20 results found Sort:

✨ A curated list of awesome threat detection and hunting resources 🕵️‍♂️
Created 2018-01-13
148 commits to master branch, last one about a year ago
215
1.8k
apache-2.0
38
:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
Created 2022-01-07
694 commits to main branch, last one 9 days ago
Proactive, Open source API security → API discovery, Testing in CI/CD, Test Library with 150+ Tests, Add custom tests, Sensitive data exposure
Created 2023-01-31
4,935 commits to master branch, last one a day ago
125
865
agpl-3.0
39
Watcher - Open Source Cybersecurity Threat Hunting Platform. Developed with Django & React JS.
Created 2020-09-01
412 commits to master branch, last one 14 days ago
Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying m...
Created 2020-09-26
125 commits to main branch, last one 2 months ago
Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).
Created 2020-11-02
24 commits to main branch, last one 6 days ago
A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).
Created 2022-07-19
343 commits to main branch, last one 17 days ago
22
392
gpl-3.0
10
Threat-hunting tool for Linux
Created 2023-06-21
506 commits to main branch, last one 23 hours ago
A flexible threat detection platform that simplifies rule management and deployment using K8s CronJob and Helm, but can also run standalone or with other job schedulers like Nomad.
Created 2024-09-30
11 commits to main branch, last one about a month ago
Community Security Analytics provides a set of community-driven audit & threat queries for Google Cloud
Created 2022-01-11
288 commits to main branch, last one 5 months ago
22
319
apache-2.0
13
Threatest is a CLI and Go framework for end-to-end testing threat detection rules.
Created 2022-06-16
99 commits to main branch, last one 11 months ago
Crawlector is a threat hunting framework designed for scanning websites for malicious objects.
Created 2021-02-01
79 commits to main branch, last one 12 months ago
ThreatSeeker: Threat Hunting via Windows Event Logs
Created 2023-04-11
4 commits to master branch, last one about a year ago
SyntheticSun is a defense-in-depth security automation and monitoring framework which utilizes threat intelligence, machine learning, managed AWS security services and, serverless technologies to cont...
Created 2020-04-21
90 commits to master branch, last one 3 years ago
Threat Detection & Anomaly Detection rules for popular open-source components
Created 2020-08-07
31 commits to master branch, last one 2 years ago
An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.
Created 2021-11-21
6 commits to main branch, last one 2 years ago
Sigma detection rules for hunting with the threathunting-keywords project
Created 2023-08-02
84 commits to main branch, last one 18 days ago
An ongoing & curated collection of awesome software best practices and remediation techniques, libraries and frameworks, E-books and videos, Technical guidelines and important resources about Threat D...
Created 2021-12-12
13 commits to main branch, last one 2 years ago