ubercylon8/f0_library
f0_library — open security testing framework for AV/EDR evaluation, mapped to MITRE ATT&CK. Generates tests, detection rules (KQL/YARA/Sigma/EQL/LC), and defense guidance.
GitHub repository with 5 stars and 0 forks.
Language: Go
Topics: av-evasion, detection-engineering, dora, edr, golang, kql, limacharlie, mitre-attack, purple-team, security