Showing 1-20 of 33 projects
Suricata is a powerful network security monitoring engine for intrusion detection and prevention.
A Python library for detecting homograph phishing attacks, typo squatting, and brand impersonation through domain name permutation.
High-quality Sysmon configuration template for advanced Windows security monitoring and threat hunting
A curated list of awesome resources for threat detection and incident response.
Open-source threat hunting playbook for detection development efficiency
IntelOwl: A comprehensive threat intelligence management platform for security professionals.
Security Onion is an open-source security monitoring and threat hunting platform.
An open-source threat hunting platform built on the ELK stack for security researchers and analysts.
A Rust-based tool for rapidly searching and hunting through Windows forensic artifacts.
Teler is a real-time HTTP intrusion detection system written in Go for analyzing logs and detecting threats.
Hayabusa is a Rust-based threat hunting and forensics timeline generator for Windows event logs.
A modular sysmon configuration repository for security monitoring and threat hunting.
A repository that collects interesting APT reports and special IOCs for cybersecurity researchers and threat hunters.
YARA signature database for threat detection, malware analysis, and security scanning
A curated collection of Windows Event Log samples for security research and threat hunting.
An open-source library for creating security detection rules and threat hunting content.
An open-source threat intelligence platform for cybersecurity professionals and researchers.
This repository provides indicators of compromise from Amnesty International's cyber investigations.
Collection of KQL queries for Advanced Hunting, Detection, and Threat Hunting in Azure Sentinel and Defender for Endpoint.
A Suricata-based network detection and response (NDR) distribution for security monitoring and threat hunting.
Get weekly updates on trending AI coding tools and projects.