and threathunterplaybook.com/notebooks/wind… - Mordor Dataset and Playbook entry for wuauclt.exe abuse with many thanks to @Cyb3rWard0g 🤜 for his epic work as ever! Will be updating blog with these links too for reference 💪
Check out mordordatasets.com/notebooks/smal… and threathunterplaybook.com/notebooks/wind… - Mordor Dataset and Playbook entry for wuauclt.exe abuse with many thanks to @Cyb3rWard0g 🤜 for his epic work as ever! Will be updating blog with these links too for reference 💪
Since I last discussed @brimsecurity use with @Cyb3rWard0g & @Cyb3rPandaH's Mordor APT29 datasets in #toolsmith 144, @OliverRochford has been hard at work for Brim, exploring further & documenting his practice well. Check out medium.com/brim-securitys… & the prior post. Great work!
#Day3 #100DaysOfBlueTeam Today I learned a few things about some open source projects. I must admit I was not expecting the music theme for the example of @Mordor_Project 🤣 youtu.be/kBe6-D1_ais

Florian Roth ⚡️ @cyb3rops
206K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
Katie Nickels @likethecoins
55K Followers 3K Following Director of Intel at @redcanary. SANS Certified Instructor for FOR578: CTI. Senior Fellow at @CyberStatecraft. She/her. Mastodon: @[email protected]
Christopher Peacock @SecurePeacock
7K Followers 2K Following #PurpleTeam | Ex @RaytheonTech MSSP, @SCYTHE_IO, & @GD_OTS | Taught at BlackHat & DEFCON | #100DaysofSigma | Keep exploring, keep learning, and stay curious
Nasreddine Benchercha... @nas_bench
11K Followers 1K Following Detection @Splunk & @cisco | previously @nextronsystems | @sigma_hq & @magicswordio maintainer | Eternal Learner
Eric Capuano - Bsky: ... @eric_capuano
11K Followers 3K Following Co-Founder @recon_infosec | SANS DFIR Instructor | IANS Faculty | https://t.co/yUXCSu2Yso | ⬡ ❤ @shortxstack
The Haag™ @M_haggis
9K Followers 2K Following Threat Researcher | Co-Host of Atomics on a Friday | LOLDrivers & Atomic Red Team Maintainer | I'm Everywhere and Nowhere - BSG.
Red Canary, a Zscaler... @redcanary
30K Followers 1K Following 24/7/365 threat detection and response across your cloud, identity, endpoints and everything in-between. We got you: https://t.co/pFNwBJN3d5
J⩜⃝mie Williams @jamieantisocial
10K Followers 7K Following threats && stuff || #UNC1799 forever 🤘|| @DistrictHeather ♥️ + 🍷 **𝚅𝚒𝚎𝚠𝚜 𝚎𝚡𝚙𝚛𝚎𝚜𝚜𝚎𝚍 𝚊𝚛𝚎 𝚖𝚈 օ𝚠𝚗**
Dr. Anton Chuvakin @anton_chuvakin
41K Followers 9K Following Information security - #SIEM, #DFIR, #EDR formerly at Gartner! Now @GoogleCloud Office of the #CISO; host of @CloudSecPodcast https://t.co/VpKtfz8nXG
ROSENDOVQUINONES1774 @IndoorQual43498
242 Followers 5K Following
Ethan Aviel Leon @EthanAvielleon
7 Followers 469 Following 🛡️ Freelance Pentester & Security Consultant | 🔍 Bug Bounty Hunter | 🏅 HOF: Netflix, Mastercard, United Nation, OLX, Under Armour | 🎥 YouTuber |✍️ Blogger |
Wilhelm Bentsen @WilhelmBentsen
80 Followers 2K Following
Chaitanya Mishra @Chaitanya_Mi
0 Followers 53 Following Bridging data, dreams, and hackathon caffeine | Learning Python, solving problems, chasing purpose | IED Cell fam
AISecHub @AISecHub
4K Followers 4K Following 🚀 AISecHub | AI & Cybersecurity | Discussing AI-driven threats, securing AI systems, and sharing insights on emerging challenges 💡
LawalFathia @LawalDamil27332
1 Followers 25 Following From Library Science to Data 📚➡📊 | Excel Enthusiast | Building skills daily | #DataAnalytics
Markus Spengler @markus_spengler
0 Followers 36 Following
icebot @l0ckbit3
2 Followers 313 Following
Abdalrashid @KhAbdalrashid
9 Followers 89 Following
Nirvaan_x @NirvaanX
1 Followers 30 Following
Dear John @JohnOmale434785
0 Followers 109 Following
Tathoy @TathoyOQFeuvB
28 Followers 826 Following
Sicromost Cloud Profe... @smatts4t8k2
31 Followers 320 Following
Muhammed Talaat @Muhammed_0x00
3K Followers 556 Following Team Lead. DFIR🔬| Malware Researcher (Analyst | Developer)👾| Reverse Engineer🔍| Threat Intelligence🛡| (#eCMAP|#eCTHPv2|#eCIR|#eCDFP|#eMAPT)
Shina Mashiro @ShiinaaM
402 Followers 3K Following Microsoft Sentinel Enthusiast | 4n6 Investigator | Cloud Security | 🇮🇩 S.Kom
Stanley Arthur @BORNFREEGH
63 Followers 878 Following
Falcon @F8i8495312
38 Followers 650 Following
Hasan Zahid @hasan19zahid
8 Followers 532 Following
Dr. Fahad Salamh د.�... @FEFSALAMH
5K Followers 495 Following دكتوراه في #التحقيق_الجنائي_الرقمي والاستجابة للحوادث السيبرانية (حساب شخصي)
Alberto Fuentes (e/ac... @AlberFuen
691 Followers 3K Following Cofounder of @daertml. Training LLaMAs as a hobby (and no profit yet).
Travis Green @travisbgreen
674 Followers 2K Following An infosec old & author of TGI HUNT rules. Not the gospel singer. Opinions are my own and not the views of my employer. I don't often check DM here
𝓙𝓪𝓬𝓴2 @2RunJack2
1K Followers 3K Following #ThreatIntel Researcher @S2W_Official @TALON_INTEL Main Author of Threat Intel Report 'Campaign DOKKAEBI : Documents of Korean and Evil Binary' / Formerly FSI
SA @philohack_
110 Followers 3K Following
csirtiocs @csirtiocs
0 Followers 56 Following
Shanna Niggans 🦄 @fancy_4n6
4K Followers 2K Following Digital forensics & incident response #DFIR + #CTI | Horse and Dog mum | Co-host @ComfyConAU | CISO @OpSysAU | RB/SCP for @BlackHatEvents & @BSidesMelbourne
spider @LulleLullu63135
132 Followers 3K Following
Ire_CT @IreCoT
882 Followers 718 Following CEO & Founder Zyberia Cybersecurity #Forense #DFIR . Docente Máster en ciberseguridad en CIFP Cuenca. Colaboradora grupos EDITE Guardia Civil.
Test @EngAhmdSelim
122 Followers 218 Following
Brian Halbach ☕️ @brianhalbach
1K Followers 6K Following Who has two thumbs and can count to ten. Does cyber security things | abyss gazer | opinions are my own | (he/him)
Priya Meyyappan @priyaplm
2 Followers 155 Following
3pyc80 @zp4_sec
2 Followers 163 Following
راغِِِِِِِ�... @0x7D6E6867
530 Followers 3K Following Cybersecurity Architect | CyberSpirits Hunter | Human Rights (he/him)
TrapGeekDrip @geek_drip
302 Followers 5K Following
Duck @Artoria01900719
0 Followers 262 Following
y0uf0ol @y0uf0ol
37 Followers 538 Following Microsoft Security Dude | Machine Learning Hobbyist | #EDR #SIEM #AI
AJ King @ajkingio
160 Followers 729 Following Threat Research Manager @splunk / @SnapAttackhq now part of @Splunk now part of @Cisco / Detection Engineering / Dad
Mohamed Saied @dr_hypermind
68 Followers 881 Following
ThreatHunter-Playbook @HunterPlaybook
6K Followers 7 Following I document #ThreatHunting playbooks in the form of #jupyter notebooks and share them with the world! https://t.co/djKSwSGXgA @Cyb3rWard0g
Jose Rodriguez 🇵�... @Cyb3rPandaH
6K Followers 342 Following #CyberDefense #AI #DataScience @GeorgeMasonU @NOVAcommcollege @pucp
THE-HELK @THE_HELK
7K Followers 46 Following #ThreatHunting #BigDataAnalytics #MachineLearning Author: @Cyb3rWard0g
Roberto Rodriguez �... @Cyb3rWard0g
26K Followers 628 Following AI Security Researcher @nvidia | Prev: @Microsoft | Founder of the @OTR_Community