22 results found Sort:

✨ A curated list of awesome threat detection and hunting resources 🕵️‍♂️
Created 2018-01-13
148 commits to master branch, last one about a year ago
219
1.9k
apache-2.0
38
:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
Created 2022-01-07
697 commits to main branch, last one 17 days ago
Proactive, Open source API security → API discovery, Testing in CI/CD, Test Library with 150+ Tests, Add custom tests, Sensitive data exposure
Created 2023-01-31
5,157 commits to master branch, last one 12 hours ago
Detection Engineering is a tactical function of a cybersecurity defense program that involves the design, implementation, and operation of detective controls with the goal of proactively identifying m...
Created 2020-09-26
125 commits to main branch, last one 3 months ago
126
870
agpl-3.0
39
Watcher - Open Source Cybersecurity Threat Hunting Platform. Developed with Django & React JS.
Created 2020-09-01
412 commits to master branch, last one about a month ago
Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language).
Created 2020-11-02
30 commits to main branch, last one a day ago
A repository of KQL queries focused on threat hunting and threat detecting for Microsoft Sentinel & Microsoft XDR (Former Microsoft 365 Defender).
Created 2022-07-19
347 commits to main branch, last one 16 days ago
23
405
gpl-3.0
11
Threat-hunting tool for Linux
Created 2023-06-21
539 commits to main branch, last one 2 days ago
A flexible threat detection platform that simplifies rule management and deployment using K8s CronJob and Helm, but can also run standalone or with other job schedulers like Nomad.
Created 2024-09-30
11 commits to main branch, last one 2 months ago
Community Security Analytics provides a set of community-driven audit & threat queries for Google Cloud
Created 2022-01-11
288 commits to main branch, last one 6 months ago
22
322
apache-2.0
13
Threatest is a CLI and Go framework for end-to-end testing threat detection rules.
Created 2022-06-16
99 commits to main branch, last one about a year ago
Crawlector is a threat hunting framework designed for scanning websites for malicious objects.
Created 2021-02-01
79 commits to main branch, last one about a year ago
ThreatSeeker: Threat Hunting via Windows Event Logs
Created 2023-04-11
4 commits to master branch, last one about a year ago
SyntheticSun is a defense-in-depth security automation and monitoring framework which utilizes threat intelligence, machine learning, managed AWS security services and, serverless technologies to cont...
Created 2020-04-21
90 commits to master branch, last one 3 years ago
An example of how to deploy a Detection as Code pipeline using Sigma Rules, Sigmac, Gitlab CI, and Splunk.
Created 2021-11-21
6 commits to main branch, last one 2 years ago
Sigma detection rules for hunting with the threathunting-keywords project
Created 2023-08-02
85 commits to main branch, last one 12 days ago
Threat Detection & Anomaly Detection rules for popular open-source components
Created 2020-08-07
31 commits to master branch, last one 2 years ago
An ongoing & curated collection of awesome software best practices and remediation techniques, libraries and frameworks, E-books and videos, Technical guidelines and important resources about Threat D...
Created 2021-12-12
13 commits to main branch, last one 2 years ago
A fast, customizable service detection tool powered by a flexible fingerprint system. It helps you identify services, APIs, and network configurations across your infrastructure.
Created 2024-11-06
95 commits to main branch, last one a day ago
3
29
apache-2.0
1
A simple tool designed to create Atomic Red Team tests with ease.
Created 2024-11-22
22 commits to main branch, last one 8 days ago