A specialized environment for crafting, validating, and testing LimaCharlie detection rules
-
Updated
Nov 11, 2025 - Vue
A specialized environment for crafting, validating, and testing LimaCharlie detection rules
f0_library — open security testing framework for AV/EDR evaluation, mapped to MITRE ATT&CK. Generates tests, detection rules (KQL/YARA/Sigma/EQL/LC), and defense guidance.
Cyber Threat Detection and Response: Integration of Sysmon, YARA, Sliver C2, and LimaCharlie EDR to simulate and analyze ransomware/memory dump threats
SOC automation lab using Tines and LimaCharlie for alert enrichment, analyst approval, and endpoint response workflows.
In this project, I learn how to automate security workflows and enhance my cybersecurity posture effectively.
Automated SOAR/EDR pipeline using LimaCharlie, Tines, Slack, and Email for real-time threat detection and host isolation.
Automated threat detection and incident response lab using LimaCharlie (EDR) and Tines (SOAR). Detects LaZagne credential theft on a Windows Azure VM, triggers Slack/email alerts, and auto-isolates the endpoint based on analyst decision.
A fully functional SOC lab built on a single laptop using OPNsense, Wazuh, Suricata, LimaCharlie, Tines and DVWA — academic cybersecurity project
Add a description, image, and links to the limacharlie topic page so that developers can more easily learn about it.
To associate your repository with the limacharlie topic, visit your repo's landing page and select "manage topics."