Incident response playbooks for common attack scenarios — aligned to NIST and MITRE ATT&CK
-
Updated
May 11, 2026
Incident response playbooks for common attack scenarios — aligned to NIST and MITRE ATT&CK
Network threat detection lab — Encrypted Client Hello, post-quantum TLS, JA4 fingerprinting, DNS tunneling, C2 beaconing, AI/MCP egress. Sigma rules, SOC playbooks, and CI-validated detection-as-code.
Add a description, image, and links to the soc-playbook topic page so that developers can more easily learn about it.
To associate your repository with the soc-playbook topic, visit your repo's landing page and select "manage topics."